CVE-2020-27618
26.02.2021, 23:15
The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid multi-byte input sequences in IBM1364, IBM1371, IBM1388, IBM1390, and IBM1399 encodings, fails to advance the input state, which could lead to an infinite loop in applications, resulting in a denial of service, a different vulnerability from CVE-2016-10228.
Vendor | Product | Version |
---|---|---|
gnu | glibc | 𝑥 ≤ 2.32 |
netapp | ontap_select_deploy_administration_utility | - |
netapp | a250_firmware | - |
netapp | 500f_firmware | - |
netapp | h410c_firmware | - |
netapp | h300s_firmware | - |
netapp | h500s_firmware | - |
netapp | h700s_firmware | - |
netapp | h300e_firmware | - |
netapp | h500e_firmware | - |
netapp | h700e_firmware | - |
netapp | h410s_firmware | - |
oracle | communications_cloud_native_core_service_communication_proxy | 1.14.0 |
debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
eglibc |
| ||||||||||||||||||||||||
glibc |
|
Common Weakness Enumeration
References