cbcvebase.

Debian Glibc vulnerabilities

145 known vulnerabilities affecting debian/glibc.

Total CVEs
145
CISA KEV
1
actively exploited
Public exploits
22
Exploited in wild
4
Severity breakdown
CRITICAL17HIGH42MEDIUM45LOW41

Vulnerabilities

Page 5 of 8
CVE-2013-4237P4MEDIUMCVSS 6.8fixed in glibc 2.17-94 (bookworm)2013
CVE-2013-4237 [MEDIUM] CVE-2013-4237: glibc - sysdeps/posix/readdir_r.c in the GNU C Library (aka glibc or libc6) 2.18 and ear... sysdeps/posix/readdir_r.c in the GNU C Library (aka glibc or libc6) 2.18 and earlier allows context-dependent attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a crafted (1) NTFS or (2) CIFS image. Scope: local bookworm: resolved (fixed in 2.17-94) bullseye: resolved (fixed in 2.17-94) forky: resolved (fixed
debian
CVE-2014-0475P4MEDIUMCVSS 6.8fixed in glibc 2.19-6 (bookworm)2014
CVE-2014-0475 [MEDIUM] CVE-2014-0475: glibc - Multiple directory traversal vulnerabilities in GNU C Library (aka glibc or libc... Multiple directory traversal vulnerabilities in GNU C Library (aka glibc or libc6) before 2.20 allow context-dependent attackers to bypass ForceCommand restrictions and possibly have other unspecified impact via a .. (dot dot) in a (1) LC_*, (2) LANG, or other locale environment variable. Scope: local bookworm: resolved (fixed in 2.19-6) bullseye: resolved (fixed in 2
debian
CVE-2002-0684P4HIGHCVSS 7.5fixed in glibc 2.2.5-8 (bookworm)2002
CVE-2002-0684 [HIGH] CVE-2002-0684: glibc - Buffer overflow in DNS resolver functions that perform lookup of network names a... Buffer overflow in DNS resolver functions that perform lookup of network names and addresses, as used in BIND 4.9.8 and ported to glibc 2.2.5 and earlier, allows remote malicious DNS servers to execute arbitrary code through a subroutine used by functions such as getnetbyname and getnetbyaddr. Scope: local bookworm: resolved (fixed in 2.2.5-8) bullseye: resolved (fixed
debian
CVE-2008-1367P4HIGHCVSS 7.5fixed in glibc 2.7-8 (bookworm)2008
CVE-2008-1367 [HIGH] CVE-2008-1367: glibc - gcc 4.3.x does not generate a cld instruction while compiling functions used for... gcc 4.3.x does not generate a cld instruction while compiling functions used for string manipulation such as memcpy and memmove on x86 and i386, which can prevent the direction flag (DF) from being reset in violation of ABI conventions and cause data to be copied in the wrong direction during signal handling in the Linux kernel, which might allow context-dependent attac
debian
CVE-2020-1752P4HIGHCVSS 7.0fixed in glibc 2.30-3 (bookworm)2020
CVE-2020-1752 [HIGH] CVE-2020-1752: glibc - A use-after-free vulnerability introduced in glibc upstream version 2.14 was fou... A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was carried out. Directory paths containing an initial tilde followed by a valid username were affected by this issue. A local attacker could exploit this flaw by creating a specially crafted path that, when processed by the glob function, would potentially
debian
CVE-2010-0830P4MEDIUMCVSS 5.1fixed in glibc 2.11-1 (bookworm)2010
CVE-2010-0830 [MEDIUM] CVE-2010-0830: glibc - Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-lin... Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link.h in ld.so in the GNU C Library (aka glibc or libc6) 2.0.1 through 2.11.1, when the --verify option is used, allows user-assisted remote attackers to execute arbitrary code via a crafted ELF program with a negative value for a certain d_tag structure member in the ELF header. Scope: loca
debian
CVE-2020-1751P4MEDIUMCVSS 5.1fixed in glibc 2.30-3 (bookworm)2020
CVE-2020-1751 [MEDIUM] CVE-2020-1751: glibc - An out-of-bounds write vulnerability was found in glibc before 2.31 when handlin... An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this vulnerability is to system availability. Scope: local boo
debian
CVE-2016-4429P4MEDIUMCVSS 5.9fixed in glibc 2.22-10 (bookworm)2016
CVE-2016-4429 [MEDIUM] CVE-2016-4429: glibc - Stack-based buffer overflow in the clntudp_call function in sunrpc/clnt_udp.c in... Stack-based buffer overflow in the clntudp_call function in sunrpc/clnt_udp.c in the GNU C Library (aka glibc or libc6) allows remote servers to cause a denial of service (crash) or possibly unspecified other impact via a flood of crafted ICMP and UDP packets. Scope: local bookworm: resolved (fixed in 2.22-10) bullseye: resolved (fixed in 2.22-10) forky: resolved (fix
debian
CVE-2010-0296P4HIGHCVSS 7.2fixed in glibc 2.11-1 (bookworm)2010
CVE-2010-0296 [HIGH] CVE-2010-0296: glibc - The encode_name macro in misc/mntent_r.c in the GNU C Library (aka glibc or libc... The encode_name macro in misc/mntent_r.c in the GNU C Library (aka glibc or libc6) 2.11.1 and earlier, as used by ncpmount and mount.cifs, does not properly handle newline characters in mountpoint names, which allows local users to cause a denial of service (mtab corruption), or possibly modify mount options and gain privileges, via a crafted mount request. Scope: local
debian
CVE-2017-12133P4MEDIUMCVSS 5.9fixed in glibc 2.24-15 (bookworm)2017
CVE-2017-12133 [MEDIUM] CVE-2017-12133: glibc - Use-after-free vulnerability in the clntudp_call function in sunrpc/clnt_udp.c i... Use-after-free vulnerability in the clntudp_call function in sunrpc/clnt_udp.c in the GNU C Library (aka glibc or libc6) before 2.26 allows remote attackers to have unspecified impact via vectors related to error path. Scope: local bookworm: resolved (fixed in 2.24-15) bullseye: resolved (fixed in 2.24-15) forky: resolved (fixed in 2.24-15) sid: resolved (fixed in 2
debian
CVE-2023-6780P4MEDIUMCVSS 5.3fixed in glibc 2.36-9+deb12u4 (bookworm)2023
CVE-2023-6780 [MEDIUM] CVE-2023-6780: glibc - An integer overflow was found in the __vsyslog_internal function of the glibc li... An integer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and vsyslog functions. This issue occurs when these functions are called with a very long message, leading to an incorrect calculation of the buffer size to store the message, resulting in undefined behavior. This issue affects glibc 2.37 and ne
debian
CVE-2019-25013P4MEDIUMCVSS 5.9fixed in glibc 2.31-9 (bookworm)2019
CVE-2019-25013 [MEDIUM] CVE-2019-25013: glibc - The iconv feature in the GNU C Library (aka glibc or libc6) through 2.32, when p... The iconv feature in the GNU C Library (aka glibc or libc6) through 2.32, when processing invalid multi-byte input sequences in the EUC-KR encoding, may have a buffer over-read. Scope: local bookworm: resolved (fixed in 2.31-9) bullseye: resolved (fixed in 2.31-9) forky: resolved (fixed in 2.31-9) sid: resolved (fixed in 2.31-9) trixie: resolved (fixed in 2.31-9)
debian
CVE-2015-1473P4MEDIUMCVSS 6.4fixed in glibc 2.19-15 (bookworm)2015
CVE-2015-1473 [MEDIUM] CVE-2015-1473: glibc - The ADDW macro in stdio-common/vfscanf.c in the GNU C Library (aka glibc or libc... The ADDW macro in stdio-common/vfscanf.c in the GNU C Library (aka glibc or libc6) before 2.21 does not properly consider data-type size during a risk-management decision for use of the alloca function, which might allow context-dependent attackers to cause a denial of service (segmentation violation) or overwrite memory locations beyond the stack boundary via a long
debian
CVE-2024-33600P4MEDIUMCVSS 5.9fixed in glibc 2.36-9+deb12u7 (bookworm)2024
CVE-2024-33600 [MEDIUM] CVE-2024-33600: glibc - nscd: Null pointer crashes after notfound response If the Name Service Cache Da... nscd: Null pointer crashes after notfound response If the Name Service Cache Daemon's (nscd) cache fails to add a not-found netgroup response to the cache, the client request can result in a null pointer dereference. This flaw was introduced in glibc 2.15 when the cache was added to nscd. This vulnerability is only present in the nscd binary. Scope: local bookworm:
debian
CVE-2016-10228P4LOWCVSS 5.9fixed in glibc 2.31-3 (bookworm)2016
CVE-2016-10228 [MEDIUM] CVE-2016-10228: glibc - The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, wh... The iconv program in the GNU C Library (aka glibc or libc6) 2.31 and earlier, when invoked with multiple suffixes in the destination encoding (TRANSLATE or IGNORE) along with the -c option, enters an infinite loop when processing invalid multi-byte input sequences, leading to a denial of service. Scope: local bookworm: resolved (fixed in 2.31-3) bullseye: resolved (
debian
CVE-2015-5277P4HIGHCVSS 7.2fixed in glibc 2.21-1 (bookworm)2015
CVE-2015-5277 [HIGH] CVE-2015-5277: glibc - The get_contents function in nss_files/files-XXX.c in the Name Service Switch (N... The get_contents function in nss_files/files-XXX.c in the Name Service Switch (NSS) in GNU C Library (aka glibc or libc6) before 2.20 might allow local users to cause a denial of service (heap corruption) or gain privileges via a long line in the NSS files database. Scope: local bookworm: resolved (fixed in 2.21-1) bullseye: resolved (fixed in 2.21-1) forky: resolved (f
debian
CVE-2013-7423P4MEDIUMCVSS 5.0fixed in glibc 2.19-1 (bookworm)2013
CVE-2013-7423 [MEDIUM] CVE-2013-7423: glibc - The send_dg function in resolv/res_send.c in GNU C Library (aka glibc or libc6) ... The send_dg function in resolv/res_send.c in GNU C Library (aka glibc or libc6) before 2.20 does not properly reuse file descriptors, which allows remote attackers to send DNS queries to unintended locations via a large number of requests that trigger a call to the getaddrinfo function. Scope: local bookworm: resolved (fixed in 2.19-1) bullseye: resolved (fixed in 2.1
debian
CVE-2023-4813P4MEDIUMCVSS 5.9fixed in glibc 2.36-3 (bookworm)2023
CVE-2023-4813 [MEDIUM] CVE-2023-4813: glibc - A flaw has been identified in glibc. In an uncommon situation, the gaih_inet fun... A flaw has been identified in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge. Scope: local bookworm: resolved (fixed in 2
debian
CVE-2023-4806P4MEDIUMCVSS 5.9fixed in glibc 2.36-9+deb12u3 (bookworm)2023
CVE-2023-4806 [MEDIUM] CVE-2023-4806: glibc - A flaw has been identified in glibc. In an extremely rare situation, the getaddr... A flaw has been identified in glibc. In an extremely rare situation, the getaddrinfo function may access memory that has been freed, resulting in an application crash. This issue is only exploitable when a NSS module implements only the _nss_*_gethostbyname2_r and _nss_*_getcanonname_r hooks without implementing the _nss_*_gethostbyname3_r hook. The resolved name shou
debian
CVE-2025-5702P4LOWCVSS 5.6fixed in glibc 2.41-9 (forky)2025
CVE-2025-5702 [MEDIUM] CVE-2025-5702: glibc - The strcmp implementation optimized for the Power10 processor in the GNU C Libra... The strcmp implementation optimized for the Power10 processor in the GNU C Library version 2.39 and later writes to vector registers v20 to v31 without saving contents from the caller (those registers are defined as non-volatile registers by the powerpc64le ABI), resulting in overwriting of its contents and potentially altering control flow of the caller, or leaking t
debian
Debian Glibc vulnerabilities | cvebase