Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-5435

Опубликовано: 28 апр. 2026
Источник: debian
EPSS Низкий

Описание

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to enforce the caller-supplied buffer length, and can result in an out-of-bounds write when printing TSIG records.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
glibcunfixedpackage
glibcno-dsatrixiepackage
glibcno-dsabookwormpackage
glibcpostponedbullseyepackage

Примечания

  • https://sourceware.org/bugzilla/show_bug.cgi?id=34033

  • https://sourceware.org/git/?p=glibc.git;a=blob_plain;f=advisories/GLIBC-SA-2026-0011

EPSS

Процентиль: 15%
0.00237
Низкий

Связанные уязвимости

CVSS3: 7.3
ubuntu
3 месяца назад

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to enforce the caller-supplied buffer length, and can result in an out-of-bounds write when printing TSIG records.

CVSS3: 5.9
redhat
3 месяца назад

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to enforce the caller-supplied buffer length, and can result in an out-of-bounds write when printing TSIG records.

CVSS3: 7.3
nvd
3 месяца назад

The deprecated functions ns_printrrf, ns_printrr and fp_nquery in the GNU C Library version 2.2 and newer fail to enforce the caller-supplied buffer length, and can result in an out-of-bounds write when printing TSIG records.

msrc
3 месяца назад

Potential buffer overflow in ns_sprintrrf TSIG handling path

CVSS3: 7.3
redos
23 дня назад

Уязвимость glibc

EPSS

Процентиль: 15%
0.00237
Низкий