Debian Glibc vulnerabilities
164 known vulnerabilities affecting debian/glibc.
Total CVEs
164
CISA KEV
1
actively exploited
Public exploits
25
Exploited in wild
1
Severity breakdown
CRITICAL17HIGH43MEDIUM45LOW59
Vulnerabilities
Page 9 of 9
CVE-2002-0684HIGHCVSS 7.5fixed in glibc 2.2.5-8 (bookworm)2002
CVE-2002-0684 [HIGH] CVE-2002-0684: glibc - Buffer overflow in DNS resolver functions that perform lookup of network names a...
Buffer overflow in DNS resolver functions that perform lookup of network names and addresses, as used in BIND 4.9.8 and ported to glibc 2.2.5 and earlier, allows remote malicious DNS servers to execute arbitrary code through a subroutine used by functions such as getnetbyname and getnetbyaddr.
Scope: local
bookworm: resolved (fixed in 2.2.5-8)
bullseye: resolved (fixed
debian
CVE-2002-0651HIGHCVSS 7.5fixed in glibc 2.2.5-8 (bookworm)2002
CVE-2002-0651 [HIGH] CVE-2002-0651: glibc - Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as de...
Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a denial of service and possibly execute arbitrary code via the stub resolvers.
Scope: local
bookworm: resolved (fixed in 2.2.5-8)
bullseye: resolved (fixed in 2.2.5-8)
forky: resolved (fixed in 2.2.5-8)
sid: resolved (fixed i
debian
CVE-2002-1146MEDIUMCVSS 5.0fixed in glibc 2.3 (bookworm)2002
CVE-2002-1146 [MEDIUM] CVE-2002-1146: glibc - The BIND 4 and BIND 8.2.x stub resolver libraries, and other libraries such as g...
The BIND 4 and BIND 8.2.x stub resolver libraries, and other libraries such as glibc 2.2.5 and earlier, libc, and libresolv, use the maximum buffer size instead of the actual size when processing a DNS response, which causes the stub resolvers to read past the actual boundary ("read buffer overflow"), allowing remote attackers to cause a denial of service (crash).
Sco
debian
CVE-1999-0199CRITICALCVSS 9.8fixed in glibc 2.2-1 (bookworm)1999
CVE-1999-0199 [CRITICAL] CVE-1999-0199: glibc - manual/search.texi in the GNU C Library (aka glibc) before 2.2 lacks a statement...
manual/search.texi in the GNU C Library (aka glibc) before 2.2 lacks a statement about the unspecified tdelete return value upon deletion of a tree's root, which might allow attackers to access a dangling pointer in an application whose developer was unaware of a documentation update from 1999.
Scope: local
bookworm: resolved (fixed in 2.2-1)
bullseye: resolved (fix
debian
← Previous9 / 9