GNU Libc current is affected by: Mitigation bypass. The impact is: Attacker may guess the heap addresses of pthread_created thread. The component is: glibc. NOTE: the vendor's position is "ASLR bypass itself is not a vulnerability.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-1010025.json"