TROYANOSYVIRUS
Voltar para CVEs

CVE-2013-4788

N/A

Descricao

The PTR_MANGLE implementation in the GNU C Library (aka glibc or libc6) 2.4, 2.17, and earlier, and Embedded GLIBC (EGLIBC) does not initialize the random value for the pointer guard, which makes it easier for context-dependent attackers to control execution flow by leveraging a buffer-overflow vulnerability in an application and using the known zero value pointer guard to calculate a pointer address.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado10/4/2013
Ultima modificacao4/29/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

gnu:eglibcgnu:glibc

Fraquezas (CWE)

CWE-20

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.