Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-39046
HistoryAug 31, 2022 - 6:15 a.m.

Heap overflow

2022-08-3106:15:00
PRIOn knowledge base
www.prio-n.com
11
issue
gnu c library
memory
syslog function
crafted input
uninitialized memory
heap
log file
security vulnerability
nvd

5.2 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

55.9%

An issue was discovered in the GNU C Library (glibc) 2.36. When the syslog function is passed a crafted input string larger than 1024 bytes, it reads uninitialized memory from the heap and prints it to the target log file, potentially revealing a portion of the contents of the heap.

CPENameOperatorVersion
glibceq2.36

5.2 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

55.9%