An off-by-one heap-based buffer overflow was found in the _vsysloginternal function of the glibc library. This function is called by the syslog and vsyslog functions. This issue occurs when these functions are called with a message bigger than INT_MAX bytes, leading to an incorrect calculation of the buffer size to store the message, resulting in an application crash. This issue affects glibc 2.37 and newer.
{ "availability": "No subscription required", "binaries": [ { "binary_name": "glibc-doc", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "glibc-source", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc-bin", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc-bin-dbgsym", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc-dev-bin", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc-dev-bin-dbgsym", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc-devtools", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc-devtools-dbgsym", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-amd64", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-amd64-dbgsym", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-dbg", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-dev", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-dev-amd64", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-dev-dbgsym", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-dev-i386", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-dev-s390", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-dev-x32", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-i386", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-i386-dbgsym", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-s390", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-s390-dbgsym", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-x32", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "libc6-x32-dbgsym", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "locales", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "locales-all", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "nscd", "binary_version": "2.39-0ubuntu1" }, { "binary_name": "nscd-dbgsym", "binary_version": "2.39-0ubuntu1" } ] }