Lucene search

K
prionPRIOn knowledge basePRION:CVE-2014-4043
HistoryOct 06, 2014 - 11:55 p.m.

Design/Logic Flaw

2014-10-0623:55:00
PRIOn knowledge base
www.prio-n.com
13

6.8 Medium

AI Score

Confidence

Low

0.019 Low

EPSS

Percentile

88.7%

The posix_spawn_file_actions_addopen function in glibc before 2.20 does not copy its path argument in accordance with the POSIX specification, which allows context-dependent attackers to trigger use-after-free vulnerabilities.

CPENameOperatorVersion
glibcle2.19
opensuseeq13.1

References