-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
The primary source of information is the vulnerability description, as direct patch/commit information could not be retrieved using the available tools. The description clearly identifies the vulnerable function '__libdw_thread_tail' and the file 'libdw_alloc.c'. It also mentions that the manipulation of an argument 'w' within this function leads to memory corruption. While the confidence is 'medium' due to the inability to inspect the actual patch code for precise evidence of the change, the description is specific enough to identify the function. The search results confirmed the CVE and the affected component but did not yield direct access to the patch content.
Ongoing coverage of React2Shell