CVE-2014-9761
19.04.2016, 21:59
Multiple stack-based buffer overflows in the GNU C Library (aka glibc or libc6) before 2.23 allow context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long argument to the (1) nan, (2) nanf, or (3) nanl function.Enginsight
| Vendor | Product | Version |
|---|---|---|
| suse | linux_enterprise_debuginfo | 11.0:sp2 |
| suse | linux_enterprise_debuginfo | 11.0:sp3 |
| suse | linux_enterprise_debuginfo | 11.0:sp4 |
| opensuse | opensuse | 13.2 |
| suse | linux_enterprise_desktop | 11.0:sp3 |
| suse | linux_enterprise_desktop | 11.0:sp4 |
| suse | linux_enterprise_server | 11.0:sp2 |
| suse | linux_enterprise_server | 11.0:sp3 |
| suse | linux_enterprise_server | 11.0:sp3 |
| suse | linux_enterprise_server | 11.0:sp4 |
| suse | linux_enterprise_software_development_kit | 11.0:sp3 |
| suse | linux_enterprise_software_development_kit | 11.0:sp4 |
| gnu | glibc | 𝑥 ≤ 2.22 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 15.10 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| eglibc |
| ||||||||||||||||||||||||||||||||||||||||||
| glibc |
|
Common Weakness Enumeration
References