Red Hat Security Advisory 2015-1627-01

Discussion in 'News Aggregator' started by Packet Storm, 18 Aug 2015.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2015-1627-01 - The glibc packages provide the standard C libraries, POSIX thread libraries, standard math libraries, and the Name Server Caching Daemon used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly. An invalid free flaw was found in glibc's getaddrinfo() function when used with the AI_IDN flag. A remote attacker able to make an application call this function could use this flaw to execute arbitrary code with the permissions of the user running the application. Note that this flaw only affected applications using glibc compiled with libidn support.

    Continue reading...
     

Share This Page

Loading...