PT-2016-5358 · Gnu+5 · Glibc+5

Florian Weimer

·

Publicado

2016-03-31

·

Atualizado

2024-06-15

·

CVE-2016-3075

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions glibc versions prior to 2.24
Description The issue is a stack-based buffer overflow in the nss dns implementation of the getnetbyname function, allowing context-dependent attackers to cause a denial of service, resulting in stack consumption and application crash, via a long name.
Recommendations For versions prior to 2.24, update to version 2.24 or later to resolve the issue.

Correção

DoS

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2016-1480
ALT-PU-2016-2499
CESA-2016_2573
CVE-2016-3075
DLA-494-1
MGASA-2016-0206
OPENSUSE-SU-2024:10154-1
RHSA-2016:2573
RHSA-2016_2573
SUSE-SU-2016:1721-1
SUSE-SU-2016:1733-1
SUSE-SU-2016:2156-1
SUSE-SU-2017:2699-1
SUSE-SU-2017:2700-1
USN-2985-1
USN-2985-2

Produtos afetados

Alt Linux
Centos
Red Hat
Suse
Ubuntu
Glibc