CVE-2023-2603
published 2023-06-06CVE-2023-2603: A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overflow if the input string is close to…
high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overflow if the input string is close to 4GiB.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | libcap2 | < libcap2 1:2.66-4 (bookworm) | libcap2 1:2.66-4 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| libcap_project | libcap | < 2.69 | 2.69 |
| libcap_project | libcap | — | — |
| msrc | cbl2_libcap_2.60-2_on_cbl_mariner_2.0 | — | — |
| msrc | cm1_libcap_2.26-3_on_cbl_mariner_1.0 | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH