CVE-2010-0830
published 2010-06-01CVE-2010-0830: Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link.h in ld.so in the GNU C Library (aka glibc or libc6) 2.0.1 through 2.11.1…
PriorityP431medium5.1CVSS 2.0
AVNACHAuNCPIPAP
EPSS
4.51%
90.5th percentile
Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link.h in ld.so in the GNU C Library (aka glibc or libc6) 2.0.1 through 2.11.1, when the --verify option is used, allows user-assisted remote attackers to execute arbitrary code via a crafted ELF program with a negative value for a certain d_tag structure member in the ELF header.
Affected
46 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | glibc | < glibc 2.11-1 (bookworm) | glibc 2.11-1 (bookworm) |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
CVSS provenance
nvdv2.05.1MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
osv5.1MEDIUM
vendor_ubuntu7.5HIGH
vendor_debian5.1MEDIUM
vendor_redhat5.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-5gq9-qhr6-c66r: Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link
ghsa_unreviewed·2022-05-02
CVE-2010-0830 [MEDIUM] GHSA-5gq9-qhr6-c66r: Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link
Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link.h in ld.so in the GNU C Library (aka glibc or libc6) 2.0.1 through 2.11.1, when the --verify option is used, allows user-assisted remote attackers to execute arbitrary code via a crafted ELF program with a negative value for a certain d_tag structure member in the ELF header.
OSV
CVE-2010-0830: Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link
osv·2010-06-01·CVSS 5.1
CVE-2010-0830 [MEDIUM] CVE-2010-0830: Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link
Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link.h in ld.so in the GNU C Library (aka glibc or libc6) 2.0.1 through 2.11.1, when the --verify option is used, allows user-assisted remote attackers to execute arbitrary code via a crafted ELF program with a negative value for a certain d_tag structure member in the ELF header.
VMware
VMware security updates for vCSA, vCenter Server, and ESXi
vendor_vmware·2012-12-20·CVSS 4.0
CVE-2009-5029 [MEDIUM] VMware security updates for vCSA, vCenter Server, and ESXi
VMSA-2012-0018: VMware security updates for vCSA, vCenter Server, and ESXi
a. vCenter Server Appliance directory traversal The vCenter Server Appliance (vCSA) contains a directory traversal vulnerability that allows an authenticated remote user to retrieve arbitrary files. Exploitation of this issue may expose sensitive information stored on the server. VMware would like to thank Alexander Minozhenko from ERPScan for reporting this issue to us. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2012-6324 to this issue. Column 4 of the following table lists the action required to remediate the vulnerability in each release, if a solution is available. VMware Product Product Version Running on Replace with/ Apply Patch VMware Product vCSA Product Vers
Ubuntu
GNU C Library vulnerabilities
vendor_ubuntu·2010-05-25·CVSS 7.5
CVE-2010-0296 [HIGH] GNU C Library vulnerabilities
Title: GNU C Library vulnerabilities
Summary: The GNU C library did not correctly handle certain mnt entries, strfmon
arguments, and ELF program headers.
Maksymilian Arciemowicz discovered that the GNU C library did not
correctly handle integer overflows in the strfmon function. If a user
or automated system were tricked into processing a specially crafted
format string, a remote attacker could crash applications, leading to
a denial of service. (Ubuntu 10.04 was not affected.) (CVE-2008-1391)
Jeff Layton and Dan Rosenberg discovered that the GNU C library did not
correctly handle newlines in the mntent family of functions. If a local
attacker were able to inject newlines into a mount entry through other
vulnerable mount helpers, they could disrupt the system or possibly gain
root privi
Red Hat
glibc: ld.so d_tag signedness error in elf_get_dynamic_info
vendor_redhat·2010-05-25·CVSS 5.1
CVE-2010-0830 [MEDIUM] glibc: ld.so d_tag signedness error in elf_get_dynamic_info
glibc: ld.so d_tag signedness error in elf_get_dynamic_info
Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link.h in ld.so in the GNU C Library (aka glibc or libc6) 2.0.1 through 2.11.1, when the --verify option is used, allows user-assisted remote attackers to execute arbitrary code via a crafted ELF program with a negative value for a certain d_tag structure member in the ELF header.
Package: glibc (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2010-0830: glibc - Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-lin...
vendor_debian·2010·CVSS 5.1
CVE-2010-0830 [MEDIUM] CVE-2010-0830: glibc - Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-lin...
Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link.h in ld.so in the GNU C Library (aka glibc or libc6) 2.0.1 through 2.11.1, when the --verify option is used, allows user-assisted remote attackers to execute arbitrary code via a crafted ELF program with a negative value for a certain d_tag structure member in the ELF header.
Scope: local
bookworm: resolved (fixed in 2.11-1)
bullseye: resolved (fixed in 2.11-1)
forky: resolved (fixed in 2.11-1)
sid: resolved (fixed in 2.11-1)
trixie: resolved (fixed in 2.11-1)
No detection rules found.
No public exploits indexed.
http://drosenbe.blogspot.com/2010/05/integer-overflow-in-ldso-cve-2010-0830.htmlhttp://frugalware.org/security/662http://secunia.com/advisories/39900http://security.gentoo.org/glsa/glsa-201011-01.xmlhttp://securitytracker.com/id?1024044http://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=db07e962b6ea963dbb345439f6ab9b0cf74d87c5http://www.debian.org/security/2010/dsa-2058http://www.mandriva.com/security/advisories?name=MDVSA-2010:111http://www.mandriva.com/security/advisories?name=MDVSA-2010:112http://www.securityfocus.com/bid/40063http://www.ubuntu.com/usn/USN-944-1http://www.vupen.com/english/advisories/2010/1246https://exchange.xforce.ibmcloud.com/vulnerabilities/58915https://lists.opensuse.org/opensuse-security-announce/2010-10/msg00007.htmlhttp://drosenbe.blogspot.com/2010/05/integer-overflow-in-ldso-cve-2010-0830.htmlhttp://frugalware.org/security/662http://secunia.com/advisories/39900http://security.gentoo.org/glsa/glsa-201011-01.xmlhttp://securitytracker.com/id?1024044http://sourceware.org/git/?p=glibc.git%3Ba=commit%3Bh=db07e962b6ea963dbb345439f6ab9b0cf74d87c5http://www.debian.org/security/2010/dsa-2058http://www.mandriva.com/security/advisories?name=MDVSA-2010:111http://www.mandriva.com/security/advisories?name=MDVSA-2010:112http://www.securityfocus.com/bid/40063http://www.ubuntu.com/usn/USN-944-1http://www.vupen.com/english/advisories/2010/1246https://exchange.xforce.ibmcloud.com/vulnerabilities/58915https://lists.opensuse.org/opensuse-security-announce/2010-10/msg00007.html
2010-06-01
Published