Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Adam Nielsen

#27979of 53,622
9.1Total CVSS
Vulnerabilities · 1
PT-2016-4014
9.1
2016-02-16
Gnu · Glibc · CVE-2015-8776
**Name of the Vulnerable Software and Affected Versions** glibc versions prior to 2.23 **Description** The issue allows context-dependent attackers to cause a denial of service, potentially leading to an application crash, or possibly obtain sensitive information via an out-of-range time value. This is related to the strftime function in the GNU C Library. **Recommendations** For versions prior to 2.23, update to version 2.23 or later to resolve the issue. As a temporary workaround, consider restricting the input to the strftime function to prevent out-of-range time values until a patch is available.