GNU Libc current is affected by: Re-mapping current loaded library with malicious ELF file. The impact is: In worst case attacker may evaluate privileges. The component is: libld. The attack vector is: Attacker sends 2 ELF files to victim and asks to run ldd on it. ldd execute code. NOTE: Upstream comments indicate this is being treated as a non-security bug and no real threat.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Glibc | Gnu | - (including) | - (including) |
Eglibc | Ubuntu | esm-infra-legacy/trusty | * |
Eglibc | Ubuntu | precise/esm | * |
Eglibc | Ubuntu | trusty | * |
Eglibc | Ubuntu | trusty/esm | * |
Glibc | Ubuntu | bionic | * |
Glibc | Ubuntu | cosmic | * |
Glibc | Ubuntu | devel | * |
Glibc | Ubuntu | disco | * |
Glibc | Ubuntu | eoan | * |
Glibc | Ubuntu | esm-infra/bionic | * |
Glibc | Ubuntu | esm-infra/xenial | * |
Glibc | Ubuntu | focal | * |
Glibc | Ubuntu | xenial | * |