VDB
GCVE-VVD-MAGEIA-2021-308
GCVE-VVD-MAGEIA-2021-308
Advisory Published
The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and
2.33 has a use-after-free. It may use the notification thread attributes
object (passed through its struct sigevent parameter) after it has been
freed by the caller, leading to a denial of service (application crash)
or possibly unspecified other impact (CVE-2021-33574).
Other fixes in this update:
- fix triggers so ldconfig is always run on both installing and
uninstalling libs (mga#28797)
- Fix SXID_ERASE behavior in setuid programs [BZ#27471]
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | glibc | 0 (affected), 2.32-16.mga8 (unaffected) | — |
Browse GCVE Records
100 records in the GCVE database · Updated April 16, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.