cbcvebase.
CVE-2024-50610
published 2024-10-27

CVE-2024-50610: GSL (GNU Scientific Library) through 2.8 has an integer signedness error in gsl_siman_solve_many in siman/siman.c. When params.n_tries is negative, incorrect…

PriorityP411low3.6CVSS 3.1
AVLACHPRLUINSUCNILAL
EPSS
0.28%
20.7th percentile
GSL (GNU Scientific Library) through 2.8 has an integer signedness error in gsl_siman_solve_many in siman/siman.c. When params.n_tries is negative, incorrect memory allocation occurs.

Affected

2 ranges
VendorProductVersion rangeFixed in
debiangsl< gsl 2.8+dfsg-4 (forky)gsl 2.8+dfsg-4 (forky)
gnugnu_scientific_library<= 2.8

CVSS provenance

nvdv3.13.6LOWCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:L
osv3.6LOW
vendor_debian3.6LOW
vendor_redhat3.6LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.