ISOMAN

CVE

CVE-2018-1000001

In glibc 2.26 and earlier there is confusion in the usage of getcwd() by realpath() which can be used to write before the destination buffer leading to a buffer underflow and potential code execution.

Severity
HIGH
CVSS
7.8
Published
Modified

Linked Releases

References

  1. http://seclists.org/oss-sec/2018/q1/38
  2. http://www.securityfocus.com/bid/102525
  3. http://www.securitytracker.com/id/1040162
  4. https://access.redhat.com/errata/RHSA-2018:0805
  5. https://security.netapp.com/advisory/ntap-20190404-0003/
  6. https://usn.ubuntu.com/3534-1/
  7. https://usn.ubuntu.com/3536-1/
  8. https://www.exploit-db.com/exploits/43775/
  9. https://www.exploit-db.com/exploits/44889/
  10. https://www.halfdog.net/Security/2017/LibcRealpathBufferUnderflow/
  11. http://seclists.org/oss-sec/2018/q1/38
  12. http://www.securityfocus.com/bid/102525
  13. http://www.securitytracker.com/id/1040162
  14. https://access.redhat.com/errata/RHSA-2018:0805
  15. https://security.netapp.com/advisory/ntap-20190404-0003/
  16. https://usn.ubuntu.com/3534-1/
  17. https://usn.ubuntu.com/3536-1/
  18. https://www.exploit-db.com/exploits/43775/
  19. https://www.exploit-db.com/exploits/44889/
  20. https://www.halfdog.net/Security/2017/LibcRealpathBufferUnderflow/