Lucene search

K
osvGoogleOSV:CVE-2018-11236
HistoryMay 18, 2018 - 4:29 p.m.

CVE-2018-11236

2018-05-1816:29:00
Google
osv.dev
7

10 High

AI Score

Confidence

High

0.014 Low

EPSS

Percentile

86.6%

stdlib/canonicalize.c in the GNU C Library (aka glibc or libc6) 2.27 and earlier, when processing very long pathname arguments to the realpath function, could encounter an integer overflow on 32-bit architectures, leading to a stack-based buffer overflow and, potentially, arbitrary code execution.