Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Chris Hills

#48679de 53,640
5.1CVSS total
Vulnerabilidades · 1
PT-2015-3584
5.1
2014-10-13
Gnu · Glibc · CVE-2013-7424
**Name of the Vulnerable Software and Affected Versions** glibc versions prior to 2.15 **Description** The issue allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors, as demonstrated by an internationalized domain name to ping6. This is related to the getaddrinfo function when compiled with libidn and the AI IDN flag is used. **Recommendations** For versions prior to 2.15, update to version 2.15 or later to resolve the issue. As a temporary workaround, consider avoiding the use of the AI IDN flag with the getaddrinfo function until a patch is available.