CVE-2013-7424
published 2015-08-26CVE-2013-7424: The getaddrinfo function in glibc before 2.15, when compiled with libidn and the AI_IDN flag is used, allows context-dependent attackers to cause a denial of…
PriorityP426medium5.1CVSS 2.0
AVNACHAuNCPIPAP
EPSS
2.68%
84.2th percentile
The getaddrinfo function in glibc before 2.15, when compiled with libidn and the AI_IDN flag is used, allows context-dependent attackers to cause a denial of service (invalid free) and possibly execute arbitrary code via unspecified vectors, as demonstrated by an internationalized domain name to ping6.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | glibc | < glibc 2.15-1 (bookworm) | glibc 2.15-1 (bookworm) |
| gnu | glibc | <= 2.14.1 | — |
| gnu | glibc | >= 0 < 2.15-1 | 2.15-1 |
| gnu | glibc | >= 0 < 2.15-1 | 2.15-1 |
| gnu | glibc | >= 0 < 2.15-1 | 2.15-1 |
| gnu | glibc | >= 0 < 2.15-1 | 2.15-1 |
CVSS provenance
nvdv2.05.1MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
osv5.1MEDIUM
vendor_debian5.1MEDIUM
vendor_redhat5.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
glibc: Invalid-free when using getaddrinfo()
vendor_redhat·2015-01-27·CVSS 5.1
CVE-2013-7424 [MEDIUM] glibc: Invalid-free when using getaddrinfo()
glibc: Invalid-free when using getaddrinfo()
The getaddrinfo function in glibc before 2.15, when compiled with libidn and the AI_IDN flag is used, allows context-dependent attackers to cause a denial of service (invalid free) and possibly execute arbitrary code via unspecified vectors, as demonstrated by an internationalized domain name to ping6.
An invalid free flaw was found in glibc's getaddrinfo() function when used with the AI_IDN flag. A remote attacker able to make an application call this function could use this flaw to execute arbitrary code with the permissions of the user running the application. Note that this flaw only affected applications using glibc compiled with libidn support.
Package: glibc (Red Hat Enterprise Linux 7) - Not affected
Package: glibc (Red Hat Enterpris
Debian
CVE-2013-7424: glibc - The getaddrinfo function in glibc before 2.15, when compiled with libidn and the...
vendor_debian·2013·CVSS 5.1
CVE-2013-7424 [MEDIUM] CVE-2013-7424: glibc - The getaddrinfo function in glibc before 2.15, when compiled with libidn and the...
The getaddrinfo function in glibc before 2.15, when compiled with libidn and the AI_IDN flag is used, allows context-dependent attackers to cause a denial of service (invalid free) and possibly execute arbitrary code via unspecified vectors, as demonstrated by an internationalized domain name to ping6.
Scope: local
bookworm: resolved (fixed in 2.15-1)
bullseye: resolved (fixed in 2.15-1)
forky: resolved (fixed in 2.15-1)
sid: resolved (fixed in 2.15-1)
trixie: resolved (fixed in 2.15-1)
GHSA
GHSA-cf2r-3fcj-q45r: The getaddrinfo function in glibc before 2
ghsa_unreviewed·2022-05-17
CVE-2013-7424 [MEDIUM] GHSA-cf2r-3fcj-q45r: The getaddrinfo function in glibc before 2
The getaddrinfo function in glibc before 2.15, when compiled with libidn and the AI_IDN flag is used, allows context-dependent attackers to cause a denial of service (invalid free) and possibly execute arbitrary code via unspecified vectors, as demonstrated by an internationalized domain name to ping6.
OSV
CVE-2013-7424: The getaddrinfo function in glibc before 2
osv·2015-08-26·CVSS 5.1
CVE-2013-7424 [MEDIUM] CVE-2013-7424: The getaddrinfo function in glibc before 2
The getaddrinfo function in glibc before 2.15, when compiled with libidn and the AI_IDN flag is used, allows context-dependent attackers to cause a denial of service (invalid free) and possibly execute arbitrary code via unspecified vectors, as demonstrated by an internationalized domain name to ping6.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-7424 glibc: Invalid-free when using getaddrinfo()
bugzilla·2015-01-28·CVSS 5.1
CVE-2013-7424 [MEDIUM] CVE-2013-7424 glibc: Invalid-free when using getaddrinfo()
CVE-2013-7424 glibc: Invalid-free when using getaddrinfo()
An Invalid-free() flaw was found in the getaddrinfo() syscall of glibc. The bug only materializes if the getaddrinfo functions is called with
the AI_IDN flag, and if glibc has been compiled with libidn support.
This flaw was fixed in glibc-2.15 via the following commit:
https://sourceware.org/git/gitweb.cgi?p=glibc.git;a=commitdiff;h=2e96f1c7
Discussion:
Filed a CVE request at:
http://seclists.org/oss-sec/2015/q1/306
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 5
Via RHSA-2015:1627 https://rhn.redhat.com/errata/RHSA-2015-1627.html
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2014:1391 https://rhn.redhat.com/errata/RHSA-2014-13
Bugzilla
CVE-2013-7424 glibc: ping6 with idn causes crash
bugzilla·2013-07-07·CVSS 5.1
CVE-2013-7424 [MEDIUM] CVE-2013-7424 glibc: ping6 with idn causes crash
CVE-2013-7424 glibc: ping6 with idn causes crash
Description of problem:
When supplying an internationalized domain name to ping6 it causes a crash in ping6.
Version-Release number of selected component (if applicable):
iputils-20071127-17.el6_4.x86_64
How reproducible:
Every time, on both x86_64 and x86.
Steps to Reproduce:
1. Open a terminal.
2. Enter the command `ping6 தளம்.பாராளுமன்றம்.இலங்கை.`
Actual results:
ping6 crashes
Expected results:
ping6 does not crash.
Additional info:
# ping6 தளம்.பாராளுமன்றம்.இலங்கை.
*** glibc detected *** ping6: munmap_chunk(): invalid pointer: 0xbfb787a6 ***
======= Backtrace: =========
/lib/libc.so.6(+0x390e31)[0xde7e31]
/lib/libc.so.6(+0x3e6c86)[0xe3dc86]
/lib/libc.so.6(getaddrinfo+0x15b)[0xe403db]
ping6(main+0x5da)[0xbb8aba]
/lib/libc.so.6(__li
http://rhn.redhat.com/errata/RHSA-2015-1627.htmlhttp://www.openwall.com/lists/oss-security/2015/01/29/21http://www.securityfocus.com/bid/72710https://bugzilla.redhat.com/show_bug.cgi?id=1186614https://bugzilla.redhat.com/show_bug.cgi?id=981942https://sourceware.org/bugzilla/show_bug.cgi?id=18011https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Ba=commitdiff%3Bh=2e96f1c7http://rhn.redhat.com/errata/RHSA-2015-1627.htmlhttp://www.openwall.com/lists/oss-security/2015/01/29/21http://www.securityfocus.com/bid/72710https://bugzilla.redhat.com/show_bug.cgi?id=1186614https://bugzilla.redhat.com/show_bug.cgi?id=981942https://sourceware.org/bugzilla/show_bug.cgi?id=18011https://sourceware.org/git/gitweb.cgi?p=glibc.git%3Ba=commitdiff%3Bh=2e96f1c7
2015-08-26
Published