Lucene search

K
f5F5F5:K30314331
HistoryNov 27, 2017 - 12:00 a.m.

K30314331 : glibc vulnerability CVE-2017-15671

2017-11-2700:00:00
my.f5.com
12

7.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.2%

Security Advisory Description

The glob function in glob.c in the GNU C Library (aka glibc or libc6) before 2.27, when invoked with GLOB_TILDE, could skip freeing allocated memory when processing the ~ operator with a long user name, potentially leading to a denial of service (memory leak). (CVE-2017-15671)

Impact

BIG-IP, BIG-IQ, F5 iWorkflow, Enterprise Manager, LineRate, and ARX

There is no impact; these F5 products are not affected by this vulnerability.

Traffix SDC

An attacker may be able to cause a disruption of service.