Wind River Support Network

HomeDefectsLIN9-6393
Fixed

LIN9-6393 : Security Advisory - glibc - CVE-2018-6485

Created: Feb 27, 2018    Updated: Dec 3, 2018
Resolved Date: Mar 15, 2018
Found In Version: 9.0.0.14
Fix Version: 9.0.0.15
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Toolchain

Description

An integer overflow in the implementation of the posix_memalign in memalign functions in the GNU C Library (aka glibc or libc6) 2.26 and earlier could cause these functions to return a pointer to a heap area that is too small, potentially leading to heap corruption.

https://nvd.nist.gov/vuln/detail/CVE-2018-6485

Other Downloads


CVEs


Live chat
Online