CVE-2015-8778
Integer overflow in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the size argument to the __hcreate_r function, which triggers out-of-bounds heap-memory access.
- Fedoraproject Fedora
- = 23
- Fix
- Available
- CVSS 3.0
- 9.8 CRITICAL
- EPSS
- 5.3% (92th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2016-04-19
CVE-2015-8778 at NVD
1 known exploit for CVE-2015-8778
Proof-of-concept code and exploit modules indexed by Sploitus