ubuntu · CVE-2024-2002

Quick triage

Priority: medium Published: 2024-03-18 13:15:00 UTC Updated: 2025-07-11 08:09:02 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2024-2002 medium priority: Ubuntu including 1 source packages (dwarfutils), 9 status rows across 9 suites (bionic, focal, jammy, mantic, noble, oracular, plucky, upstream, xenial): ignored 5, not-affected 3, released 1.

Description:

A double-free vulnerability was found in libdwarf. In a multiply-corrupted DWARF object, libdwarf may try to dealloc(free) an allocation twice, potentially causing unpredictable and various results.

cvelogic Threat Intelligence