GSL (GNU Scientific Library) through 2.8 has an integer signedness error in gsl_siman_solve_many in siman/siman.c. When params.n_tries is negative, incorrect memory allocation occurs.
References
| Link | Resource |
|---|---|
| https://git.savannah.gnu.org/cgit/gsl.git/log/siman/siman.c | Product |
| https://github.com/silviadefra/GolDRuSh/blob/main/vulnerabilities/gsl.md | Exploit Third Party Advisory |
| https://www.gnu.org/software/gsl/doc/html/siman.html | Product |
Configurations
History
No history.
Information
Published : 2024-10-27 22:15
Updated : 2025-09-04 16:43
NVD link : CVE-2024-50610
Mitre link : CVE-2024-50610
CVE.ORG link : CVE-2024-50610
JSON object : View
Products Affected
gnu
- gnu_scientific_library
CWE
CWE-190
Integer Overflow or Wraparound
