A buffer overflow in glibc 2.5 (released on September 29, 2006) and can be triggered through the LDLIBRARYPATH environment variable. Please note that many versions of glibc are not vulnerable to this issue if patched for CVE-2017-1000366.
{ "urgency": "not yet assigned" }