ID:11143 - Exploit for Buffer overflow in Glibc - CVE-2024-2961

 
Main Vulnerability Database Exploits ID:11143 - Exploit for Buffer overflow in Glibc - CVE-2024-2961

ID:11143 - Exploit for Buffer overflow in Glibc - CVE-2024-2961

Published: February 21, 2025


Vulnerability identifier: #VU88822
Vulnerability risk: High
CVE-ID: CVE-2024-2961
CWE-ID: CWE-119
Exploitation vector: Remote access
Vulnerable software:
Glibc

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The vulnerability exists due to a boundary error within the iconv() function when converting string to the ISO-2022-CN-EXT character set. A remote attacker can pass specially crafted input to the application, trigger a 4 byte buffer overflow and execute arbitrary code on the target system.

Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.


Remediation

Install updates from vendor's website.