Known vulnerabilities in glibc
Vendor:
SUSE
Software:
glibc
Software CPE:
cpe:2.3:o:suse:glibc:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
33
Public exploits:
2
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
2.38-150600.14.55.1
2.22-114.52.2
2.38-150600.14.58.1
2.38-150600.14.52.1
2.31-150300.104.1
2.22-114.49.1
2.38-14.1
2.11.3-17.110.55.1
2.22-114.46.1
2.31-150300.101.1
2.38-150600.14.46.1
2.31-150300.98.1
2.38-150600.14.43.1
2.22-114.43.1
2.38-150600.14.40.1
2.40-160000.3.1
2.38-150600.14.37.1
2.31-150300.95.1
2.38-150600.14.32.1
2.38-150600.14.29.1
2.38-150600.14.26.1
2.38-150600.14.23.1
2.31-150300.92.1
2.22-114.40.1
2.38-150600.14.20.3
2.38-150600.14.17.1
2.38-150600.14.17.2
2.38-150600.14.14.2
2.38-150600.14.11.2
2.31-150300.89.1
2.31-150300.89.2
2.31-150300.86.3
2.38-150600.14.8.2
2.26-150000.13.73.1
2.38-150600.14.5.1
2.11.3-17.110.52.1
2.22-114.34.1
2.31-150300.71.1
2.31-150300.63.1
2.26-150000.13.70.1
2.31-150300.46.1
2.31-150300.20.7
2.22-123.1
2.22-119.1
2.11.3-17.110.40.1
2.26-13.65.1
2.22-114.19.1
2.31-150300.9.12.1
2.11.3-17.110.43.1
2.22-133.1
2.22-114.22.1
2.22-126.1
2.26-13.62.1
2.26-13.59.1
2.31-9.3.2
2.22-114.15.1
2.22-116.1
2.22-114.12.1
2.22-114.8.3
2.26-13.56.1
Vulnerabilities (33)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU148984 - Reachable Assertion CVE-2026-4046 |
CWE-617 | Medium | 2.11.3-17.110.55.1 | 11.09.2026 |
SB2026091126 SB2026091132 SB2026091133 and 13 more |
||
| #VU124259 - Out-of-bounds read CVE-2026-4437 |
CWE-125 | Medium | 2.38-150600.14.46.1 | 23.03.2026 |
SB2026032376 SB2026040346 SB2026040347 and 4 more |
||
| #VU124258 - Improper input validation CVE-2026-4438 |
CWE-20 | Low | 2.38-150600.14.46.1 | 23.03.2026 |
SB2026032376 SB2026040346 SB2026040347 and 4 more |
||
| #VU122300 - Use of Uninitialized Resource CVE-2025-15281 |
CWE-908 | Medium | 2.22-114.43.1, 2.31-150300.98.1, 2.38-150600.14.40.1, 2.40-160000.3.1 | 04.02.2026 |
SB2026020432 SB2026020433 SB2026020439 and 19 more |
||
| #VU122299 - Integer overflow CVE-2026-0861 |
CWE-190 | High | 2.31-150300.98.1, 2.38-150600.14.40.1, 2.40-160000.3.1 | 04.02.2026 |
SB2026020432 SB2026020433 SB2026020434 and 20 more |
||
| #VU122298 - Use of Uninitialized Resource CVE-2026-0915 |
CWE-908 | Low | 2.22-114.43.1, 2.31-150300.98.1, 2.38-150600.14.40.1, 2.40-160000.3.1 | 04.02.2026 |
SB2026020432 SB2026020433 SB2026020434 and 19 more |
||
| #VU113187 - Double Free CVE-2025-8058 |
CWE-415 | High | 2.22-114.43.1, 2.31-150300.98.1, 2.38-150600.14.37.1 | 24.07.2025 |
SB2025072408 SB2025072511 SB2025072512 and 59 more |
||
| #VU109844 - Untrusted Search Path CVE-2025-4802 |
CWE-426 | Low | 2.31-150300.95.1, 2.38-150600.14.32.1 | 27.05.2025 |
SB2025052725 SB2025052735 SB2025052910 and 36 more |
||
| #VU103687 - Memory corruption CVE-2025-0395 |
CWE-119 | Medium | 2.22-114.40.1, 2.31-150300.92.1, 2.38-150600.14.23.1, 2.40-160000.3.1 | 06.02.2025 |
SB2025020664 SB2025020667 SB2025020668 and 66 more |
||
| #VU89712 - Stack-based buffer overflow CVE-2024-33599 |
CWE-121 | High | 2.22-114.34.1, 2.26-150000.13.73.1 | 21.05.2024 |
SB2024052147 SB2024052148 SB2024052305 and 84 more |
||
| #VU89711 - NULL Pointer Dereference CVE-2024-33600 |
CWE-476 | Medium | 2.22-114.34.1, 2.26-150000.13.73.1 | 21.05.2024 |
SB2024052147 SB2024052148 SB2024052305 and 83 more |
||
| #VU89710 - Allocation of Resources Without Limits or Throttling CVE-2024-33601 |
CWE-770 | Low | 2.22-114.34.1, 2.26-150000.13.73.1 | 21.05.2024 |
SB2024052147 SB2024052148 SB2024052305 and 82 more |
||
| #VU89709 - Memory corruption CVE-2024-33602 |
CWE-119 | Medium | 2.22-114.34.1, 2.26-150000.13.73.1 | 21.05.2024 |
SB2024052147 SB2024052148 SB2024052305 and 91 more |
||
| #VU88822 - Memory corruption CVE-2024-2961 |
CWE-119 | High | 2.11.3-17.110.52.1, 2.22-114.34.1, 2.26-150000.13.73.1 | 18.04.2024 |
SB2024041855 SB2024041856 SB2024041857 and 107 more |
||
| #VU81453 - Use After Free CVE-2023-4813 |
CWE-416 | Medium | 2.26-150000.13.70.1, 2.31-150300.63.1 | 04.10.2023 |
SB2023100435 SB2023100579 SB2023100581 and 91 more |
||
| #VU50075 - Reachable Assertion CVE-2021-3326 |
CWE-617 | Medium | 2.11.3-17.110.43.1, 2.22-126.1, 2.26-13.56.1 | 27.01.2021 |
SB2021012804 SB2021020710 SB2021020711 and 34 more |
||
| #VU50329 - Out-of-bounds read CVE-2019-25013 |
CWE-125 | Low | 2.11.3-17.110.43.1, 2.22-126.1, 2.26-13.56.1 | 04.01.2021 |
SB2021020413 SB2021020414 SB2021020710 and 36 more |
||
| #VU50404 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2020-27618 |
CWE-835 | Medium | 2.11.3-17.110.43.1, 2.22-114.8.3, 2.22-126.1, 2.26-13.56.1 | 04.01.2021 |
SB2021020709 SB2021020710 SB2021020711 and 31 more |
||
| #VU50362 - Out-of-bounds write CVE-2020-29573 |
CWE-787 | Medium | 2.11.3-17.110.43.1, 2.22-114.8.3, 2.22-126.1, 2.26-13.56.1 | 06.12.2020 |
SB2020120610 SB2021020414 SB2021031411 and 16 more |
||
| #VU49670 - Reachable Assertion CVE-2020-29562 |
CWE-617 | Medium | 2.11.3-17.110.43.1, 2.22-114.8.3, 2.22-126.1, 2.26-13.56.1 | 04.12.2020 |
SB2021011906 SB2021020710 SB2021020711 and 11 more |
Showing elements 1 - 20 out of 33