Gnu

Glibc

155 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.31%
  • Veröffentlicht 15.03.2017 19:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Integer overflow in the strxfrm function in the GNU C Library (aka glibc or libc6) before 2.21 allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a long string, which triggers a stack-based ...

  • EPSS 0.44%
  • Veröffentlicht 02.03.2017 01:59:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the destination encoding (TRANSLATE or IGNORE) along with the -c option, enters an infinite loop when processing invalid multi-byte i...

  • EPSS 1.19%
  • Veröffentlicht 17.02.2017 02:59:13
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Memory leak in the __res_vinit function in the IPv6 name server management code in libresolv in GNU C Library (aka glibc or libc6) before 2.24 allows remote attackers to cause a denial of service (memory consumption) by leveraging partial initializat...

  • EPSS 1.13%
  • Veröffentlicht 07.10.2016 14:59:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The makecontext function in the GNU C Library (aka glibc or libc6) before 2.25 creates execution contexts incompatible with the unwinder on ARM EABI (32-bit) platforms, which might allow context-dependent attackers to cause a denial of service (hang)...

  • EPSS 2.14%
  • Veröffentlicht 10.06.2016 15:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Stack-based buffer overflow in the clntudp_call function in sunrpc/clnt_udp.c in the GNU C Library (aka glibc or libc6) allows remote servers to cause a denial of service (crash) or possibly unspecified other impact via a flood of crafted ICMP and UD...

  • EPSS 2.44%
  • Veröffentlicht 10.06.2016 15:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Stack-based buffer overflow in the getaddrinfo function in sysdeps/posix/getaddrinfo.c in the GNU C Library (aka glibc or libc6) allows remote attackers to cause a denial of service (crash) via vectors involving hostent conversion. NOTE: this vulnera...

  • EPSS 10.88%
  • Veröffentlicht 01.06.2016 20:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Stack-based buffer overflow in the nss_dns implementation of the getnetbyname function in GNU C Library (aka glibc) before 2.24 allows context-dependent attackers to cause a denial of service (stack consumption and application crash) via a long name.

Exploit
  • EPSS 0.81%
  • Veröffentlicht 01.06.2016 20:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Stack-based buffer overflow in the glob implementation in GNU C Library (aka glibc) before 2.24, when GLOB_ALTDIRFUNC is used, allows context-dependent attackers to cause a denial of service (crash) via a long name.

  • EPSS 9.68%
  • Veröffentlicht 19.04.2016 21:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Stack-based buffer overflow in the catopen function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long catalog name.

  • EPSS 7.41%
  • Veröffentlicht 19.04.2016 21:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The strftime function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly obtain sensitive information via an out-of-range time value.