CVE-2023-5156

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Sep 25, 2023
Updated: Feb 23, 2024
CWE ID 401

Summary

CVE-2023-5156 is a newly discovered vulnerability in the GNU C Library. The recent patch for CVE-2023-4806, intended to address a previous issue, unintentionally introduced a memory leak. This memory leak can potentially lead to application crashes, posing a risk to systems that have applied the patch. Users are advised to install the latest available version of the GNU C Library to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Red Hat Enterprise Linux

Affected Vendors

  • Red Hat