REDHAT-BUG-2368600: Buffer Overflow
Published May 26, 2025
·Updated
A stack buffer overflow was found in ICU version 76.0.1. While running the genrb binary the 'subtag' struct is overflowed in SRBRoot::addTag function. This may lead to memory corruption and arbitrary code execution.
Affected Software
1 affected component
ICU ICU
Event History
May 26, 2025
Data Sourced
via Red Hat·02:41 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2368600?
The severity of REDHAT-BUG-2368600 is high due to the potential for memory corruption and arbitrary code execution.
2
How do I fix REDHAT-BUG-2368600?
To fix REDHAT-BUG-2368600, update to the latest patched version of ICU.
3
What software is affected by REDHAT-BUG-2368600?
REDHAT-BUG-2368600 affects ICU version 76.0.1.
4
What kind of vulnerability is REDHAT-BUG-2368600?
REDHAT-BUG-2368600 is a stack buffer overflow vulnerability.
5
What can be the consequences of exploiting REDHAT-BUG-2368600?
Exploiting REDHAT-BUG-2368600 may lead to memory corruption and allow an attacker to execute arbitrary code.