CVE-2026-95818
- EPSS 0.13%
- Veröffentlicht 22.09.2026 16:50:07
- Zuletzt bearbeitet 22.09.2026 19:56:19
A stack-based buffer overflow in the dynamic loader (ld.so) of the GNU C Library (glibc) versions 2.14 through 2.44 allows a local attacker to crash or corrupt the memory of setuid/setgid (AT_SECURE) programs. When such a program's DT_RPATH or DT_RU...
CVE-2026-19499
- EPSS 0.38%
- Veröffentlicht 14.09.2026 17:11:12
- Zuletzt bearbeitet 18.09.2026 18:17:47
Calling strfmon and strfmon_l in the GNU C Library version 2.38 to 2.44 can write past the end of the caller-supplied output buffer when a conversion uses right-justified width padding. Exploitation requires an application code path that calls strfm...
CVE-2026-6368
- EPSS 0.11%
- Veröffentlicht 10.08.2026 18:40:11
- Zuletzt bearbeitet 03.09.2026 16:43:15
Calling wordexp with WRDE_APPEND in the GNU C Library version 2.0 to version 2.43 can cause the interface to return invalid memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.
CVE-2026-6238
- EPSS 0.36%
- Veröffentlicht 28.04.2026 16:43:08
- Zuletzt bearbeitet 14.07.2026 13:19:09
The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.0.1 to version 2.43 fail to validate the RDATA content against the RDATA length in a DNS response when processing A6, CERT, LOC, TKEY or TSIG records, which...
CVE-2026-5435
- EPSS 0.24%
- Veröffentlicht 28.04.2026 11:58:54
- Zuletzt bearbeitet 14.07.2026 13:19:01
The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to enforce the caller-supplied buffer length, and can result in an out-of-bounds write when printing TSIG records.
CVE-2026-5450
- EPSS 0.5%
- Veröffentlicht 20.04.2026 20:55:41
- Zuletzt bearbeitet 14.07.2026 13:19:01
Calling the scanf family of functions with a %mc (malloc'd character match) in the GNU C Library version 2.7 to version 2.43 with a format width specifier with an explicit width greater than 1024 could result in a one byte heap buffer overflow.
CVE-2026-5928
- EPSS 0.37%
- Veröffentlicht 20.04.2026 20:37:31
- Zuletzt bearbeitet 14.07.2026 13:19:01
Calling the ungetwc function on a FILE stream with wide characters encoded in a character set that has overlaps between its single byte and multi-byte character encodings, in the GNU C Library version 2.43 or earlier, may result in an attempt to read...
CVE-2026-4046
- EPSS 0.38%
- Veröffentlicht 30.03.2026 17:16:11
- Zuletzt bearbeitet 14.07.2026 13:18:57
The iconv() function in the GNU C Library versions 2.43 and earlier may crash due to an assertion failure when converting inputs from the IBM1390 or IBM1399 character sets, which may be used to remotely crash an application. This vulnerability can...
CVE-2026-4438
- EPSS 0.32%
- Veröffentlicht 20.03.2026 19:59:06
- Zuletzt bearbeitet 14.07.2026 13:18:58
Calling gethostbyaddr or gethostbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend in the GNU C library version 2.34 to version 2.43 could result in an invalid DNS hostname being returned to the caller in violation of t...
CVE-2026-4437
- EPSS 0.33%
- Veröffentlicht 20.03.2026 19:59:00
- Zuletzt bearbeitet 14.07.2026 13:18:57
Calling gethostbyaddr or gethostbyaddr_r with a configured nsswitch.conf that specifies the library's DNS backend in the GNU C Library version 2.34 to version 2.43 could, with a crafted response from the configured DNS server, result in a violation o...