cve/2024/CVE-2024-2961.md

58 lines
2.8 KiB
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2024-2961](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-2961)
![](https://img.shields.io/static/v1?label=Product&message=glibc&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=2.1.93%3C%202.40%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-787%20Out-of-bounds%20Write&color=brighgreen)
### Description
The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable.
### POC
#### Reference
No PoCs from references.
#### Github
2025-09-29 16:08:36 +00:00
- https://github.com/0xor0ne/awesome-list
- https://github.com/4wayhandshake/CVE-2024-2961
- https://github.com/BTtea/BTteaLFI
2024-06-07 04:52:01 +00:00
- https://github.com/EGI-Federation/SVG-advisories
2025-09-29 16:08:36 +00:00
- https://github.com/J1ezds/Vulnerability-Wiki-page
- https://github.com/Jalexander798/JA_Tools-Cybersecurity-Resource-2
2024-06-07 04:52:01 +00:00
- https://github.com/Threekiii/Awesome-POC
2025-09-29 16:08:36 +00:00
- https://github.com/XiaomingX/awesome-poc-for-red-team
2024-06-07 04:52:01 +00:00
- https://github.com/ZonghaoLi777/githubTrending
2024-06-08 09:32:58 +00:00
- https://github.com/absolutedesignltd/iconvfix
2024-05-28 00:32:59 +00:00
- https://github.com/ambionics/cnext-exploits
2024-06-07 04:52:01 +00:00
- https://github.com/aneasystone/github-trending
2025-09-29 16:08:36 +00:00
- https://github.com/bachkhoasoft/awesome-list-ks
2024-06-07 04:52:01 +00:00
- https://github.com/bollwarm/SecToolSet
2024-06-08 09:32:58 +00:00
- https://github.com/exfil0/test_iconv
2025-09-29 16:08:36 +00:00
- https://github.com/jakabakos/CVE-2024-34102-CosmicSting-XXE-in-Adobe-Commerce-and-Magento
2024-06-07 04:52:01 +00:00
- https://github.com/johe123qwe/github-trending
2024-06-08 09:32:58 +00:00
- https://github.com/kjdfklha/CVE-2024-2961_poc
2025-09-29 16:08:36 +00:00
- https://github.com/kyotozx/CVE-2024-2961-Remote-File-Read
2024-05-25 21:48:12 +02:00
- https://github.com/mattaperkins/FIX-CVE-2024-2961
2025-09-29 16:08:36 +00:00
- https://github.com/mesudmammad1/CVE-2023-26326_Buddyform_exploit
2024-05-25 21:48:12 +02:00
- https://github.com/nomi-sec/PoC-in-GitHub
2025-09-29 16:08:36 +00:00
- https://github.com/omarelshopky/exploit_cve-2023-26326_using_cve-2024-2961
- https://github.com/plzheheplztrying/cve_monitor
- https://github.com/regantemudo/PHP-file-read-to-RCE-CVE-2024-2961-
2024-05-26 16:36:09 +00:00
- https://github.com/rvizx/CVE-2024-2961
2024-06-07 04:52:01 +00:00
- https://github.com/sampsonv/github-trending
2025-09-29 16:08:36 +00:00
- https://github.com/scriptSails/glibcs
- https://github.com/smartcow99/docker-security-check-using-trivy
- https://github.com/suce0155/CVE-2024-2961_buddyforms_2.7.7
2024-06-07 04:52:01 +00:00
- https://github.com/tanjiti/sec_profile
2024-05-25 21:48:12 +02:00
- https://github.com/tarlepp/links-of-the-week
2024-06-07 04:52:01 +00:00
- https://github.com/testing-felickz/docker-scout-demo
2024-06-08 09:32:58 +00:00
- https://github.com/tnishiox/cve-2024-2961
2025-09-29 16:08:36 +00:00
- https://github.com/tylzars/awesome-vrre-writeups
2024-06-07 17:53:02 +00:00
- https://github.com/wjlin0/wjlin0
2025-09-29 16:08:36 +00:00
- https://github.com/wubinworks/magento2-cosmic-sting-patch
- https://github.com/wubinworks/magento2-enhanced-xml-security
- https://github.com/zhanpengliu-tencent/medium-cve
2024-06-07 04:52:01 +00:00
- https://github.com/zhaoxiaoha/github-trending
2025-09-29 16:08:36 +00:00
- https://github.com/zulloper/cve-poc
2024-05-25 21:48:12 +02:00