A security vulnerability have been discovered in GNU C Library (glibc) component bundled with IBM QRadar SIEM.
CVE-ID: CVE-2014-5119
DESCRIPTION: The GNU C Library (glibc) is vulnerable to a heap-based buffer overflow, caused by an off-by-one error in the __gconv_translit_find() function. By setting the CHARSET environment variable to a malicious value, a local attacker could exploit this vulnerability to overflow a buffer and execute arbitrary code on the system with root privileges.
CVSS Base Score: 7.2
CVSS Temporal Score: See https://exchange.xforce.ibmcloud.com/vulnerabilities/95044 for more information
CVSS Environmental Score:*: Undefined
CVSS Vector: CVSS Vector: (AV:L/AC:L/Au:N/C:C/I:C/A:C)
The recommended solution is to apply the fix for each named product as soon as practical. Please see below for information about the fixes available.
Product | Remediation/First Fix |
---|
IBM QRadar SIEM 7.2.3
IBM QRadar Vulnerability Manager 7.2.3
IBM QRadar Risk Manager 7.2.3
| IBM QRadar SIEM 7.2.4 Patch 1
IBM QRadar SIEM 7.1 MR2
IBM QRadar Risk Manager 7.1 MR2
| IBM QRadar SIEM 7.1 MR2 Patch 9
None
**