Логотип exploitDog
bind:"GHSA-8mm9-c4mg-vfjh" OR bind:"CVE-2025-4802"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-8mm9-c4mg-vfjh" OR bind:"CVE-2025-4802"

Количество 12

Количество 12

github логотип

GHSA-8mm9-c4mg-vfjh

около 1 месяца назад

Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading of dynamically shared library in statically compiled setuid binaries that call dlopen (including internal dlopen calls after setlocale or calls to NSS functions such as getaddrinfo).

CVSS3: 9.8
EPSS: Низкий
ubuntu логотип

CVE-2025-4802

около 1 месяца назад

Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading of dynamically shared library in statically compiled setuid binaries that call dlopen (including internal dlopen calls after setlocale or calls to NSS functions such as getaddrinfo).

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2025-4802

около 1 месяца назад

Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading of dynamically shared library in statically compiled setuid binaries that call dlopen (including internal dlopen calls after setlocale or calls to NSS functions such as getaddrinfo).

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2025-4802

около 1 месяца назад

Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading of dynamically shared library in statically compiled setuid binaries that call dlopen (including internal dlopen calls after setlocale or calls to NSS functions such as getaddrinfo).

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2025-4802

около 1 месяца назад

Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GN ...

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01784-1

20 дней назад

Security update for glibc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01702-2

15 дней назад

Security update for glibc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01702-1

26 дней назад

Security update for glibc

EPSS: Низкий
oracle-oval логотип

ELSA-2025-8686

10 дней назад

ELSA-2025-8686: glibc security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-8655

11 дней назад

ELSA-2025-8655: glibc security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-20375

3 дня назад

ELSA-2025-20375: glibc security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2025-05682

около 1 месяца назад

Уязвимость функции dlopen() системной библиотеки glibc, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-8mm9-c4mg-vfjh

Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading of dynamically shared library in statically compiled setuid binaries that call dlopen (including internal dlopen calls after setlocale or calls to NSS functions such as getaddrinfo).

CVSS3: 9.8
0%
Низкий
около 1 месяца назад
ubuntu логотип
CVE-2025-4802

Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading of dynamically shared library in statically compiled setuid binaries that call dlopen (including internal dlopen calls after setlocale or calls to NSS functions such as getaddrinfo).

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2025-4802

Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading of dynamically shared library in statically compiled setuid binaries that call dlopen (including internal dlopen calls after setlocale or calls to NSS functions such as getaddrinfo).

CVSS3: 7
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2025-4802

Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading of dynamically shared library in statically compiled setuid binaries that call dlopen (including internal dlopen calls after setlocale or calls to NSS functions such as getaddrinfo).

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2025-4802

Untrusted LD_LIBRARY_PATH environment variable vulnerability in the GN ...

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2025:01784-1

Security update for glibc

0%
Низкий
20 дней назад
suse-cvrf логотип
SUSE-SU-2025:01702-2

Security update for glibc

0%
Низкий
15 дней назад
suse-cvrf логотип
SUSE-SU-2025:01702-1

Security update for glibc

0%
Низкий
26 дней назад
oracle-oval логотип
ELSA-2025-8686

ELSA-2025-8686: glibc security update (MODERATE)

10 дней назад
oracle-oval логотип
ELSA-2025-8655

ELSA-2025-8655: glibc security update (MODERATE)

11 дней назад
oracle-oval логотип
ELSA-2025-20375

ELSA-2025-20375: glibc security update (MODERATE)

3 дня назад
fstec логотип
BDU:2025-05682

Уязвимость функции dlopen() системной библиотеки glibc, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу