CVE-2023-6780
31.01.2024, 14:15
An integer overflow was found in the __vsyslog_internal function of the glibc library. This function is called by the syslog and vsyslog functions. This issue occurs when these functions are called with a very long message, leading to an incorrect calculation of the buffer size to store the message, resulting in undefined behavior. This issue affects glibc 2.37 and newer.Enginsight
Vendor | Product | Version |
---|---|---|
gnu | glibc | 2.37 ≤ 𝑥 < 2.39 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References