Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-11237

Опубликовано: 18 мая 2018
Источник: debian
EPSS Низкий

Описание

An AVX-512-optimized implementation of the mempcpy function in the GNU C Library (aka glibc or libc6) 2.27 and earlier may write data beyond the target buffer, leading to a buffer overflow in __mempcpy_avx512_no_vzeroupper.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
glibcfixed2.27-4package
glibcfixed2.24-11+deb9u4stretchpackage
eglibcremovedpackage

Примечания

  • https://sourceware.org/bugzilla/show_bug.cgi?id=23196

EPSS

Процентиль: 54%
0.00858
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 8 лет назад

An AVX-512-optimized implementation of the mempcpy function in the GNU C Library (aka glibc or libc6) 2.27 and earlier may write data beyond the target buffer, leading to a buffer overflow in __mempcpy_avx512_no_vzeroupper.

CVSS3: 5.6
redhat
около 8 лет назад

An AVX-512-optimized implementation of the mempcpy function in the GNU C Library (aka glibc or libc6) 2.27 and earlier may write data beyond the target buffer, leading to a buffer overflow in __mempcpy_avx512_no_vzeroupper.

CVSS3: 7.8
nvd
около 8 лет назад

An AVX-512-optimized implementation of the mempcpy function in the GNU C Library (aka glibc or libc6) 2.27 and earlier may write data beyond the target buffer, leading to a buffer overflow in __mempcpy_avx512_no_vzeroupper.

suse-cvrf
около 8 лет назад

Security update for glibc

CVSS3: 7.8
github
около 4 лет назад

An AVX-512-optimized implementation of the mempcpy function in the GNU C Library (aka glibc or libc6) 2.27 and earlier may write data beyond the target buffer, leading to a buffer overflow in __mempcpy_avx512_no_vzeroupper.

EPSS

Процентиль: 54%
0.00858
Низкий