PT-2016-3674 · Red Hat+1 · Glibc+2

Jeff Layton

·

Published

2016-02-16

·

Updated

2016-11-28

·

CVE-2015-5229

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions glibc versions in Red Hat Enterprise Linux (RHEL) 6.7 and 7.2
Description The issue is related to the calloc function in the glibc package, which does not properly initialize memory areas. This could allow attackers to cause a denial of service, resulting in a hang or crash, via unspecified vectors.
Recommendations For glibc in Red Hat Enterprise Linux (RHEL) 6.7 and 7.2, update the glibc package to a version that properly initializes memory areas to prevent potential denial of service attacks.

Exploit

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CESA-2016_0176
CVE-2015-5229
RHSA-2016:0176
RHSA-2016_0176

Affected Products

Centos
Red Hat
Glibc