Sploitus

CVE-2015-8778

1 known exploit for CVE-2015-8778

Integer overflow in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the size argument to the __hcreate_r function, which triggers out-of-bounds heap-memory access.

Affected products
Alt Linux, Centos, Red Hat, Suse, Ubuntu, Glibc
Fedoraproject Fedora
= 23
Fix
Available
CVSS 3.0
9.8 CRITICAL
EPSS
5.3% (92th percentile)
Weakness
CWE-119
NVD status
Modified
Published
2016-04-19
CVE-2015-8778 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2015-8778

Proof-of-concept code and exploit modules indexed by Sploitus