Wind River Support Network

HomeDefectsLIN10-2303
Fixed

LIN10-2303 : Security Advisory - glibc - CVE-2017-15670

Created: Oct 23, 2017    Updated: Dec 3, 2018
Resolved Date: Jul 11, 2018
Previous ID: LIN9-5624
Found In Version: 10.17.41.1
Fix Version: 10.17.41.9
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Toolchain

Description

The GNU C Library (aka glibc or libc6) before 2.27 contains an off-by-one error leading to a heap-based buffer overflow in the glob function in glob.c, related to the processing of home directories using the ~ operator followed by a long string.

https://nvd.nist.gov/vuln/detail/CVE-2017-15670

Other Downloads


Live chat
Online