First published: Thu Nov 18 2021(Updated: )
A flaw was found in glibc. The realpath function may sometimes return a unexpected value, potentially leading to disclosure of sensitive data.
Affected Software | Affected Version | How to fix |
---|---|---|
GNU C Library (glibc) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2024633 is considered moderate due to the potential for sensitive data disclosure.
To fix REDHAT-BUG-2024633, update your GNU glibc to the latest version where the vulnerability has been addressed.
Systems utilizing vulnerable versions of GNU glibc are affected by REDHAT-BUG-2024633.
The impact of REDHAT-BUG-2024633 includes the possible disclosure of sensitive data due to unexpected return values from the realpath function.
Currently, there are no known workarounds for REDHAT-BUG-2024633 other than applying the patch when available.