Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-6368

Опубликовано: 10 авг. 2026
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

Calling wordexp with WRDE_APPEND in the GNU C Library version 2.0 to version 2.43 can cause the interface to return invalid memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.

A flaw was found in glibc (GNU C Library). A local attacker or application using the wordexp function with the WRDE_APPEND flag can trigger the interface to return invalid memory in the we_wordv member. This invalid memory, when subsequently processed by wordfree, may cause the process to abort, leading to a Denial of Service (DoS).

Отчет

This flaw in glibc has Moderate impact, as it can lead to a denial of service. Exploitation requires an application to specifically call wordexp with the WRDE_APPEND flag, followed by a wordfree call, which can result in a process abort. This vulnerability affects applications that utilize this particular programming pattern.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10glibcAffected
Red Hat Enterprise Linux 6compat-glibcOut of support scope
Red Hat Enterprise Linux 6glibcOut of support scope
Red Hat Enterprise Linux 7compat-glibcFix deferred
Red Hat Enterprise Linux 7glibcFix deferred
Red Hat Enterprise Linux 8glibcFix deferred
Red Hat Enterprise Linux 9glibcFix deferred
Red Hat Hardened ImagesfilesystemNot affected
Red Hat OpenShift Container Platform 4openshift/ose-rhel-coreos-8Fix deferred
Red Hat OpenShift Container Platform 4openshift/ose-rhel-coreos-9Fix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-1341
https://bugzilla.redhat.com/show_bug.cgi?id=2513608glibc: glibc: Process abort due to invalid memory in wordexp

EPSS

Процентиль: 1%
0.00107
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

ubuntu
24 дня назад

Calling wordexp with WRDE_APPEND in the GNU C Library version 2.0 to version 2.43 can cause the interface to return invalid memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.

nvd
24 дня назад

Calling wordexp with WRDE_APPEND in the GNU C Library version 2.0 to version 2.43 can cause the interface to return invalid memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.

msrc
23 дня назад

wordexp with WRDE_APPEND can return or use invalid memory

debian
24 дня назад

Calling wordexp with WRDE_APPEND in the GNU C Library version 2.0 to v ...

github
24 дня назад

Calling wordexp with WRDE_APPEND in the GNU C Library version 2.0 to version 2.43 can cause the interface to return invalid memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.

EPSS

Процентиль: 1%
0.00107
Низкий

5.5 Medium

CVSS3