CVE-2024-50610: GNU Scientific Library

Low severity, CVSS 3.6. EPSS: 0.3% chance of exploitation in the next 30 days.

GSL (GNU Scientific Library) through 2.8 has an integer signedness error in gsl_siman_solve_many in siman/siman.c. When params.n_tries is negative, incorrect memory allocation occurs.

Affected products

  • GNU GNU Scientific Library: up to and including 2.8

Published 2024-10-27. Last modified 2026-06-17.