Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-7424

Опубликовано: 26 авг. 2015
Источник: ubuntu
Приоритет: medium
CVSS2: 5.1

Описание

The getaddrinfo function in glibc before 2.15, when compiled with libidn and the AI_IDN flag is used, allows context-dependent attackers to cause a denial of service (invalid free) and possibly execute arbitrary code via unspecified vectors, as demonstrated by an internationalized domain name to ping6.

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

not-affected

2.19-0ubuntu6.5
lucid

not-affected

precise

not-affected

2.15-0ubuntu10.10
trusty

not-affected

2.19-0ubuntu6.5
trusty/esm

not-affected

2.19-0ubuntu6.5
upstream

needs-triage

utopic

DNE

Показывать по

РелизСтатусПримечание
devel

not-affected

2.19-15ubuntu1
esm-infra-legacy/trusty

DNE

lucid

DNE

precise

DNE

trusty

DNE

trusty/esm

DNE

upstream

needs-triage

utopic

not-affected

2.19-10ubuntu2.2

Показывать по

Ссылки на источники

5.1 Medium

CVSS2

Связанные уязвимости

redhat
больше 10 лет назад

The getaddrinfo function in glibc before 2.15, when compiled with libidn and the AI_IDN flag is used, allows context-dependent attackers to cause a denial of service (invalid free) and possibly execute arbitrary code via unspecified vectors, as demonstrated by an internationalized domain name to ping6.

nvd
около 10 лет назад

The getaddrinfo function in glibc before 2.15, when compiled with libidn and the AI_IDN flag is used, allows context-dependent attackers to cause a denial of service (invalid free) and possibly execute arbitrary code via unspecified vectors, as demonstrated by an internationalized domain name to ping6.

debian
около 10 лет назад

The getaddrinfo function in glibc before 2.15, when compiled with libi ...

github
больше 3 лет назад

The getaddrinfo function in glibc before 2.15, when compiled with libidn and the AI_IDN flag is used, allows context-dependent attackers to cause a denial of service (invalid free) and possibly execute arbitrary code via unspecified vectors, as demonstrated by an internationalized domain name to ping6.

oracle-oval
около 10 лет назад

ELSA-2015-1627: glibc security update (MODERATE)

5.1 Medium

CVSS2