suse · CVE-2024-2002

Quick triage

Priority: medium Published: 2024-03-07 00:11:10 UTC Updated: 2025-05-01 00:02:00 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2024-2002 severity moderate: SUSE including 6 source package names (libdwarf, libdwarf-devel, libdwarf-devel-static, libdwarf-doc, libdwarf-tools, libdwarf1), 6 product×package rows across 1 product lines (SUSE Linux Enterprise Module for Package Hub 15 SP5): Known Not Affected 6.

Description:

A double-free vulnerability was found in libdwarf. In a multiply-corrupted DWARF object, libdwarf may try to dealloc(free) an allocation twice, potentially causing unpredictable and various results.

cvelogic Threat Intelligence