Lucene search

K
cveRedhatCVE-2013-4237
HistoryOct 09, 2013 - 10:55 p.m.

CVE-2013-4237

2013-10-0922:55:02
CWE-119
redhat
web.nvd.nist.gov
64
cve-2013-4237
gnu c library
glibc
libc6
denial of service
out-of-bounds write
crash
arbitrary code execution
ntfs
cifs
nvd

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.8

Confidence

High

EPSS

0.003

Percentile

68.5%

sysdeps/posix/readdir_r.c in the GNU C Library (aka glibc or libc6) 2.18 and earlier allows context-dependent attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a crafted (1) NTFS or (2) CIFS image.

Affected configurations

Nvd
Node
gnuglibcRange2.18
OR
gnuglibcMatch2.0
OR
gnuglibcMatch2.0.1
OR
gnuglibcMatch2.0.2
OR
gnuglibcMatch2.0.3
OR
gnuglibcMatch2.0.4
OR
gnuglibcMatch2.0.5
OR
gnuglibcMatch2.0.6
OR
gnuglibcMatch2.1
OR
gnuglibcMatch2.1.1
OR
gnuglibcMatch2.1.1.6
OR
gnuglibcMatch2.1.2
OR
gnuglibcMatch2.1.3
OR
gnuglibcMatch2.1.9
OR
gnuglibcMatch2.10.1
OR
gnuglibcMatch2.11
OR
gnuglibcMatch2.11.1
OR
gnuglibcMatch2.11.2
OR
gnuglibcMatch2.11.3
OR
gnuglibcMatch2.12.1
OR
gnuglibcMatch2.12.2
OR
gnuglibcMatch2.13
OR
gnuglibcMatch2.14
OR
gnuglibcMatch2.14.1
OR
gnuglibcMatch2.15
OR
gnuglibcMatch2.16
OR
gnuglibcMatch2.17
VendorProductVersionCPE
gnuglibc*cpe:2.3:a:gnu:glibc:*:*:*:*:*:*:*:*
gnuglibc2.0cpe:2.3:a:gnu:glibc:2.0:*:*:*:*:*:*:*
gnuglibc2.0.1cpe:2.3:a:gnu:glibc:2.0.1:*:*:*:*:*:*:*
gnuglibc2.0.2cpe:2.3:a:gnu:glibc:2.0.2:*:*:*:*:*:*:*
gnuglibc2.0.3cpe:2.3:a:gnu:glibc:2.0.3:*:*:*:*:*:*:*
gnuglibc2.0.4cpe:2.3:a:gnu:glibc:2.0.4:*:*:*:*:*:*:*
gnuglibc2.0.5cpe:2.3:a:gnu:glibc:2.0.5:*:*:*:*:*:*:*
gnuglibc2.0.6cpe:2.3:a:gnu:glibc:2.0.6:*:*:*:*:*:*:*
gnuglibc2.1cpe:2.3:a:gnu:glibc:2.1:*:*:*:*:*:*:*
gnuglibc2.1.1cpe:2.3:a:gnu:glibc:2.1.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 271

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.8

Confidence

High

EPSS

0.003

Percentile

68.5%