CVE Vulnerabilities

CVE-2013-4332

Published: Oct 09, 2013 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Multiple integer overflows in malloc/malloc.c in the GNU C Library (aka glibc or libc6) 2.18 and earlier allow context-dependent attackers to cause a denial of service (heap corruption) via a large value to the (1) pvalloc, (2) valloc, (3) posix_memalign, (4) memalign, or (5) aligned_alloc functions.

Affected Software

Name Vendor Start Version End Version
Glibc Gnu * 2.18 (including)
Glibc Gnu 2.0 (including) 2.0 (including)
Glibc Gnu 2.0.1 (including) 2.0.1 (including)
Glibc Gnu 2.0.2 (including) 2.0.2 (including)
Glibc Gnu 2.0.3 (including) 2.0.3 (including)
Glibc Gnu 2.0.4 (including) 2.0.4 (including)
Glibc Gnu 2.0.5 (including) 2.0.5 (including)
Glibc Gnu 2.0.6 (including) 2.0.6 (including)
Glibc Gnu 2.1 (including) 2.1 (including)
Glibc Gnu 2.1.1 (including) 2.1.1 (including)
Glibc Gnu 2.1.1.6 (including) 2.1.1.6 (including)
Glibc Gnu 2.1.2 (including) 2.1.2 (including)
Glibc Gnu 2.1.3 (including) 2.1.3 (including)
Glibc Gnu 2.1.9 (including) 2.1.9 (including)
Glibc Gnu 2.10.1 (including) 2.10.1 (including)
Glibc Gnu 2.11 (including) 2.11 (including)
Glibc Gnu 2.11.1 (including) 2.11.1 (including)
Glibc Gnu 2.11.2 (including) 2.11.2 (including)
Glibc Gnu 2.11.3 (including) 2.11.3 (including)
Glibc Gnu 2.12.1 (including) 2.12.1 (including)
Glibc Gnu 2.12.2 (including) 2.12.2 (including)
Glibc Gnu 2.13 (including) 2.13 (including)
Glibc Gnu 2.14 (including) 2.14 (including)
Glibc Gnu 2.14.1 (including) 2.14.1 (including)
Glibc Gnu 2.15 (including) 2.15 (including)
Glibc Gnu 2.16 (including) 2.16 (including)
Glibc Gnu 2.17 (including) 2.17 (including)

References