ENISA EUVD · EUVD-2023-54750Known-exploited evidence recordedA buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environment variable. This issue could allow a local attacker to use maliciously crafted GLIBC_TUNABLES environment variables when launching binaries with SUID permission to execute code with elevated privileges.
Official EUVD record ↗BSI · German · WID-SEC-2024-0106Oracle Communications: Mehrere SchwachstellenEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in Oracle Communications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2023-2543GNU libc: Schwachstelle ermöglicht PrivilegieneskalationEin lokaler Angreifer kann eine Schwachstelle in GNU libc ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuführen oder seine Privilegien zu erweitern.
Official advisory ↗Cyber Security Agency of Singapore · English · CSA-SB-20231004Security Bulletin 04 Oct 2023The Cyber Security Agency of Singapore included this CVE in its official Security Bulletin 04 Oct 2023, published on 4 October 2023. Open the linked bulletin for the product, severity and reference information published in that issue.
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0218Multiples vulnérabilités dans les produits VMwareCVERecord?id=CVE-2023-45803
Référence CVE CVE-2023-45853
https://www.cve.org/CVERecord?id=CVE-2023-45853
Référence CVE CVE-2023-46218
https://www.cve.org/CVERecord?id=CVE-2023-46218
Référence CVE CVE-2023-4641
https://www.cve.org/CVERecord?id=CVE-2023-4641
Référence CVE CVE-2023-47038
https://www.cve.org/CVERecord?id=CVE-2023-47038
Référence CVE CVE-2023-47039
https://www.cve.org/CVERecord?id=CVE-2023-47039
Référence CVE CVE-2023-4806
https://www.cve.org/CVERecord?id=CVE-2023-4806
Référence CVE CVE-2023-4813
https://www.cve.org/CVERecord?id=CVE-2023-4813
Référence CVE CVE-2023-4863
https://www.cve.org/CVERecord?id=CVE-2023-4863
Référence CVE CVE-2023-4911
https://www.cve.org/CVERecord?id=CVE-2023-4911
Référence CVE CVE-2023-50495
https://www.cve.org/CVERecord?id=CVE-2023-50495
Référence CVE CVE-2023-5156
https://www.cve.org/CVERecord?id=CVE-2023-5156
Référence CVE CVE-2023-52355
https://www.cve.org/CVERecord?id=CVE-2023-52355
Référence CVE CVE-2023-52356
https://www.cve.org/CVERecord?id=CVE-2023-52356
Référence CVE CVE-2023-52425
https://www.cve.org/CVERecord?id=CVE-2023-52425
Référence CVE CVE-2023-52426
https://www.cve.org/CVERecord?id=CVE-2023-52426
Référence CVE CVE-2023-53107
https://www.cve.org/CVERecord?id=CVE-2023-53107
Référence CVE CVE-2023-53164
https://www.cve.org/CVERecord?id=CVE
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0969Multiples vulnérabilités dans les produits VMwared?id=CVE-2023-48233
Référence CVE CVE-2023-48234
https://www.cve.org/CVERecord?id=CVE-2023-48234
Référence CVE CVE-2023-48235
https://www.cve.org/CVERecord?id=CVE-2023-48235
Référence CVE CVE-2023-48236
https://www.cve.org/CVERecord?id=CVE-2023-48236
Référence CVE CVE-2023-48237
https://www.cve.org/CVERecord?id=CVE-2023-48237
Référence CVE CVE-2023-48368
https://www.cve.org/CVERecord?id=CVE-2023-48368
Référence CVE CVE-2023-48706
https://www.cve.org/CVERecord?id=CVE-2023-48706
Référence CVE CVE-2023-48795
https://www.cve.org/CVERecord?id=CVE-2023-48795
Référence CVE CVE-2023-49083
https://www.cve.org/CVERecord?id=CVE-2023-49083
Référence CVE CVE-2023-4911
https://www.cve.org/CVERecord?id=CVE-2023-4911
Référence CVE CVE-2023-49582
https://www.cve.org/CVERecord?id=CVE-2023-49582
Référence CVE CVE-2023-50495
https://www.cve.org/CVERecord?id=CVE-2023-50495
Référence CVE CVE-2023-50782
https://www.cve.org/CVERecord?id=CVE-2023-50782
Référence CVE CVE-2023-50868
https://www.cve.org/CVERecord?id=CVE-2023-50868
Référence CVE CVE-2023-51074
https://www.cve.org/CVERecord?id=CVE-2023-51074
Référence CVE CVE-2023-51384
https://www.cve.org/CVERecord?id=CVE-2023-51384
Référence CVE CVE-2023-51385
https://www.cve.org/CVERecord?id=CVE-2023-51385
Référence CVE CVE-2023-5156
https://www.cve.org/CVERecord?id=CV
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0855Multiples vulnérabilités dans les produits Juniper Networksd?id=CVE-2023-43785
Référence CVE CVE-2023-43786
https://www.cve.org/CVERecord?id=CVE-2023-43786
Référence CVE CVE-2023-43787
https://www.cve.org/CVERecord?id=CVE-2023-43787
Référence CVE CVE-2023-44431
https://www.cve.org/CVERecord?id=CVE-2023-44431
Référence CVE CVE-2023-45733
https://www.cve.org/CVERecord?id=CVE-2023-45733
Référence CVE CVE-2023-45866
https://www.cve.org/CVERecord?id=CVE-2023-45866
Référence CVE CVE-2023-46103
https://www.cve.org/CVERecord?id=CVE-2023-46103
Référence CVE CVE-2023-47038
https://www.cve.org/CVERecord?id=CVE-2023-47038
Référence CVE CVE-2023-48161
https://www.cve.org/CVERecord?id=CVE-2023-48161
Référence CVE CVE-2023-4911
https://www.cve.org/CVERecord?id=CVE-2023-4911
Référence CVE CVE-2023-50229
https://www.cve.org/CVERecord?id=CVE-2023-50229
Référence CVE CVE-2023-50230
https://www.cve.org/CVERecord?id=CVE-2023-50230
Référence CVE CVE-2023-51580
https://www.cve.org/CVERecord?id=CVE-2023-51580
Référence CVE CVE-2023-51589
https://www.cve.org/CVERecord?id=CVE-2023-51589
Référence CVE CVE-2023-51592
https://www.cve.org/CVERecord?id=CVE-2023-51592
Référence CVE CVE-2023-51594
https://www.cve.org/CVERecord?id=CVE-2023-51594
Référence CVE CVE-2023-51596
https://www.cve.org/CVERecord?id=CVE-2023-51596
Référence CVE CVE-2023-51764
https://www.cve.org/CVERecord?id=C
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0756Multiples vulnérabilités dans les produits VMwareCVERecord?id=CVE-2023-46219
Référence CVE CVE-2023-4641
https://www.cve.org/CVERecord?id=CVE-2023-4641
Référence CVE CVE-2023-47038
https://www.cve.org/CVERecord?id=CVE-2023-47038
Référence CVE CVE-2023-47039
https://www.cve.org/CVERecord?id=CVE-2023-47039
Référence CVE CVE-2023-47100
https://www.cve.org/CVERecord?id=CVE-2023-47100
Référence CVE CVE-2023-4806
https://www.cve.org/CVERecord?id=CVE-2023-4806
Référence CVE CVE-2023-4807
https://www.cve.org/CVERecord?id=CVE-2023-4807
Référence CVE CVE-2023-4813
https://www.cve.org/CVERecord?id=CVE-2023-4813
Référence CVE CVE-2023-48795
https://www.cve.org/CVERecord?id=CVE-2023-48795
Référence CVE CVE-2023-4911
https://www.cve.org/CVERecord?id=CVE-2023-4911
Référence CVE CVE-2023-51074
https://www.cve.org/CVERecord?id=CVE-2023-51074
Référence CVE CVE-2023-5156
https://www.cve.org/CVERecord?id=CVE-2023-5156
Référence CVE CVE-2023-5189
https://www.cve.org/CVERecord?id=CVE-2023-5189
Référence CVE CVE-2023-52572
https://www.cve.org/CVERecord?id=CVE-2023-52572
Référence CVE CVE-2023-52757
https://www.cve.org/CVERecord?id=CVE-2023-52757
Référence CVE CVE-2023-53034
https://www.cve.org/CVERecord?id=CVE-2023-53034
Référence CVE CVE-2023-5363
https://www.cve.org/CVERecord?id=CVE-2023-5363
Référence CVE CVE-2023-5678
https://www.cve.org/CVERecord?id=CVE-2023
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0492Multiples vulnérabilités dans les produits Siemens34 (2x230 V AC, 12xFO) (6GK5334-3TS01-4AR3) versions antérieures à V3.1
SCALANCE XRM334 (2x230 V AC, 12xFO) (6GK5334-3TS01-4AR3) versions antérieures à V3.2
SCALANCE XRM334 (2x230 V AC, 8xFO) (6GK5334-2TS01-4AR3) versions antérieures à V3.1
SCALANCE XRM334 (2x230 V AC, 8xFO) (6GK5334-2TS01-4AR3) versions antérieures à V3.2
SCALANCE XRM334 (2x230V AC, 2x10G, 24xSFP, 8xSFP+) (6GK5334-5TS01-4AR3) versions antérieures à V3.1
SCALANCE XRM334 (2x230V AC, 2x10G, 24xSFP, 8xSFP+) (6GK5334-5TS01-4AR3) versions antérieures à V3.2
SIMATIC S7-1500 versions supérieures ou égales àV3.1.5 pour les vulnérabilités CVE-2021-41617, CVE-2023-4527, CVE-2023-4806, CVE-2023-4911, CVE-2023-5363, CVE-2023-6246, CVE-2023-6779, CVE-2023-6780, CVE-2023-28531, CVE-2023-38545, CVE-2023-38546, CVE-2023-44487, CVE-2023-46218, CVE-2023-46219, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2023-52927, CVE-2024-2961, CVE-2024-6119, CVE-2024-6387, CVE-2024-12133, CVE-2024-12243, CVE-2024-24855, CVE-2024-26596, CVE-2024-28085, CVE-2024-33599, CVE-2024-33600, CVE-2024-33601, CVE-2024-33602, CVE-2024-34397, CVE-2024-37370, CVE-2024-37371, CVE-2024-45490, CVE-2024-45491, CVE-2024-45492, CVE-2024-50246, CVE-2024-53166, CVE-2024-57977, CVE-2024-57996, CVE-2024-58005, CVE-2025-4373, CVE-2025-4598, CVE-2025-21701, CVE-2025-21702, C
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-1015Multiples vulnérabilités dans les produits SiemensERecord?id=CVE-2023-46285
Référence CVE CVE-2023-4806
https://www.cve.org/CVERecord?id=CVE-2023-4806
Référence CVE CVE-2023-4807
https://www.cve.org/CVERecord?id=CVE-2023-4807
Référence CVE CVE-2023-4813
https://www.cve.org/CVERecord?id=CVE-2023-4813
Référence CVE CVE-2023-48427
https://www.cve.org/CVERecord?id=CVE-2023-48427
Référence CVE CVE-2023-48428
https://www.cve.org/CVERecord?id=CVE-2023-48428
Référence CVE CVE-2023-48429
https://www.cve.org/CVERecord?id=CVE-2023-48429
Référence CVE CVE-2023-48430
https://www.cve.org/CVERecord?id=CVE-2023-48430
Référence CVE CVE-2023-48431
https://www.cve.org/CVERecord?id=CVE-2023-48431
Référence CVE CVE-2023-4911
https://www.cve.org/CVERecord?id=CVE-2023-4911
Référence CVE CVE-2023-4921
https://www.cve.org/CVERecord?id=CVE-2023-4921
Référence CVE CVE-2023-49691
https://www.cve.org/CVERecord?id=CVE-2023-49691
Référence CVE CVE-2023-49692
https://www.cve.org/CVERecord?id=CVE-2023-49692
Référence CVE CVE-2023-5156
https://www.cve.org/CVERecord?id=CVE-2023-5156
Référence CVE CVE-2023-5678
https://www.cve.org/CVERecord?id=CVE-2023-5678
Référence CVE CVE-2023-5717
https://www.cve.org/CVERecord?id=CVE-2023-5717
Référence CVE CVE-2023-5981
https://www.cve.org/CVERecord?id=CVE-2023-5981
Gestion détaillée du document
le 12 décembre 2023
Version initiale
Alerte
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0957Multiples vulnérabilités dans le noyau Linux de RedHatve.org/CVERecord?id=CVE-2023-4155
Référence CVE CVE-2023-4206
https://www.cve.org/CVERecord?id=CVE-2023-4206
Référence CVE CVE-2023-4207
https://www.cve.org/CVERecord?id=CVE-2023-4207
Référence CVE CVE-2023-4208
https://www.cve.org/CVERecord?id=CVE-2023-4208
Référence CVE CVE-2023-44487
https://www.cve.org/CVERecord?id=CVE-2023-44487
Référence CVE CVE-2023-4527
https://www.cve.org/CVERecord?id=CVE-2023-4527
Référence CVE CVE-2023-4732
https://www.cve.org/CVERecord?id=CVE-2023-4732
Référence CVE CVE-2023-4806
https://www.cve.org/CVERecord?id=CVE-2023-4806
Référence CVE CVE-2023-4813
https://www.cve.org/CVERecord?id=CVE-2023-4813
Référence CVE CVE-2023-4911
https://www.cve.org/CVERecord?id=CVE-2023-4911
Gestion détaillée du document
le 17 novembre 2023
Version initiale
Alertes
Avis
Bulletins d’actualités
Mentions légales
Conditions générales
À propos
Contact
cyber.gouv.fr
service-public.fr
legifrance.gouv.fr
info.gouv.fr
france.fr
info.gouv.fr/risques
Premier Ministre / Secrétariat Général de la Défense et de la Sécurité Nationale / Agence nationale de la
sécurité des systèmes d'information
Official advisory ↗CERT-FR · French · CERTFR-2023-AVI-0804Vulnérabilité dans GNU LIBCUne vulnérabilité a été découverte dans GNU LIBC. Elle permet à un
attaquant de provoquer une élévation de privilèges.
Official advisory ↗JVN iPedia · Japanese · JVNDB-2023-013913GNU Project の GNU C Library 等複数ベンダの製品における境界外書き込みに関する脆弱性GNU Project の GNU C Library 等複数ベンダの製品には、境界外書き込みに関する脆弱性が存在します。
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-6043美 CISA 발표 주요 Exploit 정보공유(Update. 2023-11-21)GNU C Library's dynamic loader ld.so contains a buffer overflow vulnerability when processing the GLIBC_TUNABLES environment variable, allowing a local attacker to execute code with elevated privileges.
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0187Kwetsbaarheden verholpen in Siemens productenDe kwetsbaarheden stellen een kwaadwillende mogelijk in staat aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Denial-of-Service (DoS)
- Manipulatie van gegevens
- Omzeilen van een beveiligingsmaatregel
- Omzeilen van authenticatie
- (Remote) code execution (root/admin rechten)
- (Remote) code execution (Gebruikersrechten)
- Toegang tot systeemgegevens
- Toegang tot gevoelige gegevens
- Spoofing
De kwaadwillende heeft hiervoor toegang nodig tot de productieomgeving. Het is goed gebruik een dergelijke omgeving niet publiek toegankelijk te hebben.
Official advisory ↗