Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, and probably other BSD and Apple Mac OS platforms allow context-dependent attackers to execute arbitrary code via large values of certain integer fields in the format argument to (1) the strfmon function in lib/libc/stdlib/strfmon.c, related to the GET_NUMBER macro; and (2) the printf function, related to left_prec and right_prec.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Apple Osx Libsystem | — | Upgrade macOS to the latest versionApply OS X security update 2008-008 | Dec 16, 2011 | Mar 27, 2008 |
| Debian | — | Upgrade glibc | Jul 30, 2024 | Mar 27, 2008 |
| Suse | — | Upgrade glibc-locale-64bitUpgrade glibc-dceext-x86Upgrade glibc-profile-32bitUpgrade glibc-x86Upgrade timezoneUpgrade glibc-devel-32bitUpgrade glibc-infoUpgrade glibc-locale-x86Upgrade nscdUpgrade glibc-dceext-32bitUpgrade glibc-32bitUpgrade glibc-devel-64bitUpgrade glibc-develUpgrade glibc-i18ndataUpgrade glibc-64bitUpgrade glibc-localeUpgrade glibc-obsoleteUpgrade glibc-dceextUpgrade glibc-profile-x86Upgrade sap-aio-releaseUpgrade glibcUpgrade glibc-locale-32bitUpgrade glibc-profileUpgrade glibc-dceext-64bitUpgrade glibc-profile-64bitUpgrade glibc-html | Dec 12, 2013 | Mar 27, 2008 |
| Ubuntu | — | Upgrade libc6 | Nov 8, 2024 | Mar 27, 2008 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub