PT-2016-3674 · Red Hat+1 · Glibc+2
Jeff Layton
·
Published
2016-02-16
·
Updated
2016-11-28
·
CVE-2015-5229
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
glibc versions in Red Hat Enterprise Linux (RHEL) 6.7 and 7.2
Description
The issue is related to the calloc function in the glibc package, which does not properly initialize memory areas. This could allow attackers to cause a denial of service, resulting in a hang or crash, via unspecified vectors.
Recommendations
For glibc in Red Hat Enterprise Linux (RHEL) 6.7 and 7.2, update the glibc package to a version that properly initializes memory areas to prevent potential denial of service attacks.
Exploit
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Centos
Red Hat
Glibc