CVE-2023-4911
KEVHIGH 7.8EPSS 81.4%
A buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environment variable. This issue could allow a local attacker to use maliciously crafted GLIBC_TUNABLES environment variables when launching binaries with SUID permission to execute code with elevated privileges.
- CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - EPSS
- 81.42% chance of exploitation in the next 30 days, 100th percentile
- CISA KEV
- added 2023-11-21
- Nuclei
- high
- Published
- 2023-10-03
- Updated
- 2026-07-14
Proof-of-concept exploits (23)
- http://packetstormsecurity.com/files/174986/glibc-ld.so-Local-Privilege-Escalation.html
- http://packetstormsecurity.com/files/176288/Glibc-Tunables-Privilege-Escalation.html
- http://seclists.org/fulldisclosure/2023/Oct/11
- https://www.qualys.com/2023/10/03/cve-2023-4911/looney-tunables-local-privilege-escalatio…
- Billar42/CVE-2023-49110★ · 2025-02-18
- Diego-AltF4/CVE-2023-49118★ · 2024-11-03
- Green-Avocado/CVE-2023-491115★ · 2023-10-05
- KernelKrise/CVE-2023-491118★ · 2024-10-01
- KillReal01/CVE-2023-49110★ · 2025-03-17
- NishanthAnand21/CVE-2023-4911-PoC7★ · 2024-11-13
- RickdeJager/CVE-2023-4911167★ · 2023-10-08
- b4k3d/POC_CVE49110★ · 2023-10-08
- chaudharyarjun/LooneyPwner43★ · 2023-10-18
- guffre/CVE-2023-49110★ · 2023-12-09
- hadrian3689/looney-tunables-CVE-2023-491129★ · 2023-10-15
- leesh3288/CVE-2023-4911393★ · 2023-10-04
- puckiestyle/CVE-2023-49112★ · 2023-12-23
- ruycr4ft/CVE-2023-491118★ · 2023-10-11
- snurkeburk/Looney-Tunables0★ · 2023-12-10
- vscvetkov/code0★ · 2025-03-22
- xiaoQ1z/CVE-2023-49111★ · 2023-10-08
- baeseungwon1010/CVE-2023-4911
- jarpex/cve-2023-4911-exploit-optimized