GNU Libc current is affected by: Re-mapping current loaded library with malicious ELF file. The impact is: In worst case attacker may evaluate privileges. The component is: libld. The attack vector is: Attacker sends 2 ELF files to victim and asks to run ldd on it. ldd execute code. NOTE: Upstream comments indicate this is being treated as a non-security bug and no real threat.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Glibc | Gnu | - (including) | - (including) |
| Eglibc | Ubuntu | esm-infra-legacy/trusty | * |
| Eglibc | Ubuntu | precise/esm | * |
| Eglibc | Ubuntu | trusty | * |
| Eglibc | Ubuntu | trusty/esm | * |
| Glibc | Ubuntu | bionic | * |
| Glibc | Ubuntu | cosmic | * |
| Glibc | Ubuntu | devel | * |
| Glibc | Ubuntu | disco | * |
| Glibc | Ubuntu | eoan | * |
| Glibc | Ubuntu | esm-infra/bionic | * |
| Glibc | Ubuntu | esm-infra/focal | * |
| Glibc | Ubuntu | esm-infra/xenial | * |
| Glibc | Ubuntu | focal | * |
| Glibc | Ubuntu | xenial | * |