glibc contains a vulnerability that allows specially crafted LD_LIBRARY_PATH values...
Vulnerability Description
glibc contains a vulnerability that allows specially crafted LD_LIBRARY_PATH values to manipulate the heap/stack, causing them to alias, potentially resulting in arbitrary code execution. Please note that additional hardening changes have been made to glibc to prevent manipulation of stack and heap memory but these issues are not directly exploitable, as such they have not been given a CVE. This affects glibc 2.25 and earlier.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2017-1000366
Credits & Attribution
No credits recorded in the NVD database.
References
- https://www.qualys.com/2017/06/19/stack-clash/stack-clash.txt
- http://www.securitytracker.com/id/1038712
- https://www.exploit-db.com/exploits/42275/
- https://access.redhat.com/errata/RHSA-2017:1712
- https://www.suse.com/security/cve/CVE-2017-1000366/
- https://access.redhat.com/errata/RHSA-2017:1479
- https://access.redhat.com/errata/RHSA-2017:1480
- http://www.securityfocus.com/bid/99127
- https://www.exploit-db.com/exploits/42276/
- https://www.suse.com/support/kb/doc/?id=7020973
- https://access.redhat.com/errata/RHSA-2017:1567
- https://www.exploit-db.com/exploits/42274/
- https://access.redhat.com/security/cve/CVE-2017-1000366
- https://access.redhat.com/errata/RHSA-2017:1481
- http://www.debian.org/security/2017/dsa-3887
- https://security.gentoo.org/glsa/201706-19
- https://kc.mcafee.com/corporate/index?page=content&id=SB10205
- http://seclists.org/fulldisclosure/2019/Sep/7
- https://seclists.org/bugtraq/2019/Sep/7
- http://packetstormsecurity.com/files/154361/Cisco-Device-Hardcoded-Credentials-GNU-glibc-BusyBox.html
More from redhat
View All →Affected Vendor
redhat
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.