ZeroHour

CVE-2020-1751

CVSS 3.1
7.0 high
EPSS
<1%p44
Published
()
Modified
Description

An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this vulnerability is to system availability.

Vendors
gnuredhatcanonical
Products
glibc, enterprise linux, ubuntu linux
Weakness
CWE-787
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.