ZeroHour

CVE-2020-29562

PoC
CVSS 3.1
4.8 medium
EPSS
2%p73
Published
()
Modified
Description

The iconv function in the GNU C Library (aka glibc or libc6) 2.30 to 2.32, when converting UCS4 text containing an irreversible character, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service.

Vendors
gnufedoraprojectnetapp
Products
glibc, fedora, e-series santricity os controller
Weakness
CWE-617
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.