GNU glibc 'xc_cpupool_getinfo()' Function Use After Free Memory Corruption Vulnerability

Bugtraq ID: 68006
Class: Unknown
CVE: CVE-2014-4043
Remote: Yes
Local: No
Published: Jun 11 2014 12:00AM
Updated: Mar 19 2015 07:31AM
Credit: David Reid, Alex Gaynor, and Glyph Lefkowitz
Vulnerable: Ubuntu Ubuntu Linux 10.04 sparc
Ubuntu Ubuntu Linux 10.04 powerpc
Ubuntu Ubuntu Linux 10.04 i386
Ubuntu Ubuntu Linux 10.04 ARM
Ubuntu Ubuntu Linux 10.04 amd64
SuSE SUSE Linux Enterprise Server 10 SP3 LTSS
+ Linux kernel 2.6.5
GNU glibc 2.14
GNU glibc 2.13
Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus