Gnu

Glibc

165 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.6%
  • Veröffentlicht 01.06.2010 20:30:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Integer overflow in the __vstrfmon_l function in stdlib/strfmon_l.c in the strfmon implementation in the GNU C Library (aka glibc or libc6) before 2.10.1 allows context-dependent attackers to cause a denial of service (application crash) via a crafte...

  • EPSS 0.12%
  • Veröffentlicht 01.06.2010 20:30:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The encode_name macro in misc/mntent_r.c in the GNU C Library (aka glibc or libc6) 2.11.1 and earlier, as used by ncpmount and mount.cifs, does not properly handle newline characters in mountpoint names, which allows local users to cause a denial of ...

  • EPSS 6.29%
  • Veröffentlicht 01.06.2010 20:30:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link.h in ld.so in the GNU C Library (aka glibc or libc6) 2.0.1 through 2.11.1, when the --verify option is used, allows user-assisted remote attackers to execute arbitrary ...

  • EPSS 1.54%
  • Veröffentlicht 14.01.2010 18:30:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

nis/nss_nis/nis-pwd.c in the GNU C Library (aka glibc or libc6) 2.7 and Embedded GLIBC (EGLIBC) 2.10.2 adds information from the passwd.adjunct.byname map to entries in the passwd map, which allows remote attackers to obtain the encrypted passwords o...

  • EPSS 0.07%
  • Veröffentlicht 09.02.2005 05:00:00
  • Zuletzt bearbeitet 16.04.2026 00:27:16

The catchsegv script in glibc 2.3.2 and earlier allows local users to overwrite files via a symlink attack on temporary files.

  • EPSS 0.09%
  • Veröffentlicht 31.12.2004 05:00:00
  • Zuletzt bearbeitet 16.04.2026 00:27:16

The glibcbug script in glibc 2.3.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CVE-2004-0968.

  • EPSS 0.08%
  • Veröffentlicht 31.12.2004 05:00:00
  • Zuletzt bearbeitet 16.04.2026 00:27:16

GNU glibc 2.3.4 before 2.3.4.20040619, 2.3.3 before 2.3.3.20040420, and 2.3.2 before 2.3.2-r10 does not restrict the use of LD_DEBUG for a setuid program, which allows local users to gain sensitive information, such as the list of symbols used by the...

  • EPSS 0.05%
  • Veröffentlicht 15.12.2003 05:00:00
  • Zuletzt bearbeitet 16.04.2026 00:27:16

The getifaddrs function in GNU libc (glibc) 2.2.4 and earlier allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.

Exploit
  • EPSS 56.05%
  • Veröffentlicht 25.03.2003 05:00:00
  • Zuletzt bearbeitet 16.04.2026 00:27:16

Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via ...

  • EPSS 3.94%
  • Veröffentlicht 12.11.2002 05:00:00
  • Zuletzt bearbeitet 16.04.2026 00:27:16

The Sun RPC functionality in multiple libc implementations does not provide a time-out mechanism when reading data from TCP connections, which allows remote attackers to cause a denial of service (hang).