glibc contains a vulnerability that allows specially crafted LDLIBRARYPATH values to manipulate the heap/stack, causing them to alias, potentially resulting in arbitrary code execution. Please note that additional hardening changes have been made to glibc to prevent manipulation of stack and heap memory but these issues are not directly exploitable, as such they have not been given a CVE. This affects glibc 2.25 and earlier.
{
"unresolved_ranges": [
{
"cpe": "cpe:2.3:a:mcafee:web_gateway:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.6.2.14"
},
{
"introduced": "7.7.0.0"
},
{
"last_affected": "7.7.2.2"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:a:openstack:cloud_magnum_orchestration:7:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "8.0"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "9.0"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:novell:suse_linux_enterprise_desktop:12.0:sp2:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "12.0-sp2"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:novell:suse_linux_enterprise_point_of_sale:11.0:sp3:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "11.0-sp3"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:novell:suse_linux_enterprise_server:11.0:sp3:*:*:ltss:*:*:*",
"extracted_events": [
{
"last_affected": "11.0-sp3"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:opensuse:leap:42.2:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "42.2"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux:5:*:server:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "5"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.0"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.0"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.0"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.0"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.0"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server:6.6:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.6"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.0"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_aus:5.9:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "5.9"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_aus:6.2:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.2"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_aus:6.4:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.4"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_aus:6.5:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.5"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_aus:6.6:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.6"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.2:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.2"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.3"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.4"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.6"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_eus:6.2:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.2"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_eus:6.5:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.5"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_eus:6.7:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.7"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.2:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.2"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.3:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.3"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.4:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.4"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.5:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.5"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_eus:7.6:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.6"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_long_life:5.9:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "5.9"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_tus:6.5:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.5"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_tus:6.6:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.6"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.2:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.2"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.3"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.6"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "6.0"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "7.0"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:suse:linux_enterprise_for_sap:12:sp1:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "12-sp1"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:suse:linux_enterprise_server:10:sp4:*:*:ltss:*:*:*",
"extracted_events": [
{
"last_affected": "10-sp4"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:suse:linux_enterprise_server:11:sp4:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "11-sp4"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:suse:linux_enterprise_server:12:sp1:*:*:ltss:*:*:*",
"extracted_events": [
{
"last_affected": "12-sp1"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:suse:linux_enterprise_server:12:sp2:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "12-sp2"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:suse:linux_enterprise_server:12:sp2:*:*:ltss:*:*:*",
"extracted_events": [
{
"last_affected": "12-sp2"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:suse:linux_enterprise_server_for_raspberry_pi:12:sp2:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "12-sp2"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:suse:linux_enterprise_software_development_kit:11.0:sp4:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "11.0-sp4"
}
],
"source": "CPE_FIELD"
},
{
"cpe": "cpe:2.3:o:suse:linux_enterprise_software_development_kit:12.0:sp2:*:*:*:*:*:*",
"extracted_events": [
{
"last_affected": "12.0-sp2"
}
],
"source": "CPE_FIELD"
}
]
}{
"cpe": "cpe:2.3:a:gnu:glibc:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "2.25"
}
],
"source": "CPE_FIELD"
}