Show filters
18 Total Results
Displaying 11-18 of 18
Sort by:
Attacker Value
Unknown

CVE-2009-4881

Disclosure Date: June 01, 2010 (last updated October 04, 2023)
Integer overflow in the __vstrfmon_l function in stdlib/strfmon_l.c in the strfmon implementation in the GNU C Library (aka glibc or libc6) before 2.10.1 allows context-dependent attackers to cause a denial of service (application crash) via a crafted format string, as demonstrated by the %99999999999999999999n string, a related issue to CVE-2008-1391.
0
Attacker Value
Unknown

CVE-2009-4880

Disclosure Date: June 01, 2010 (last updated October 04, 2023)
Multiple integer overflows in the strfmon implementation in the GNU C Library (aka glibc or libc6) 2.10.1 and earlier allow context-dependent attackers to cause a denial of service (memory consumption or application crash) via a crafted format string, as demonstrated by a crafted first argument to the money_format function in PHP, a related issue to CVE-2008-1391.
0
Attacker Value
Unknown

CVE-2004-0968

Disclosure Date: February 09, 2005 (last updated October 04, 2023)
The catchsegv script in glibc 2.3.2 and earlier allows local users to overwrite files via a symlink attack on temporary files.
0
Attacker Value
Unknown

CVE-2004-1453

Disclosure Date: December 31, 2004 (last updated October 04, 2023)
GNU glibc 2.3.4 before 2.3.4.20040619, 2.3.3 before 2.3.3.20040420, and 2.3.2 before 2.3.2-r10 does not restrict the use of LD_DEBUG for a setuid program, which allows local users to gain sensitive information, such as the list of symbols used by the program.
0
Attacker Value
Unknown

CVE-2004-1382

Disclosure Date: December 31, 2004 (last updated October 04, 2023)
The glibcbug script in glibc 2.3.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CVE-2004-0968.
0
Attacker Value
Unknown

CVE-2003-0859

Disclosure Date: December 15, 2003 (last updated October 03, 2023)
The getifaddrs function in GNU libc (glibc) 2.2.4 and earlier allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.
0
Attacker Value
Unknown

CVE-2003-0028

Disclosure Date: March 25, 2003 (last updated October 03, 2023)
Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability than CVE-2002-0391.
0
Attacker Value
Unknown

CVE-2002-1265

Disclosure Date: November 12, 2002 (last updated October 03, 2023)
The Sun RPC functionality in multiple libc implementations does not provide a time-out mechanism when reading data from TCP connections, which allows remote attackers to cause a denial of service (hang).
0