Improper resource allocation - Buffer overflow In glibc
Description
nscd: Stack-based buffer overflow in netgroup cache If the Name Service Cache Daemon's (nscd) fixed size cache is exhausted by client requests then a subsequent client request for netgroup data may result in a stack-based buffer overflow. This flaw was introduced in glibc 2.15 when the cache was added to nscd. This vulnerability is only present in the nscd binary.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 11 | 2.31-13+deb11u10 | ||
debian 12 | 2.36-9+deb12u7 | ||
debian 13 | 2.37-19 | ||
debian 14 | 2.37-19 | ||
rpm rhel7 | 0:2.17-326.el7_9.3 | ||
rpm rhel8 | 0:2.28-251.el8_10.2 | ||
rpm rhel8.6 | 0:2.28-189.10.el8_6 | ||
rpm rhel8.8 | 0:2.28-225.el8_8.11 | ||
rpm rhel9.2 | 0:2.34-60.el9_2.14 | ||
rpm rhel6 | - | - |
1-10 of 12
10
Aliases
1. 2. 3. 4. 5.