CVE-2003-0689

The getgrouplist function in GNU libc (glibc) 2.2.4 and earlier allows attackers to cause a denial of service (segmentation fault) and execute arbitrary code when a user is a member of a large number of groups, which can cause a buffer overflow.

Scoring

CVSS base score
0.04
EPSS probability
0.89%
Published
2003-09-03
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs