First published: Wed Jan 28 2015(Updated: )
Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code via vectors related to the (1) gethostbyname or (2) gethostbyname2 function, aka "GHOST."
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
GNU glibc | >=2.0<2.18 | |
Oracle Communications Application Session Controller | <3.7.1 | |
Oracle Communications EAGLE Application Processor | =16.0 | |
Oracle Communications Eagle Lnp Application Processor | =10.0 | |
Oracle Communications Lsms | =13.1 | |
Oracle Communications Policy Management | =9.7.3 | |
Oracle Communications Policy Management | =9.9.1 | |
Oracle Communications Policy Management | =10.4.1 | |
Oracle Communications Policy Management | =11.5 | |
Oracle Communications Policy Management | =12.1.1 | |
Oracle Communications Session Border Controller | <7.2.0 | |
Oracle Communications Session Border Controller | =7.2.0 | |
Oracle Communications Session Border Controller | =8.0.0 | |
Oracle Communications User Data Repository | >=10.0.0<=10.0.1 | |
Oracle Communications WebRTC Session Controller | =7.0 | |
Oracle Communications WebRTC Session Controller | =7.1 | |
Oracle Communications WebRTC Session Controller | =7.2 | |
Oracle Exalogic Infrastructure | =1.0 | |
Oracle Exalogic Infrastructure | =2.0 | |
Oracle VM VirtualBox | <5.1.24 | |
Oracle Linux | =5 | |
Oracle Linux | =7-0 | |
Debian Debian Linux | =7.0 | |
Debian Debian Linux | =8.0 | |
Redhat Virtualization | =6.0 | |
Apple Mac OS X | <10.11.1 | |
IBM PureApplication System | =1.0.0.0 | |
IBM PureApplication System | =1.1.0.0 | |
IBM PureApplication System | =2.0.0.0 | |
IBM Security Access Manager for Enterprise Single Sign-On | =8.2 | |
PHP PHP | >=5.4.0<5.4.38 | |
PHP PHP | >=5.5.0<5.5.22 | |
PHP PHP | >=5.6.0<5.6.6 | |
>=2.0<2.18 | ||
<3.7.1 | ||
=16.0 | ||
=10.0 | ||
=13.1 | ||
=9.7.3 | ||
=9.9.1 | ||
=10.4.1 | ||
=11.5 | ||
=12.1.1 | ||
<7.2.0 | ||
=7.2.0 | ||
=8.0.0 | ||
>=10.0.0<=10.0.1 | ||
=7.0 | ||
=7.1 | ||
=7.2 | ||
=1.0 | ||
=2.0 | ||
<5.1.24 | ||
=5 | ||
=7-0 | ||
=7.0 | ||
=8.0 | ||
=6.0 | ||
<10.11.1 | ||
=1.0.0.0 | ||
=1.1.0.0 | ||
=2.0.0.0 | ||
=8.2 | ||
>=5.4.0<5.4.38 | ||
>=5.5.0<5.5.22 | ||
>=5.6.0<5.6.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.