First published: Wed Jan 27 2021(Updated: )
GNU C Library (aka glibc or libc6) is vulnerable to a denial of service, caused by an assertion failure when processing invalid input sequences in the ISO-2022-JP-3 encoding in the iconv function. By sending specially-crafted input, a remote attacker could exploit this vulnerability to cause the application to crash.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU glibc | <=2.32.0 | |
NetApp E-Series SANtricity OS Controller | >=11.0<=11.60.3 | |
NetApp ONTAP Select Deploy administration utility | ||
Oracle Communications Cloud Native Core Security Edge Protection Proxy | =1.5.0 | |
Fujitsu M10-1 Firmware | <xcp2410 | |
Fujitsu M10-1 | ||
Fujitsu M10-4 Firmware | <xcp2410 | |
Fujitsu M10-4 | ||
Fujitsu M10-4s Firmware | <xcp2410 | |
Fujitsu M10-4s | ||
Fujitsu M12-1 Firmware | <xcp2410 | |
Fujitsu M12-1 | ||
Fujitsu M12-2 Firmware | <xcp2410 | |
Fujitsu M12-2 | ||
Fujitsu M12-2s Firmware | <xcp2410 | |
Fujitsu M12-2s | ||
Fujitsu M10-1 Firmware | <xcp3110 | |
Fujitsu M10-4 Firmware | <xcp3110 | |
Fujitsu M10-4s Firmware | <xcp3110 | |
Fujitsu M12-1 Firmware | <xcp3110 | |
Fujitsu M12-2 Firmware | <xcp3110 | |
Fujitsu M12-2s Firmware | <xcp3110 | |
Debian Debian Linux | =10.0 | |
All of | ||
Fujitsu M10-1 | ||
Fujitsu M10-1 Firmware | <xcp2410 | |
All of | ||
Fujitsu M10-4 | ||
Fujitsu M10-4 Firmware | <xcp2410 | |
All of | ||
Fujitsu M10-4s | ||
Fujitsu M10-4s Firmware | <xcp2410 | |
All of | ||
Fujitsu M12-1 Firmware | <xcp2410 | |
Fujitsu M12-1 | ||
All of | ||
Fujitsu M12-2 Firmware | <xcp2410 | |
Fujitsu M12-2 | ||
All of | ||
Fujitsu M12-2s Firmware | <xcp2410 | |
Fujitsu M12-2s | ||
All of | ||
Fujitsu M10-1 Firmware | <xcp3110 | |
Fujitsu M10-1 | ||
All of | ||
Fujitsu M10-4 Firmware | <xcp3110 | |
Fujitsu M10-4 | ||
All of | ||
Fujitsu M10-4s Firmware | <xcp3110 | |
Fujitsu M10-4s | ||
All of | ||
Fujitsu M12-1 Firmware | <xcp3110 | |
Fujitsu M12-1 | ||
All of | ||
Fujitsu M12-2 Firmware | <xcp3110 | |
Fujitsu M12-2 | ||
All of | ||
Fujitsu M12-2s Firmware | <xcp3110 | |
Fujitsu M12-2s | ||
IBM Security Verify Access | <=10.0.0 | |
debian/glibc | 2.31-13+deb11u11 2.31-13+deb11u10 2.36-9+deb12u8 2.36-9+deb12u7 2.40-3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-3326 is a vulnerability in the GNU C Library (glibc) that allows for a denial of service attack.
CVE-2021-3326 has a severity score of 7.5, which is considered high.
IBM Security Verify Access 10.0.0, GNU glibc up to version 2.32.0, and NetApp E-Series SANtricity OS Controller versions between 11.0 and 11.60.3 are affected by CVE-2021-3326.
To fix CVE-2021-3326, you should update to a version of the affected software that includes a patch for the vulnerability.
You can find more information about CVE-2021-3326 in the references provided: [1], [2], [3].