Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link.h in ld.so in the GNU C Library (aka glibc or libc6) 2.0.1 through 2.11.1, when the --verify option is used, allows user-assisted remote attackers to execute arbitrary code via a crafted ELF program with a negative value for a certain d_tag structure member in the ELF header.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GNU glibc ld.so ELF头解析整数溢出漏洞
Vulnerability Description
GNU C Library (即glibc或libc6)的ld.so的elf/dynamic-link.h中,elf_get_dynamic_info函数存在整数带符号错误,当使用--verify选项时,远程攻击者可利用ELF文件头中 d_tag 结构成员值为负的特制ELF程序执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A