Vulnerability Bulletins

GNU glibc gethostbyname Function Buffer Overflow Vulnerability

   
Affected software Cisco
 
On January 27, 2015, a buffer overflow vulnerability in the GNU C library (glibc) was publicly announced. This vulnerability is related to the various gethostbyname functions included in glibc and affects applications that call these functions. This vulnerability may allow an attacker to obtain sensitive information from an exploited system or, in some instances, perform remote code execution with the privileges of the application being exploited.The glibc library is a commonly used third-party

More info:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150128-ghost?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=GNU%20glibc%20gethostbyname%20Function%20Buffer%20Overflow%20Vulnerability&v