5
CVE-2012-2673
- EPSS 2.77%
- Veröffentlicht 25.07.2012 19:55:02
- Zuletzt bearbeitet 16.06.2026 23:41:51
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc functions in malloc.c, and the (3) GC_generic_malloc_ignore_off_page function in mallocx.c in Boehm-Demers-Weiser GC (libgc) before 7.2 make it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a large size value, which causes less memory to be allocated than expected.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Boehm-demers-weiser ≫ Garbage Collector Updatealpha6 Version <= 7.2
Boehm-demers-weiser ≫ Garbage Collector Version1.3
Boehm-demers-weiser ≫ Garbage Collector Version1.4
Boehm-demers-weiser ≫ Garbage Collector Version1.5
Boehm-demers-weiser ≫ Garbage Collector Version1.8
Boehm-demers-weiser ≫ Garbage Collector Version1.9
Boehm-demers-weiser ≫ Garbage Collector Version2.0
Boehm-demers-weiser ≫ Garbage Collector Version2.1
Boehm-demers-weiser ≫ Garbage Collector Version2.2
Boehm-demers-weiser ≫ Garbage Collector Version2.3
Boehm-demers-weiser ≫ Garbage Collector Version2.4
Boehm-demers-weiser ≫ Garbage Collector Version3.0
Boehm-demers-weiser ≫ Garbage Collector Version3.1
Boehm-demers-weiser ≫ Garbage Collector Version3.2
Boehm-demers-weiser ≫ Garbage Collector Version3.3
Boehm-demers-weiser ≫ Garbage Collector Version3.4
Boehm-demers-weiser ≫ Garbage Collector Version3.5
Boehm-demers-weiser ≫ Garbage Collector Version3.6
Boehm-demers-weiser ≫ Garbage Collector Version3.7
Boehm-demers-weiser ≫ Garbage Collector Version4.0
Boehm-demers-weiser ≫ Garbage Collector Version4.1
Boehm-demers-weiser ≫ Garbage Collector Version4.2
Boehm-demers-weiser ≫ Garbage Collector Version4.3
Boehm-demers-weiser ≫ Garbage Collector Version4.4
Boehm-demers-weiser ≫ Garbage Collector Version4.5
Boehm-demers-weiser ≫ Garbage Collector Version4.6
Boehm-demers-weiser ≫ Garbage Collector Version4.7
Boehm-demers-weiser ≫ Garbage Collector Version4.8
Boehm-demers-weiser ≫ Garbage Collector Version4.9
Boehm-demers-weiser ≫ Garbage Collector Version4.10
Boehm-demers-weiser ≫ Garbage Collector Version4.11
Boehm-demers-weiser ≫ Garbage Collector Version4.12
Boehm-demers-weiser ≫ Garbage Collector Version4.13
Boehm-demers-weiser ≫ Garbage Collector Version4.14
Boehm-demers-weiser ≫ Garbage Collector Version4.14 Updatealpha1
Boehm-demers-weiser ≫ Garbage Collector Version4.14 Updatealpha2
Boehm-demers-weiser ≫ Garbage Collector Version5.0
Boehm-demers-weiser ≫ Garbage Collector Version5.0 Updatealpha1
Boehm-demers-weiser ≫ Garbage Collector Version5.0 Updatealpha2
Boehm-demers-weiser ≫ Garbage Collector Version5.0 Updatealpha3
Boehm-demers-weiser ≫ Garbage Collector Version5.0 Updatealpha4
Boehm-demers-weiser ≫ Garbage Collector Version5.0 Updatealpha6
Boehm-demers-weiser ≫ Garbage Collector Version5.0 Updatealpha7
Boehm-demers-weiser ≫ Garbage Collector Version5.1
Boehm-demers-weiser ≫ Garbage Collector Version5.2
Boehm-demers-weiser ≫ Garbage Collector Version5.3
Boehm-demers-weiser ≫ Garbage Collector Version5.4
Boehm-demers-weiser ≫ Garbage Collector Version6.0
Boehm-demers-weiser ≫ Garbage Collector Version6.0 Updatealpha1
Boehm-demers-weiser ≫ Garbage Collector Version6.0 Updatealpha2
Boehm-demers-weiser ≫ Garbage Collector Version6.0 Updatealpha3
Boehm-demers-weiser ≫ Garbage Collector Version6.0 Updatealpha4
Boehm-demers-weiser ≫ Garbage Collector Version6.0 Updatealpha5
Boehm-demers-weiser ≫ Garbage Collector Version6.0 Updatealpha6
Boehm-demers-weiser ≫ Garbage Collector Version6.0 Updatealpha7
Boehm-demers-weiser ≫ Garbage Collector Version6.0 Updatealpha8
Boehm-demers-weiser ≫ Garbage Collector Version6.0 Updatealpha9
Boehm-demers-weiser ≫ Garbage Collector Version6.1
Boehm-demers-weiser ≫ Garbage Collector Version6.1 Updatealpha1
Boehm-demers-weiser ≫ Garbage Collector Version6.1 Updatealpha2
Boehm-demers-weiser ≫ Garbage Collector Version6.1 Updatealpha3
Boehm-demers-weiser ≫ Garbage Collector Version6.1 Updatealpha4
Boehm-demers-weiser ≫ Garbage Collector Version6.1 Updatealpha5
Boehm-demers-weiser ≫ Garbage Collector Version6.2
Boehm-demers-weiser ≫ Garbage Collector Version6.2 Updatealpha1
Boehm-demers-weiser ≫ Garbage Collector Version6.2 Updatealpha2
Boehm-demers-weiser ≫ Garbage Collector Version6.2 Updatealpha3
Boehm-demers-weiser ≫ Garbage Collector Version6.2 Updatealpha4
Boehm-demers-weiser ≫ Garbage Collector Version6.2 Updatealpha5
Boehm-demers-weiser ≫ Garbage Collector Version6.2 Updatealpha6
Boehm-demers-weiser ≫ Garbage Collector Version6.3
Boehm-demers-weiser ≫ Garbage Collector Version6.3 Updatealpha1
Boehm-demers-weiser ≫ Garbage Collector Version6.3 Updatealpha2
Boehm-demers-weiser ≫ Garbage Collector Version6.3 Updatealpha3
Boehm-demers-weiser ≫ Garbage Collector Version6.3 Updatealpha4
Boehm-demers-weiser ≫ Garbage Collector Version6.3 Updatealpha5
Boehm-demers-weiser ≫ Garbage Collector Version6.3 Updatealpha6
Boehm-demers-weiser ≫ Garbage Collector Version6.4
Boehm-demers-weiser ≫ Garbage Collector Version6.5
Boehm-demers-weiser ≫ Garbage Collector Version6.6
Boehm-demers-weiser ≫ Garbage Collector Version6.7
Boehm-demers-weiser ≫ Garbage Collector Version6.8
Boehm-demers-weiser ≫ Garbage Collector Version6.9
Boehm-demers-weiser ≫ Garbage Collector Version7.0
Boehm-demers-weiser ≫ Garbage Collector Version7.0 Updatealpha1
Boehm-demers-weiser ≫ Garbage Collector Version7.0 Updatealpha2
Boehm-demers-weiser ≫ Garbage Collector Version7.0 Updatealpha3
Boehm-demers-weiser ≫ Garbage Collector Version7.0 Updatealpha4
Boehm-demers-weiser ≫ Garbage Collector Version7.0 Updatealpha5
Boehm-demers-weiser ≫ Garbage Collector Version7.0 Updatealpha7
Boehm-demers-weiser ≫ Garbage Collector Version7.0 Updatealpha9
Boehm-demers-weiser ≫ Garbage Collector Version7.1
Boehm-demers-weiser ≫ Garbage Collector Version7.1 Updatealpha2
Boehm-demers-weiser ≫ Garbage Collector Version7.2 Updatealpha2
Boehm-demers-weiser ≫ Garbage Collector Version7.2 Updatealpha4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.77% | 0.844 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:P/A:N
|
http://kqueue.org/blog/2012/03/05/memory-allocator-security-revisited/
http://lists.fedoraproject.org/pipermail/package-announce/2012-June/082926.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-June/082988.html
http://rhn.redhat.com/errata/RHSA-2013-1500.html
http://rhn.redhat.com/errata/RHSA-2014-0149.html
http://rhn.redhat.com/errata/RHSA-2014-0150.html
http://www.mandriva.com/security/advisories?name=MDVSA-2012:158
http://www.openwall.com/lists/oss-security/2012/06/05/1
http://www.openwall.com/lists/oss-security/2012/06/07/13
http://www.securityfocus.com/bid/54227
http://www.ubuntu.com/usn/USN-1546-1
https://github.com/ivmai/bdwgc/blob/master/ChangeLog
https://github.com/ivmai/bdwgc/commit/6a93f8e5bcad22137f41b6c60a1c7384baaec2b3
https://github.com/ivmai/bdwgc/commit/83231d0ab5ed60015797c3d1ad9056295ac3b2bb
https://github.com/ivmai/bdwgc/commit/be9df82919960214ee4b9d3313523bff44fd99e1
https://github.com/ivmai/bdwgc/commit/e10c1eb9908c2774c16b3148b30d2f3823d66a9a