High severity7.5NVD Advisory· Published Mar 18, 2024· Updated Jun 17, 2026
CVE-2024-2002
CVE-2024-2002
Description
A double-free vulnerability was found in libdwarf. In a multiply-corrupted DWARF object, libdwarf may try to dealloc(free) an allocation twice, potentially causing unpredictable and various results.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:libdwarf_project:libdwarf:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:libdwarf_project:libdwarf:*:*:*:*:*:*:*:*range: >=0.1.0,<0.9.2
- (no CPE)
- cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
4- access.redhat.com/security/cve/CVE-2024-2002nvdThird Party Advisory
- github.com/davea42/libdwarf-code/blob/main/bugxml/data.txtnvdThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue Tracking
- lists.fedoraproject.org/archives/list/[email protected]/message/ZGPVLSPIXR32J6FOAFTTIMYTUUXJICGW/nvdMailing List
News mentions
0No linked articles in our index yet.