GNU glibc 'fnmatch_loop.c' Local Buffer Overflow Vulnerability
BID:72789
Info
GNU glibc 'fnmatch_loop.c' Local Buffer Overflow Vulnerability
| Bugtraq ID: | 72789 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2015-8984 |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 26 2015 12:00AM |
| Updated: | Mar 29 2017 02:01AM |
| Credit: | Kostya Serebryany |
| Vulnerable: |
Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 GNU glibc 2.21 |
| Not Vulnerable: |
GNU glibc 2.22 |
Discussion
GNU glibc 'fnmatch_loop.c' Local Buffer Overflow Vulnerability
GNU glibc is prone to a local buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it into an insufficiently sized buffer.
A local attacker can exploit this issue to crash the affected application, resulting in denial-of-service conditions. Due to the nature of this issue, arbitrary code execution may be possible but this has not been confirmed.
Note: This issue was previously titled 'GNU glibc 'fnmatch_loop.c' Remote Buffer Overflow Vulnerability'. The title have been changed to better document it.
GNU glibc is prone to a local buffer-overflow vulnerability because it fails to properly bounds-check user-supplied data before copying it into an insufficiently sized buffer.
A local attacker can exploit this issue to crash the affected application, resulting in denial-of-service conditions. Due to the nature of this issue, arbitrary code execution may be possible but this has not been confirmed.
Note: This issue was previously titled 'GNU glibc 'fnmatch_loop.c' Remote Buffer Overflow Vulnerability'. The title have been changed to better document it.
Exploit / POC
GNU glibc 'fnmatch_loop.c' Local Buffer Overflow Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
GNU glibc 'fnmatch_loop.c' Local Buffer Overflow Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
GNU glibc 'fnmatch_loop.c' Local Buffer Overflow Vulnerability
References:
References:
- Bug 18032 - buffer overflow (read past end of buffer) in internal_fnmatch (Sourceware Bugzilla)
- Fix read past end of pattern in fnmatch (bug 18032 (Andreas Schwab)
- GNU C Library Homepage (GNU)