2019-02-26 03:29:00 2019-03-25 18:29:00

In the GNU C Library (aka glibc or libc6) before 2.28, parse_reg_exp in posix/regcomp.c misparses alternatives, which allows attackers to cause a denial of service (assertion failure and application exit) or trigger an incorrect result by attempting a regular-expression match.

Vector

NETWORK

Complexity

LOW

Authentication

NONE

Confidentiality

NONE

Integrity

NONE

Availability

PARTIAL
Gnu Glibc 1.07.6 (not an official CPE) Gnu Glibc 1.08 (not an official CPE) Gnu Glibc 1.08.1 (not an official CPE) Gnu Glibc 1.08.3 (not an official CPE) Gnu Glibc 1.08.4 (not an official CPE) Gnu Glibc 1.08.5 (not an official CPE) Gnu Glibc 1.08.6 (not an official CPE) Gnu Glibc 1.08.7 (not an official CPE) Gnu Glibc 1.08.8 (not an official CPE) Gnu Glibc 1.08.9 (not an official CPE) Gnu Glibc 1.08.10 (not an official CPE) Gnu Glibc 1.08.11 (not an official CPE) Gnu Glibc 1.08.12 (not an official CPE) Gnu Glibc 1.08.13 (not an official CPE) Gnu Glibc 1.08.14 (not an official CPE) Gnu Glibc 1.09 (not an official CPE) Gnu Glibc 1.09.1 (not an official CPE) Gnu Glibc 1.09.2 (not an official CPE) Gnu Glibc 1.09.3 (not an official CPE) Gnu Glibc 1.09.5 (not an official CPE) GNU glibc 2.0 GNU glibc 2.0.1 GNU glibc 2.0.2 GNU glibc 2.0.3 GNU glibc 2.0.4 GNU glibc 2.0.5 GNU glibc 2.0.6 GNU glibc 2.1 GNU glibc 2.1.1 GNU glibc 2.1.1.6 GNU glibc 2.1.2 GNU glibc 2.1.3 Gnu Glibc 2.1.3.10 (not an official CPE) GNU glibc 2.1.9 GNU glibc 2.2 GNU glibc 2.2.1 GNU glibc 2.2.2 GNU glibc 2.2.3 GNU glibc 2.2.4 GNU glibc 2.2.5 GNU glibc 2.20 GNU glibc 2.19 Gnu Glibc 2.18 ~~~~x86~ (not an official CPE) GNU glibc 2.18 Gnu Glibc 2.17 ~~~~x86~ (not an official CPE) GNU glibc 2.17 GNU glibc 2.16 GNU glibc 2.15 GNU glibc 2.14.1 GNU glibc 2.14 GNU glibc 2.13 GNU glibc 2.12.2 GNU glibc 2.12.1 Gnu Glibc 2.12.0 (not an official CPE) Gnu Glibc 2.12 ~~~~x86~ (not an official CPE) GNU glibc 2.12 GNU glibc 2.11.3 GNU glibc 2.11.2 GNU glibc 2.11.1 GNU glibc 2.11 Gnu Glibc 2.10.2 (not an official CPE) GNU glibc 2.10.1 Gnu Glibc 2.10 (not an official CPE) GNU glibc 2.9 GNU glibc 2.8 GNU glibc 2.7 GNU glibc 2.6.1 GNU glibc 2.6 GNU glibc 2.5.1 GNU glibc 2.5 GNU glibc 2.4 GNU glibc 2.3.10 GNU glibc 2.3.6 GNU glibc 2.3.5 GNU glibc 2.3.4 GNU glibc 2.3.3 GNU glibc 2.3.2 GNU glibc 2.3.1 GNU glibc 2.3 Gnu Glibc 1.07.4 (not an official CPE) Gnu Glibc 1.07.3 (not an official CPE) Gnu Glibc 1.07.2 (not an official CPE) Gnu Glibc 1.07.1 (not an official CPE) Gnu Glibc 1.07 (not an official CPE) Gnu Glibc 1.06.13 (not an official CPE) Gnu Glibc 1.06.12 (not an official CPE) Gnu Glibc 1.06.11 (not an official CPE) Gnu Glibc 1.06.10 (not an official CPE) Gnu Glibc 1.06.9 (not an official CPE) Gnu Glibc 1.06.8 (not an official CPE) Gnu Glibc 1.06.7 (not an official CPE) Gnu Glibc 1.06.6 (not an official CPE) Gnu Glibc 1.06.4 (not an official CPE) Gnu Glibc 1.06.3 (not an official CPE) Gnu Glibc 1.06.2 (not an official CPE) Gnu Glibc 1.06.1 (not an official CPE) Gnu Glibc 1.07.5 (not an official CPE) Gnu Glibc 1.06 (not an official CPE) Gnu Glibc 1.05 (not an official CPE) Gnu Glibc 1.04 (not an official CPE) Gnu Glibc 1.03 (not an official CPE) Gnu Glibc 1.02 (not an official CPE) Gnu Glibc 1.01 (not an official CPE) Gnu Glibc 1.00 (not an official CPE) Gnu Glibc 0.6 (not an official CPE) Gnu Glibc 0.5 (not an official CPE) Gnu Glibc 0.4.1 (not an official CPE) Gnu Glibc 0.4 (not an official CPE) Gnu Glibc 0.1 (not an official CPE) Gnu Glibc - (not an official CPE) Gnu Glibc 2.20 ~~~~x86~ (not an official CPE) GNU glibc 2.21 Gnu Glibc 2.22 (not an official CPE) Gnu Glibc 2.22 ~~~~x86~ (not an official CPE) Gnu Glibc 2.23 (not an official CPE) Gnu Glibc 2.24 (not an official CPE) Gnu Glibc 2.25 (not an official CPE) Gnu Glibc 2.26 (not an official CPE) Gnu Glibc 2.26 ~~~~x86~ (not an official CPE) Gnu Glibc 2.27 (not an official CPE) Gnu Glibc 2.27 ~~~~x86~ (not an official CPE) Netapp Cloud backup (not an official CPE) Netapp Ontap select deploy administration utility - (not an official CPE) Netapp Steelstore cloud integrated storage - (not an official CPE)