Gnu

Glibc

168 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.52%
  • Veröffentlicht 10.04.2011 02:55:01
  • Zuletzt bearbeitet 16.06.2026 23:28:42

locale/programs/locale.c in locale in the GNU C Library (aka glibc or libc6) before 2.13 does not quote its output, which might allow local users to gain privileges via a crafted localization environment variable, in conjunction with a program that e...

  • EPSS 0.31%
  • Veröffentlicht 08.04.2011 15:17:28
  • Zuletzt bearbeitet 16.06.2026 23:29:45

ld.so in the GNU C Library (aka glibc or libc6) 2.13 and earlier expands the $ORIGIN dynamic string token when RPATH is composed entirely of this token, which might allow local users to gain privileges by creating a hard link in an arbitrary director...

Exploit
  • EPSS 2.86%
  • Veröffentlicht 08.04.2011 15:17:28
  • Zuletzt bearbeitet 16.06.2026 23:29:45

Integer overflow in posix/fnmatch.c in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows context-dependent attackers to cause a denial of service (application crash) via a long UTF8 string that is used in an fnmatch call with a crafted p...

Exploit
  • EPSS 14.32%
  • Veröffentlicht 08.04.2011 15:17:27
  • Zuletzt bearbeitet 16.06.2026 23:28:39

The GNU C Library (aka glibc or libc6) before 2.12.2 and Embedded GLIBC (EGLIBC) allow context-dependent attackers to execute arbitrary code or cause a denial of service (memory consumption) via a long UTF8 string that is used in an fnmatch call, aka...

  • EPSS 0.79%
  • Veröffentlicht 08.04.2011 15:17:26
  • Zuletzt bearbeitet 16.06.2026 23:27:35

Multiple untrusted search path vulnerabilities in elf/dl-object.c in certain modified versions of the GNU C Library (aka glibc or libc6), including glibc-2.5-49.el5_5.6 and glibc-2.12-1.7.el6_0.3 in Red Hat Enterprise Linux, allow local users to gain...

Exploit
  • EPSS 0.54%
  • Veröffentlicht 30.03.2011 22:55:01
  • Zuletzt bearbeitet 16.06.2026 23:14:55

ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local users to gain privileges via a Trojan horse executable file linked with a modified loader that omits certain LD_TRACE_LOADED_OBJECTS checks. NOTE: the GNU C Library vendor s...

Exploit
  • EPSS 2.61%
  • Veröffentlicht 02.03.2011 20:00:01
  • Zuletzt bearbeitet 16.06.2026 23:25:29

The glob implementation in the GNU C Library (aka glibc or libc6) allows remote authenticated users to cause a denial of service (CPU and memory consumption) via crafted glob expressions that do not match any pathnames, as demonstrated by glob expres...

Exploit
  • EPSS 40%
  • Veröffentlicht 13.01.2011 19:00:02
  • Zuletzt bearbeitet 16.06.2026 23:24:03

The regcomp implementation in the GNU C Library (aka glibc or libc6) through 2.11.3, and 2.12.x through 2.12.2, allows context-dependent attackers to cause a denial of service (application crash) via a regular expression containing adjacent bounded r...

Exploit
  • EPSS 51.3%
  • Veröffentlicht 13.01.2011 19:00:02
  • Zuletzt bearbeitet 16.06.2026 23:24:03

Stack consumption vulnerability in the regcomp implementation in the GNU C Library (aka glibc or libc6) through 2.11.3, and 2.12.x through 2.12.2, allows context-dependent attackers to cause a denial of service (resource exhaustion) via a regular exp...

Exploit
  • EPSS 9.49%
  • Veröffentlicht 07.01.2011 19:00:17
  • Zuletzt bearbeitet 16.06.2026 23:23:39

elf/dl-load.c in ld.so in the GNU C Library (aka glibc or libc6) through 2.11.2, and 2.12.x through 2.12.1, does not properly handle a value of $ORIGIN for the LD_AUDIT environment variable, which allows local users to gain privileges via a crafted d...