Boletines de Vulnerabilidades

DSA-3887 glibc - security update


Información sobre el sistema

   
Software afectado Debian

Descripción

The Qualys Research Labs discovered various problems in the dynamiclinker of the GNU C Library which allow local privilege escalation byclashing the stack. For the full details, please refer to their advisorypublished at:https://www.qualys.com/2017/06/19/stack-clash/stack-clash.txt

More info:

https://www.debian.org/security/2017/dsa-3887

Identificadores estándar

Propiedad Valor
CVE CVE-2017-1000 and DSA-3887.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2017-06-21

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT