CVE-2023-4813
12.09.2023, 22:15
A flaw was found in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge.Enginsight
Vendor | Product | Version |
---|---|---|
gnu | glibc | 𝑥 < 2.36 |
redhat | enterprise_linux | 8.0 |
redhat | enterprise_linux | 9.0 |
redhat | enterprise_linux_eus | 8.8 |
redhat | enterprise_linux_eus | 9.2 |
redhat | enterprise_linux_for_ibm_z_systems_eus_s390x | 9.2 |
redhat | enterprise_linux_for_ibm_z_systems_s390x | 9.2 |
redhat | enterprise_linux_for_power_little_endian | 9.2_ppc64le:_ppc64le |
redhat | enterprise_linux_for_power_little_endian_eus | 9.2_ppc64le:_ppc64le |
redhat | enterprise_linux_server_aus | 9.2 |
redhat | enterprise_linux_server_tus | 8.8 |
netapp | active_iq_unified_manager | - |
netapp | h300s_firmware | - |
netapp | h500s_firmware | - |
netapp | h700s_firmware | - |
netapp | h410s_firmware | - |
netapp | h410c_firmware | - |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
eglibc |
| ||||||||||||||||||
glibc |
|
Common Weakness Enumeration
References