Open Source Security Foundation
openssf.org › blog › 2024 › 02 › 05 › cve-2023-6246-root-access-vulnerability-in-glibc
CVE-2023-6246 Root Access Vulnerability in glibc – Open Source Security Foundation
The vulnerability is a heap-based buffer overflow vulnerability in a function that supports the wisely used syslog(). Red Hat Product Security, glibc developers and glibc security team coordinated the vulnerability disclosure and successfully remediated the vulnerability on the Coordinated ...
TuxCare
tuxcare.com › home › guarding against a glibc vulnerability: a security guide
Guarding Against a glibc Vulnerability: A Security Guide
August 13, 2025 - It offers essential functions that programs need to work properly on your system. The glibc library has been around since 1992, and it’s maintained by the GNU project. A glibc vulnerability is a flaw or weakness in this library that can be exploited by malicious actors to compromise your system’s security.
Videos
Quick reminder to keep your servers up to date (Glibc ...
r/PHP on Reddit: Security vulnerability in PHP caused by Glibc
06:32
this is a warning to anyone using php - YouTube
24:36
New Linux GlibC flaw lets attackers get root on major distros, ...
17:56
CVE-2023-4911 Looney Tunables Glibc Linux Privilege Escalation ...
Hands-on Demo - CVE-2015-7547: Glibc Vulnerability
Globus
globus.org › blog › glibc-vulnerability-action-required-linux-users
glibc vulnerability: Action required for Linux users
February 17, 2016 - On February 16, 2016 a new critical vulnerability CVE-2015-7547 - "glibc getaddrinfo() stack-based buffer overflow" was announced. We have reviewed the severity and impact to Globus services, partner services and users, and posted details of our findings in a new security bulletin.
Red Hat
access.redhat.com › security › cve › cve-2025-0395
cve-details
Skip to navigation Skip to main content · English · Select Your Language · Français · 한국어 · 日本語 · 中文 (中国) · Infrastructure and Management · Red Hat Enterprise Linux
F5
my.f5.com › manage › s › article › K24207649
GNU C Library (glibc) vulnerability CVE-2021-3999
April 29, 2022 - Loading · ×Sorry to interrupt · Refresh
University of Michigan Safecomputing
safecomputing.umich.edu › security-alerts › ghost-vulnerability-linux-glibc-library-cve-2015-0235
Ghost vulnerability in Linux glibc library (CVE-2015-0235) | safecomputing.umich.edu
January 27, 2015 - Attackers could remotely take complete control of the victim system and execute code without prior knowledge of system credentials. While active exploitation is not occurring, proof-of-concept code exists and will be released by the researchers who originally discovered the vulnerability.
SentinelOne
sentinelone.com › vulnerability-database › cve-2020-10029
CVE-2020-10029: GNU Glibc Buffer Overflow Vulnerability
March 4, 2026 - CVE-2020-10029 is a buffer overflow vulnerability in GNU Glibc. Learn about its impact, affected versions, and mitigation methods.
Kaspersky
kaspersky.com › blog › cve-2023-6246-glibc-vulnerability › 50369
Glibc library vulnerability published | Kaspersky official blog
February 14, 2024 - The vulnerability has received the identifier CVE-2023-6246, and a score of 8.4 on the CVSS v3.1 scale. Despite the fact that the level of this threat is not critical – it’s just high – there’s a high probability of its exploitation in large-scale attacks since glibc is the main system library that’s used by almost all Linux programs.
Trend Micro
success.trendmicro.com › en-US › solution › KA-0006179
Trend Micro products and the GNU C Library (glibc) Vulnerability – [CVE-2015-7547]
On February 16, 2016, the maintainers of the GNU C Library (known as glibc, an open-source software library widely used in Linux systems) announced that they had released a fix for a vulnerability introduced in 2008 that allowed a buffer overflow to take place.
SentinelOne
sentinelone.com › vulnerability-database › cve-2020-29573
CVE-2020-29573: GNU Glibc Buffer Overflow Vulnerability
March 4, 2026 - CVE-2020-29573 is a stack-based buffer overflow in GNU Glibc affecting x86 systems before version 2.23. It impacts printf family functions with non-canonical long double values. This article covers technical details.
Rocky Linux
rockylinux.org › news › glibc-vulnerability-april-2024
GLIBC Vulnerability on Servers Serving PHP - Rocky Linux
April 22, 2024 - Last week, CVE-2024-2961 was announced. In brief, systems using glibc and serving php content could potentially be at risk. The vulnerability is related to the ISO-2022-CN-EXT character set.
Reddit
reddit.com › r/linux › explanation of glibc vulnerability and the fix
r/linux on Reddit: Explanation of glibc vulnerability and the fix
February 19, 2016 - I did not read anywhere near the end of this but an interesting conversation I've seen is with Patrick V. (Slackware leader) and that he is thinking an old patch kept in glibc prevented Slackware from being vulnerable to this. The patch was also used by opensuse at some point.
GitHub
github.com › NishanthAnand21 › CVE-2023-4911-PoC
GitHub - NishanthAnand21/CVE-2023-4911-PoC: Repository containing a Proof of Concept (PoC) demonstrating the impact of CVE-2023-4911, a vulnerability in glibc's ld.so dynamic loader, exposing risks related to Looney Tunables. · GitHub
Repository containing a Proof of Concept (PoC) demonstrating the impact of CVE-2023-4911, a vulnerability in glibc's ld.so dynamic loader, exposing risks related to Looney Tunables.
Author NishanthAnand21