CVE-2024-0684
MEDIUMGNU coreutils - Heap-based Buffer Overflow in split line_bytes_split()
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-0684. PoCs published by Valentin-Metz.
AI-analyzed exploit summary This repository provides a detailed technical analysis of CVE-2024-0684, a heap buffer overflow vulnerability in GNU coreutils' `split` program. It includes the discovery process, isolation steps, and a proof-of-concept to trigger a crash.
Description
A flaw was found in the GNU coreutils "split" program. A heap overflow with user-controlled data of multiple hundred bytes in length could occur in the line_bytes_split() function, potentially leading to an application crash and denial of service.
Exploits (1)
This repository provides a detailed technical analysis of CVE-2024-0684, a heap buffer overflow vulnerability in GNU coreutils' `split` program. It includes the discovery process, isolation steps, and a proof-of-concept to trigger a crash.
References (5)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H