PT-2019-11440 · Gnu+1 · Glibc+1
Mdeslaur
·
Published
2019-07-15
·
Updated
2024-11-02
·
CVE-2019-1010024
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
GNU Libc (affected versions not specified)
Description:
The issue is related to a mitigation bypass, where an attacker may bypass ASLR using the cache of thread stack and heap. The component affected is glibc. It is noted that upstream comments indicate this is being treated as a non-security bug and no real threat.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Debian
Glibc