CVE-2024-2961 #4693

Closed
opened 2026-02-05 09:11:16 +03:00 by OVERLORD · 0 comments
Owner

Originally created by @stefanman125 on GitHub (Apr 23, 2024).

Describe the Bug

New CVE affects PHP iconv() function in the GNU C Library versions 2.39 and older: https://nvd.nist.gov/vuln/detail/CVE-2024-2961

Not sure how applicable this is to Bookstack, but I thought that you should know about it. It seems to affect all PHP applications by my understanding.

Steps to Reproduce

N/A

Expected Behaviour

N/A

Screenshots or Additional Context

https://www.openwall.com/lists/oss-security/2024/04/18/4

https://nvd.nist.gov/vuln/detail/CVE-2024-2961

https://www.suse.com/security/cve/CVE-2024-2961.html

https://bugzilla.redhat.com/show_bug.cgi?id=2273404

Browser Details

No response

Exact BookStack Version

*

Originally created by @stefanman125 on GitHub (Apr 23, 2024). ### Describe the Bug New CVE affects PHP `iconv()` function in the GNU C Library versions 2.39 and older: https://nvd.nist.gov/vuln/detail/CVE-2024-2961 Not sure how applicable this is to Bookstack, but I thought that you should know about it. It seems to affect all PHP applications by my understanding. ### Steps to Reproduce N/A ### Expected Behaviour N/A ### Screenshots or Additional Context https://www.openwall.com/lists/oss-security/2024/04/18/4 https://nvd.nist.gov/vuln/detail/CVE-2024-2961 https://www.suse.com/security/cve/CVE-2024-2961.html https://bugzilla.redhat.com/show_bug.cgi?id=2273404 ### Browser Details _No response_ ### Exact BookStack Version \*
OVERLORD added the 🐛 Bug label 2026-02-05 09:11:16 +03:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: starred/BookStack#4693