Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-6040

Опубликовано: 05 дек. 2014
Источник: debian
EPSS Низкий

Описание

GNU C Library (aka glibc) before 2.20 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a multibyte character value of "0xffff" to the iconv function when converting (1) IBM933, (2) IBM935, (3) IBM937, (4) IBM939, or (5) IBM1364 encoded data to UTF-8.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
glibcfixed2.19-12package
eglibcremovedpackage
eglibcno-dsawheezypackage

Примечания

  • https://sourceware.org/bugzilla/show_bug.cgi?id=17325

  • https://sourceware.org/ml/libc-alpha/2014-08/msg00473.html

EPSS

Процентиль: 92%
0.07802
Низкий

Связанные уязвимости

ubuntu
больше 10 лет назад

GNU C Library (aka glibc) before 2.20 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a multibyte character value of "0xffff" to the iconv function when converting (1) IBM933, (2) IBM935, (3) IBM937, (4) IBM939, or (5) IBM1364 encoded data to UTF-8.

redhat
почти 11 лет назад

GNU C Library (aka glibc) before 2.20 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a multibyte character value of "0xffff" to the iconv function when converting (1) IBM933, (2) IBM935, (3) IBM937, (4) IBM939, or (5) IBM1364 encoded data to UTF-8.

nvd
больше 10 лет назад

GNU C Library (aka glibc) before 2.20 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a multibyte character value of "0xffff" to the iconv function when converting (1) IBM933, (2) IBM935, (3) IBM937, (4) IBM939, or (5) IBM1364 encoded data to UTF-8.

github
больше 3 лет назад

GNU C Library (aka glibc) before 2.20 allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via a multibyte character value of "0xffff" to the iconv function when converting (1) IBM933, (2) IBM935, (3) IBM937, (4) IBM939, or (5) IBM1364 encoded data to UTF-8.

oracle-oval
больше 10 лет назад

ELSA-2015-0327: glibc security and bug fix update (MODERATE)

EPSS

Процентиль: 92%
0.07802
Низкий