buildroot ▾
›
2025.02.x ▾
›
vulnerability
›
CVE-2024-6655
Component Overview
Vulnerability Overview
Name
CVE-2024-6655
Source
NVD (
link
)
Debian (
link
)
Description
A flaw was found in the GTK library. Under certain conditions, it is possible for a library to be injected into a GTK application from the current working directory.
CWEs
CWE-94
Published Date
Jul 16, 2024
Updated Date
Jun 17, 2026
Workaround
-
Advisories
Analysis
#
Affected Component
Analysis
libgtk2
Exploitable
Vulnerability Ratings
#
7
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
libgtk3
buildroot
master
3.24.51
Not Affected
libgtk4
buildroot
master
4.21.0
Not Affected
gtk
openwrt
master
4.22.4-r1
Not Affected
gtk
openwrt
openwrt-25.12
4.18.6-r1
Not Affected
gtk+3
yocto
kirkstone
3.24.34
Patched
gtk4
yocto
kirkstone
4.6.9
Patched
gtk+3
yocto
master
3.24.52
Not Affected
gtk4
yocto
master
4.22.4
Not Affected
gtk+3
yocto
scarthgap
3.24.41
Exploitable
gtk4
yocto
scarthgap
4.14.1
Not Affected
Resolved with patches
#
gtk+3 (yocto:kirkstone)
#
Title
Author
Resolve
1
Stop looking for modules in cwd
Matthias Clasen <mclasen@redhat.com>
CVE-2024-6655