CVE-2023-2603: Debian Linux

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overflow if the input string is close to 4GiB.

Affected products

  • Debian Debian Linux: version 11.0 only
  • Fedoraproject Fedora: version 37 only; version 38 only
  • Libcap Project Libcap: before 2.69 (fixed in 2.69)
  • Red Hat Enterprise Linux: version 8.0 only; version 9.0 only

Published 2023-06-06. Last modified 2026-06-17.