CVE-2023-4911 is a critical buffer overflow vulnerability in the GNU C Library's dynamic loader (ld.so), affecting major Linux distributions like Canonical, Debian, Fedora, and Red Hat. This flaw allows a local attacker to achieve elevated privileges by crafting malicious GLIBC_TUNABLES environment variables when launching SUID binaries. With a CVSS score of 7.8 (High) and a FAUCET Risk Score of 100/100, the vulnerability presents a significant risk due to its potential for full system compromise (Confidentiality, Integrity, Availability). Notably, it is actively exploited in the wild, with public exploit code available (Metasploit, Nuclei, ExploitDB), and has garnered extensive community discussion and media coverage, including a CISA directive for federal agencies to patch.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:netapp:bootstrap_os:-:*:*:*:*:*:*:* | ||
>= 3.1.5CPE matchmatch criteria | cpe:2.3:o:siemens:simatic_s7-1500_cpu_1518-4_pn\/dp_mfp_firmware:*:*:*:*:*:*:*:* | ||
>= 3.1.5CPE matchmatch criteria | cpe:2.3:o:siemens:simatic_s7-1500_cpu_1518f-4_pn\/dp_mfp_firmware:*:*:*:*:*:*:*:* | ||
>= 3.1.5CPE matchmatch criteria | cpe:2.3:o:siemens:siplus_s7-1500_cpu_1518-4_pn\/dp_mfp_firmware:*:*:*:*:*:*:*:* | ||
< 1.1CPE matchmatch criteria | cpe:2.3:o:siemens:simatic_s7-1500_tm_mfp_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.