Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-0864

Опубликовано: 02 мая 2013
Источник: nvd
CVSS2: 6.8
EPSS Низкий

Описание

Integer overflow in the vfprintf function in stdio-common/vfprintf.c in glibc 2.14 and other versions allows context-dependent attackers to bypass the FORTIFY_SOURCE protection mechanism, conduct format string attacks, and write to arbitrary memory via a large number of arguments.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnu:glibc:2.14:*:*:*:*:*:*:*

EPSS

Процентиль: 85%
0.02717
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-189

Связанные уязвимости

ubuntu
около 13 лет назад

Integer overflow in the vfprintf function in stdio-common/vfprintf.c in glibc 2.14 and other versions allows context-dependent attackers to bypass the FORTIFY_SOURCE protection mechanism, conduct format string attacks, and write to arbitrary memory via a large number of arguments.

redhat
больше 15 лет назад

Integer overflow in the vfprintf function in stdio-common/vfprintf.c in glibc 2.14 and other versions allows context-dependent attackers to bypass the FORTIFY_SOURCE protection mechanism, conduct format string attacks, and write to arbitrary memory via a large number of arguments.

debian
около 13 лет назад

Integer overflow in the vfprintf function in stdio-common/vfprintf.c i ...

github
около 4 лет назад

Integer overflow in the vfprintf function in stdio-common/vfprintf.c in glibc 2.14 and other versions allows context-dependent attackers to bypass the FORTIFY_SOURCE protection mechanism, conduct format string attacks, and write to arbitrary memory via a large number of arguments.

oracle-oval
больше 14 лет назад

ELSA-2012-0397: glibc security update (MODERATE)

EPSS

Процентиль: 85%
0.02717
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-189