Sploitus

CVE-2015-8779

1 known exploit for CVE-2015-8779

Stack-based buffer overflow in the catopen function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long catalog name.

Affected products
Alt Linux, Centos, Red Hat, Suse, Ubuntu, Glibc
Suse Linux Enterprise Debuginfo
= 11
Opensuse
= 13.2
Suse Linux Enterprise Desktop
= 11, 12
Suse Linux Enterprise Server
= 11, 12
Suse Linux Enterprise Software Development Kit
= 11, 12
Suse Suse Linux Enterprise Server
= 12
Fix
Available
CVSS 3.0
9.8 CRITICAL
EPSS
5.7% (92th percentile)
Weakness
CWE-119
NVD status
Modified
Published
2016-04-19
CVE-2015-8779 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2015-8779

Proof-of-concept code and exploit modules indexed by Sploitus