← Back

CVE-2024-33602

nvd nist
Published: May 6, 2024Modified: Jun 17, 2026

JSON object

Loading...
7.4
Vector
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.4 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

nscd: netgroup cache assumes NSS callback uses in-buffer strings The Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory when the NSS callback does not store all strings in the provided buffer. The flaw was introduced in glibc 2.15 when the cache was added to nscd. This vulnerability is only present in the nscd binary.

Affected (11)

1 product
Glibc
1 product
Debian Linux
9 products
H300s Firmware
H500s Firmware
H700s Firmware
H410s Firmware
H410c Firmware
Element Software
Solidfire & Hci Management Node
Solidfire & Hci Storage Node
Hci Bootstrap Os
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 2.15 to 2.40
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 10.0
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H300s
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H500s
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H700s
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H410s
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Netapp
H410c
All versions
Configuration H
3 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
All versions
Configuration I
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

References (9)

Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing List
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Third Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e

Timeline

No history available yet.