CVE-2023-4911CISA KEVEPSS p99.5%

CVE-2023-4911GNU C Library Buffer Overflow Vulnerability

GNU / GNU C Library

Description

GNU C Library's dynamic loader ld.so contains a buffer overflow vulnerability when processing the GLIBC_TUNABLES environment variable, allowing a local attacker to execute code with elevated privileges.

Scoring

EPSS78.61% probability of exploitation · percentile 99.5% · 2026-06-18T12:00:27Z

CISA KEV entry

Added to KEV: 2023-11-21

(incoming)1

TypeTargetConfidenceTier
KEVEntryGNU C Library Buffer Overflow Vulnerabilitykev-cve-2023-49110%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2025-14512
CVE
CVE-2026-20911
CVE
Linux Kernel Heap-Based Buffer Overflow Vulnerability
CVE
CVE-2026-0031
CVE
CVE-2026-1489
CVE
CVE-2026-35083
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.