https://seclists.org/oss-sec/2024/q2/302: Out-of-bounds ad & write in the glibc's qsort()
Published Jun 25, 2024
·Updated
Affected Software
1 affected component
Samba Samba>=4.19.0<=4.19.6, >=4.20.0<4.20.2
Frequently Asked Questions
1
What is the severity of the OUT-OF-BOUNDS AD & WRITE in the glibc's qsort() vulnerability?
The OUT-OF-BOUNDS AD & WRITE in the glibc's qsort() vulnerability is considered critical due to its potential impact on memory integrity.
2
How do I fix the OUT-OF-BOUNDS AD & WRITE in the glibc's qsort() vulnerability?
To fix the OUT-OF-BOUNDS AD & WRITE in the glibc's qsort() vulnerability, update to the latest patched version of Samba.
3
Which systems are affected by the OUT-OF-BOUNDS AD & WRITE in the glibc's qsort() vulnerability?
The OUT-OF-BOUNDS AD & WRITE in the glibc's qsort() vulnerability primarily affects systems running Samba that utilize the vulnerable ldb_qsort() function.
4
What are the potential risks of the OUT-OF-BOUNDS AD & WRITE in the glibc's qsort() vulnerability?
The potential risks of the OUT-OF-BOUNDS AD & WRITE in the glibc's qsort() vulnerability include memory corruption, crashes, and possible remote code execution.
5
When was the OUT-OF-BOUNDS AD & WRITE in the glibc's qsort() vulnerability disclosed?
The OUT-OF-BOUNDS AD & WRITE in the glibc's qsort() vulnerability was disclosed on June 25, 2024.