PT-2019-11440 · Gnu+1 · Glibc+1

Mdeslaur

·

Published

2019-07-15

·

Updated

2024-11-02

·

CVE-2019-1010024

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions: GNU Libc (affected versions not specified)
Description: The issue is related to a mitigation bypass, where an attacker may bypass ASLR using the cache of thread stack and heap. The component affected is glibc. It is noted that upstream comments indicate this is being treated as a non-security bug and no real threat.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2019-1010024
ECHO-73B4-18BF-FE4A

Affected Products

Debian
Glibc