Rapid7

vulnerability

Amazon Linux 2023: CVE-2024-0911: Low priority package update for indent

Severity
5
CVSS
(AV:L/AC:M/Au:N/C:N/I:N/A:C)
Published
Jan 23, 2024
Added
Feb 17, 2025
Modified
Jul 8, 2025

Description

A flaw was found in indent, a program for formatting C code. This issue may allow an attacker to trick a user into processing a specially crafted file to trigger a heap-based buffer overflow, causing the application to crash.

Solutions

amazon-linux-2023-upgrade-indentamazon-linux-2023-upgrade-indent-debuginfoamazon-linux-2023-upgrade-indent-debugsource
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.