https://seclists.org/oss-sec/2024/q1/30: GNU coreutils v9.4; v9.3; v9.2 split heap buffer overflow vulnerability
Published Jan 18, 2024
·Updated
Affected Software
1 affected component
GNU Coreutils>=9.2<=9.4
Frequently Asked Questions
1
What is the severity of CVE-2024-0001?
The severity of CVE-2024-0001, the split heap buffer overflow vulnerability in GNU Coreutils, is considered critical.
2
How do I fix CVE-2024-0001?
To fix CVE-2024-0001, users should upgrade to a patched version of GNU Coreutils, specifically version 9.4 or later.
3
Which versions of GNU Coreutils are affected by CVE-2024-0001?
CVE-2024-0001 affects GNU Coreutils versions 9.2, 9.3, and 9.4.
4
What are the potential impacts of CVE-2024-0001?
The potential impacts of CVE-2024-0001 include arbitrary code execution and possible data corruption.
5
How was CVE-2024-0001 discovered?
CVE-2024-0001 was discovered during routine security assessments of the GNU Coreutils software.