A vulnerability has been discovered in glibc, which can lead to execution of arbitrary code..
Package | sys-libs/glibc on all architectures |
---|---|
Affected versions | < 2.40-r8 |
Unaffected versions | >= 2.40-r8 |
glibc is a package that contains the GNU C library.
A vulnerability has been discovered in glibc. Please review the CVE identifier referenced below for details.
Please review the referenced CVE identifier for details.
There is no known workaround at this time.
All glibc users should upgrade to the latest version:
# emerge --sync # emerge --ask --oneshot --verbose ">=sys-libs/glibc-2.40-r8"
Release date
May 12, 2025
Latest revision
May 12, 2025: 1
Severity
high
Exploitable
local and remote
Bugzilla entries