peter bassill · operator
$ cve CVE-2023-4911 JSON

CVE-2023-4911 KEV EXPLOIT

7.8
HIGH · CVSS 3.1 · EPSS 81.4% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2023-12-12.

Description

A buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environment variable. This issue could allow a local attacker to use maliciously crafted GLIBC_TUNABLES environment variables when launching binaries with SUID permission to execute code with elevated privileges.

Scoring

CVSS7.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS81.42% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-122
On CISA KEVyes — remediate by 2023-12-12
Public exploityes
Published2023-10-03
Last modified2026-06-17

CISA KEV

NameGNU C Library Buffer Overflow Vulnerability
Added2023-11-21
Due2023-12-12
Vendor / productGNU / GNU C Library
Ransomware usenone reported

Affected (40)

VendorProduct
canonicalubuntu linux
debiandebian linux
fedoraprojectfedora
gnuglibc
netappbootstrap os
netapph410c
netapph410c firmware
netapphci compute node
redhatcodeready linux builder
redhatcodeready linux builder eus
redhatcodeready linux builder for arm64
redhatcodeready linux builder for arm64 eus
redhatcodeready linux builder for ibm z systems
redhatcodeready linux builder for ibm z systems eus
redhatcodeready linux builder for power little endian
redhatcodeready linux builder for power little endian eus
redhatenterprise linux
redhatenterprise linux eus
redhatenterprise linux for arm 64
redhatenterprise linux for arm 64 eus
redhatenterprise linux for ibm z systems
redhatenterprise linux for ibm z systems eus
redhatenterprise linux for ibm z systems eus s390x
redhatenterprise linux for power big endian eus
redhatenterprise linux for power little endian
redhatenterprise linux for power little endian eus
redhatenterprise linux server aus
redhatenterprise linux server for power little endian update services for sap solutions
redhatenterprise linux server tus
redhatenterprise linux update services for sap solutions
redhatvirtualization
redhatvirtualization host
siemenssimatic s7-1500 cpu 1518-4 pn\/dp mfp
siemenssimatic s7-1500 cpu 1518-4 pn\/dp mfp firmware
siemenssimatic s7-1500 cpu 1518f-4 pn\/dp mfp
siemenssimatic s7-1500 cpu 1518f-4 pn\/dp mfp firmware
siemenssimatic s7-1500 tm mfp
siemenssimatic s7-1500 tm mfp firmware
siemenssiplus s7-1500 cpu 1518-4 pn\/dp mfp
siemenssiplus s7-1500 cpu 1518-4 pn\/dp mfp firmware

Public exploits

SourceTitleDate
exploit-dbglibc 2.38 - Buffer Overflow2026-02-11

References

→ the Explorer  ·  watch your stack  ·  NVD