cve 2024 33601

About this tag
CVE-2024-33601 is a vulnerability in the GNU C Library's Name Service Cache Daemon (nscd) that can cause nscd to abort upon memory allocation failure in the netgroup cache, leading to a local denial-of-service. This can result in authentication and name-lookup failures for dependent services. Microsoft's advisory confirms that Azure Linux is potentially affected, but the statement is specific to that product and does not guarantee other Microsoft products are unaffected. Administrators should apply mitigations as recommended for affected systems.
  1. CVE-2024-33601: nscd memory allocation bug in Azure Linux and mitigation

    A subtle bug in the GNU C Library’s Name Service Cache Daemon (nscd) — tracked as CVE-2024-33601 — can cause nscd to abort when the netgroup cache hits a memory-allocation failure, producing a local denial‑of‑service that can ripple into authentication and name‑lookup failures for dependent...