Gnu Glibc vulnerabilities

165 known vulnerabilities affecting gnu/glibc.

Total CVEs
165
CISA KEV
1
actively exploited
Public exploits
25
Exploited in wild
1
Severity breakdown
CRITICAL23HIGH64MEDIUM69LOW9

Vulnerabilities

Page 9 of 9
CVE-2002-0684HIGHCVSS 7.5≤ 2.2.52002-08-12
CVE-2002-0684 [HIGH] CVE-2002-0684: Buffer overflow in DNS resolver functions that perform lookup of network names and addresses, as use Buffer overflow in DNS resolver functions that perform lookup of network names and addresses, as used in BIND 4.9.8 and ported to glibc 2.2.5 and earlier, allows remote malicious DNS servers to execute arbitrary code through a subroutine used by functions such as getnetbyname and getnetbyaddr.
nvdosv
CVE-2002-0651HIGHCVSS 7.5≥ 0, < 2.2.5-82002-07-03
CVE-2002-0651 [HIGH] CVE-2002-0651: Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a de Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a denial of service and possibly execute arbitrary code via the stub resolvers.
osv
CVE-2000-0959LOWCVSS 1.2v2.1.3.102000-12-19
CVE-2000-0959 [LOW] CVE-2000-0959: glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a progr glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack.
nvd
CVE-2000-0824HIGHCVSS 7.2PoCv2.1.12000-11-14
CVE-2000-0824 [HIGH] CVE-2000-0824: The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variab The unsetenv function in glibc 2.1.1 does not properly unset an environmental variable if the variable is provided twice to a program, which could allow local users to execute arbitrary commands in setuid programs by specifying their own duplicate environmental variables such as LD_PRELOAD or LD_LIBRARY_PATH.
nvd
CVE-2000-0335HIGHCVSS 7.5v2.0v2.1+3 more2000-05-03
CVE-2000-0335 [HIGH] CVE-2000-0335: The resolver in glibc 2.1.3 uses predictable IDs, which allows a local attacker to spoof DNS query r The resolver in glibc 2.1.3 uses predictable IDs, which allows a local attacker to spoof DNS query results.
nvd