First published: Tue Dec 31 2019(Updated: )
The eglibc package before 2.14 incorrectly handled the getaddrinfo() function. An attacker could use this issue to cause a denial of service.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Eglibc Eglibc | <2.14 | |
Novell Suse Linux Enterprise Server | =11.0-sp2 | |
Debian Debian Linux | =6.0 | |
Debian Debian Linux | =7.0 | |
Canonical Ubuntu Linux | =10.04 | |
Canonical Ubuntu Linux | =12.04 | |
Canonical Ubuntu Linux | =14.04 | |
Fedoraproject Fedora | =18 | |
Fedoraproject Fedora | =19 | |
debian/eglibc |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4357 is a vulnerability in the eglibc package before version 2.14.
CVE-2013-4357 could allow an attacker to cause a denial of service on affected systems.
The eglibc package before version 2.14 is affected, as well as certain versions of Novell SUSE Linux Enterprise Server, Debian Linux, Canonical Ubuntu Linux, and Fedora.
CVE-2013-4357 has a severity rating of 7.5 (high).
There are no available fixes for CVE-2013-4357 at this time.