CVE-2018-11237
18.05.2018, 16:29
An AVX-512-optimized implementation of the mempcpy function in the GNU C Library (aka glibc or libc6) 2.27 and earlier may write data beyond the target buffer, leading to a buffer overflow in __mempcpy_avx512_no_vzeroupper.Enginsight
| Vendor | Product | Version |
|---|---|---|
| gnu | glibc | 𝑥 ≤ 2.27 |
| redhat | virtualization_host | 4.0 |
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_workstation | 7.0 |
| oracle | communications_session_border_controller | 8.0.0 |
| oracle | communications_session_border_controller | 8.1.0 |
| oracle | communications_session_border_controller | 8.2.0 |
| oracle | enterprise_communications_broker | 3.0.0 |
| oracle | enterprise_communications_broker | 3.1.0 |
| netapp | data_ontap_edge | - |
| netapp | element_software_management | - |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 19.10 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References