Skip to main content
Version: v1.2.x

CVE-2022-23218

CVE Details

Visit the official vulnerability details page for CVE-2022-23218 to learn more.

Initial Publication

01/14/2022

Last Update

06/17/2026

Third Party Dependency

glibc

NIST CVE Summary

The deprecated compatibility function svcunix_create in the sunrpc module of the GNU C Library (aka glibc) through 2.34 copies its path argument on the stack without validating its length, which may result in a buffer overflow, potentially resulting in a denial of service or (if an application is not built with a stack protector enabled) arbitrary code execution.

CVE Severity

9.8

Our Official Summary

Investigation is ongoing to determine how this vulnerability affects our products.

Status

Modified

Affected Products & Versions

VersionPaletteAIPaletteAI VerteX
1.2.2⚠️ Impacted⚠️ Impacted

Revision History

No revisions available.