CVE-2015-0235
Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code via vectors related to the (1) gethostbyname or (2) gethostbyname2…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 94.6%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code via vectors related to the (1) gethostbyname or (2) gethostbyname2 function, aka "GHOST."
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 94.56% probability · 100th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-787
- Affected
- gnu/glibc · oracle/communications application session controller · oracle/communications eagle application processor · oracle/communications eagle lnp application processor · oracle/communications lsms · oracle/communications policy management · oracle/communications session border controller · oracle/communications user data repository · oracle/communications webrtc session controller · oracle/exalogic infrastructure · oracle/vm virtualbox · oracle/linux · debian/debian linux · redhat/virtualization · apple/mac os x · ibm/pureapplication system · ibm/security access manager for enterprise single sign-on · php/php
- Source
- secalert@redhat.com
References
- http://blogs.sophos.com/2015/01/29/sophos-products-and-the-ghost-vulnerability-affecting-linux/Third Party Advisory
- http://linux.oracle.com/errata/ELSA-2015-0090.htmlThird Party Advisory
- http://linux.oracle.com/errata/ELSA-2015-0092.htmlThird Party Advisory
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce/2015/Oct/msg00005.htmlMailing List, Third Party Advisory
- http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.htmlMailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=142296726407499&w=2Issue Tracking, Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=142721102728110&w=2Issue Tracking, Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=142722450701342&w=2Issue Tracking, Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=142781412222323&w=2Issue Tracking, Mailing List, Third Party Advisory
- http://marc.info/?l=bugtraq&m=143145428124857&w=2Issue Tracking, Mailing List, Third Party Advisory
- http://packetstormsecurity.com/files/130171/Exim-ESMTP-GHOST-Denial-Of-Service.htmlExploit, Third Party Advisory, VDB Entry
- http://packetstormsecurity.com/files/130768/EMC-Secure-Remote-Services-GHOST-SQL-Injection-Command-Injection.htmlThird Party Advisory, VDB Entry
- http://packetstormsecurity.com/files/130974/Exim-GHOST-glibc-gethostbyname-Buffer-Overflow.htmlExploit, Third Party Advisory, VDB Entry
- http://packetstormsecurity.com/files/153278/WAGO-852-Industrial-Managed-Switch-Series-Code-Execution-Hardcoded-Credentials.htmlExploit, Third Party Advisory, VDB Entry
- http://packetstormsecurity.com/files/164014/Moxa-Command-Injection-Cross-Site-Scripting-Vulnerable-Software.htmlExploit, Third Party Advisory, VDB Entry
- http://packetstormsecurity.com/files/167552/Nexans-FTTO-GigaSwitch-Outdated-Components-Hardcoded-Backdoor.htmlExploit, Third Party Advisory, VDB Entry
- http://rhn.redhat.com/errata/RHSA-2015-0126.htmlThird Party Advisory
- http://seclists.org/fulldisclosure/2015/Jan/111Mailing List, Third Party Advisory
- http://seclists.org/fulldisclosure/2019/Jun/18Exploit, Mailing List, Third Party Advisory
- http://seclists.org/fulldisclosure/2021/Sep/0Exploit, Mailing List, Third Party Advisory
- http://seclists.org/fulldisclosure/2022/Jun/36Exploit, Mailing List, Third Party Advisory
- http://seclists.org/oss-sec/2015/q1/269Mailing List, Third Party Advisory
- http://seclists.org/oss-sec/2015/q1/274Exploit, Mailing List, Third Party Advisory
- http://secunia.com/advisories/62517Not Applicable
- http://secunia.com/advisories/62640Not Applicable
- http://secunia.com/advisories/62667Not Applicable
- http://secunia.com/advisories/62680Not Applicable
- http://secunia.com/advisories/62681Not Applicable
- http://secunia.com/advisories/62688Not Applicable
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.