Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The xdr_bytes and xdr_string functions in the GNU C Library (aka glibc or libc6) 2.25 mishandle failures of buffer deserialization, which allows remote attackers to cause a denial of service (virtual memory allocation, or memory consumption if an overcommit setting is not used) via a crafted UDP packet to port 111, a related issue to CVE-2017-8779. NOTE: [Information provided from upstream and references
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GNU C Library 代码问题漏洞
Vulnerability Description
GNU C Library(glibc,libc6)是一种按照LGPL许可协议发布的开源免费的C语言编译程序。Library是其中的一个库。 GNU C Library 2.25版本中的‘xdr_bytes’和‘xdr_string’函数存在安全漏洞,该漏洞源于程序没有正确的处理缓冲区反序列化错误。远程攻击者可通过向111端口发送特制的UDP数据包利用该漏洞造成拒绝服务(虚拟内存分配或内存消耗)。
CVSS Information
N/A
Vulnerability Type
N/A