|
|
| |
|
| |
glibc: format string protection mechanism bypass
| Package(s): | glibc |
CVE #(s): | CVE-2012-0864
|
| Created: | February 27, 2012 |
Updated: | March 22, 2012 |
| Description: |
From the Red Hat bugzilla:
In the Phrack article "A Eulogy for Format Strings", a researcher using
nickname "Captain Planet" reported an integer overflow flaw in the format
string protection mechanism offered by FORTIFY_SOURCE. A remote attacker could provide a specially crafted executable, leading to FORTIFY_SOURCE format string protection mechanism bypass, when executed. |
| Alerts: |
|
( Log in to post comments)
|
|
|