|
|
| |
|
| |
glibc: code execution
| Package(s): | glibc |
CVE #(s): | CVE-2012-3480
|
| Created: | August 20, 2012 |
Updated: | August 28, 2012 |
| Description: |
From the Red Hat bugzilla:
Multiple integer overflows, leading to stack-based buffer overflows were found in various stdlib functions of GNU libc (strtod, strtof, strtold, strtod_l and related routines). If an application, using the affected stdlib functions, did not perform user-level sanitization of provided inputs, a local attacker could use this flaw to cause such an application to crash or, potentially, execute arbitrary code with the privileges of the user running the application. |
| Alerts: |
|
( Log in to post comments)
|
|
|