Wind River Support Network

HomeDefectsLIN9-4972
Fixed

LIN9-4972 : Security Advisory - glibc - CVE-2017-12132

Created: Aug 11, 2017    Updated: Dec 3, 2018
Resolved Date: Sep 13, 2017
Found In Version: 9.0.0.9
Fix Version: 9.0.0.11
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Toolchain

Description

The DNS stub resolver in the GNU C Library (aka glibc or libc6) before version 2.26, when EDNS support is enabled, will solicit large UDP responses from name servers, potentially simplifying off-path DNS spoofing attacks due to IP fragmentation.

https://nvd.nist.gov/vuln/detail/CVE-2017-12132

Other Downloads


CVEs


Live chat
Online