Beveiligingsadvies

CVE-2024-24787

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-05-08 15:31:14
Laatst bijgewerkt 2025-02-13 17:40:26
Toegewezen door Go
CVSS-score 6.4
Status PUBLISHED

Beschrijving

On Darwin, building a Go module which contains CGO can trigger arbitrary code execution when using the Apple version of ld, due to usage of the -lto_library flag in a "#cgo LDFLAGS" directive.