Glibc: heap-based buffer overflow in __vsyslog_internal()
Published Jan 31, 2024
8.4
HIGHCVSS 3.1
EPSS 4.79%
Description
A heap-based buffer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and vsyslog functions. This issue occurs when the openlog function was not called, or called with the ident argument set to NULL, and the program name (the basename of argv[0]) is bigger than 1024 bytes, resulting in an application crash or local privilege escalation. This issue affects glibc 2.36 and newer.
Affected products
Configuration 2
- 38
- 39
No data.
Red Hat Enterprise Linux 6
compat-glibc
Not affected
Red Hat Enterprise Linux 6
glibc
Not affected
Red Hat Enterprise Linux 7
compat-glibc
Not affected
Red Hat Enterprise Linux 7
glibc
Not affected
Red Hat Enterprise Linux 8
glibc
Not affected
Red Hat Enterprise Linux 9
glibc
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | compat-glibc | Not affected | n/a |
| Red Hat Enterprise Linux 6 | glibc | Not affected | n/a |
| Red Hat Enterprise Linux 7 | compat-glibc | Not affected | n/a |
| Red Hat Enterprise Linux 7 | glibc | Not affected | n/a |
| Red Hat Enterprise Linux 8 | glibc | Not affected | n/a |
| Red Hat Enterprise Linux 9 | glibc | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
The glibc package, as shipped with Red Hat products, is not affected by this vulnerability because this issue was introduced in glibc 2.36, this glibc version is not used by any Red Hat product.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
1 other source (Red Hat) ▾
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
No CVSS v3.0 score for this CVE.
No CVSS v2.0 score for this CVE.
This CVE is not in the KEV list.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
PoCAutomatable
NoTechnical Impact
TotalDecision
n/aAssessed Feb 9, 2024 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2024–2026- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (29 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 4.79% (0.04794) | 91.66th | v5 (v2026.06.15) |
| Jun 15, 2026 | 4.79% (0.04794) | 90.77th | v5 (v2026.06.15) |
| May 31, 2026 | 26.96% (0.26964) | 96.46th | v4 (v2025.03.14) |
| Apr 11, 2026 | 25.48% (0.25481) | 96.22th | v4 (v2025.03.14) |
| Mar 3, 2026 | 26.96% (0.26964) | 96.29th | v4 (v2025.03.14) |
| Jan 7, 2026 | 24.32% (0.24316) | 95.90th | v4 (v2025.03.14) |
| Dec 23, 2025 | 22.92% (0.22922) | 95.71th | v4 (v2025.03.14) |
| Dec 22, 2025 | 27.59% (0.27595) | 96.26th | v4 (v2025.03.14) |
| Dec 11, 2025 | 29.14% (0.29143) | 96.40th | v4 (v2025.03.14) |
| Nov 21, 2025 | 31.79% (0.31786) | 96.60th | v4 (v2025.03.14) |
| Nov 18, 2025 | 4.53% (0.04534) | 88.06th | v4 (v2025.03.14) |
| Nov 13, 2025 | 31.79% (0.31786) | 96.59th | v4 (v2025.03.14) |
| Nov 9, 2025 | 26.48% (0.26478) | 96.10th | v4 (v2025.03.14) |
| Nov 8, 2025 | 28.50% (0.28497) | 96.30th | v4 (v2025.03.14) |
| Sep 9, 2025 | 25.08% (0.25078) | 95.97th | v4 (v2025.03.14) |
| Aug 2, 2025 | 28.50% (0.28497) | 96.37th | v4 (v2025.03.14) |
| Jul 25, 2025 | 26.48% (0.26478) | 96.09th | v4 (v2025.03.14) |
| Jul 11, 2025 | 25.01% (0.25010) | 95.91th | v4 (v2025.03.14) |
| Apr 15, 2025 | 22.70% (0.22699) | 95.46th | v4 (v2025.03.14) |
| Mar 30, 2025 | 4.53% (0.04534) | 88.12th | v4 (v2025.03.14) |
| Mar 29, 2025 | 8.69% (0.08693) | 87.23th | v4 (v2025.03.14) |
| Mar 28, 2025 | 4.53% (0.04534) | 88.14th | v4 (v2025.03.14) |
| Mar 17, 2025 | 7.74% (0.07741) | 91.32th | v4 (v2025.03.14) |
| Dec 12, 2024 | 1.07% (0.01072) | 84.88th | v3 (v2023.03.01) |
| Mar 7, 2024 | 0.77% (0.00770) | 80.79th | v3 (v2023.03.01) |
| Feb 17, 2024 | 0.38% (0.00383) | 72.35th | v3 (v2023.03.01) |
| Feb 16, 2024 | 0.58% (0.00576) | 77.36th | v3 (v2023.03.01) |
| Feb 13, 2024 | 0.23% (0.00232) | 60.36th | v3 (v2023.03.01) |
| Feb 8, 2024 | 0.04% (0.00042) | 5.47th | v3 (v2023.03.01) |
References (15)
- http://packetstormsecurity.com/files/176931/glibc-qsort-Out-Of-Bounds-Read-Write.html ExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/176932/glibc-syslog-Heap-Based-Buffer-Overflow.html ExploitThird Party AdvisoryVDB Entry
- http://seclists.org/fulldisclosure/2024/Feb/3 ExploitThird Party Advisory
- http://seclists.org/fulldisclosure/2024/Feb/5 ExploitThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2023-6246 vdb-entryx_refsource_REDHATThird Party AdvisoryVendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2249053 issue-trackingx_refsource_REDHATIssue TrackingThird Party Advisory
- https://cert-portal.siemens.com/productcert/html/ssa-082556.html
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/D2FIH77VHY3KCRROCXOT6L27WMZXSJ2G/ Mailing List
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MWQ6BZJ6CV5UAW4VZSKJ6TO4KIW2KWAQ/ Mailing List
- https://nvd.nist.gov/vuln/detail/CVE-2023-6246
- https://security.gentoo.org/glsa/202402-01 Third Party Advisory
- https://security.netapp.com/advisory/ntap-20240216-0007/
- https://www.cve.org/CVERecord?id=CVE-2023-6246
- https://www.openwall.com/lists/oss-security/2024/01/30/6 ExploitMailing ListThird Party Advisory
- https://www.qualys.com/2024/01/30/cve-2023-6246/syslog.txt ExploitThird Party Advisory
Change history (0)
No recorded changes yet.