CVE-2015-1781: Buffer Overflow
Buffer overflow in the gethostbynamer and other unspecified NSS functions in the GNU C Library (aka glibc or libc6) before 2.22 allows context-dependent attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response, which triggers a call with a misaligned buffer.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1781?
CVE-2015-1781 has a severity rating of high due to its potential for denial of service or arbitrary code execution.
How do I fix CVE-2015-1781?
To mitigate CVE-2015-1781, upgrade to glibc version 2.22 or later on affected systems.
What systems are affected by CVE-2015-1781?
CVE-2015-1781 affects various versions of SUSE Linux, Debian 7.0, and Ubuntu releases prior to their respective patched versions.
Can CVE-2015-1781 lead to remote attacks?
Yes, attackers can exploit CVE-2015-1781 remotely via crafted DNS responses.
What kind of impact can CVE-2015-1781 have on my system?
CVE-2015-1781 can result in a denial of service or allow attackers to execute arbitrary code on the affected system.