CVE-2023-2602

Updated: 2025-12-01 03:25:34.664767

Description:

A vulnerability was found in the pthread_create() function in libcap. This issue may allow a malicious actor to use cause __real_pthread_create() to return an error, which can exhaust the process memory.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x LOW 3.3

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU libcap 2.48 3.3 LOW Ignored 2023-12-01 03:18:54 This issue is a per‑process memory leak in libcap’s pthread_create wrapper that only occurs when...
CentOS 7 ELS libcap 2.22 3.3 LOW Ignored 2023-12-01 03:18:54 Ignored due to low severity