Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24996
HistoryApr 10, 2020 - 1:11 a.m.

Arbitrary Code Execution

2020-04-1001:11:57
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.094 Low

EPSS

Percentile

94.7%

glibc is vulnerable to arbitrary code execution. An integer overflow flaw, leading to a heap-based buffer overflow, was found in the way the glibc library loaded ELF (Executable and Linking Format) files. If a carefully-crafted ELF file was loaded by an application linked against glibc, it could cause the application to crash or, potentially, execute arbitrary code with the privileges of the user running the application.