CVE-2024-33600
06.05.2024, 20:15
nscd: Null pointer crashes after notfound response If the Name Service Cache Daemon's (nscd) cache fails to add a not-found netgroup response to the cache, the client request can result in a null pointer dereference. This flaw was introduced in glibc 2.15 when the cache was added to nscd. This vulnerability is only present in the nscd binary.Enginsight
| Vendor | Product | Version |
|---|---|---|
| gnu | glibc | 2.15 ≤ 𝑥 < 2.40 |
| debian | debian_linux | 10.0 |
| netapp | active_iq_unified_manager | - |
| netapp | h300s_firmware | - |
| netapp | h500s_firmware | - |
| netapp | h700s_firmware | - |
| netapp | h410s_firmware | - |
| netapp | h410c_firmware | - |
| netapp | h610c_firmware | - |
| netapp | h610s_firmware | - |
| netapp | h615c_firmware | - |
| netapp | hci_bootstrap_os | - |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| glibc |
| ||||||||||||||||||
| eglibc |
|
Common Weakness Enumeration
References