The vfprintf function in stdio-common/vfprintf.c in GNU C Library (aka glibc) 2.5, 2.12, and probably other versions does not "properly restrict the use of" the alloca function when allocating the SPECS array, which allows context-dependent attackers to bypass the FORTIFY_SOURCE format-string protection mechanism and cause a denial of service (crash) or possibly execute arbitrary code via a crafted format string using positional parameters and a large number of format specifiers, a different vulnerability than CVE-2012-3404 and CVE-2012-3405.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade glibc-utilsUpgrade glibc-develUpgrade glibcUpgrade glibc-staticUpgrade nscdUpgrade glibc-commonUpgrade glibc-headers | Dec 1, 2016 | Feb 10, 2014 |
| Debian | — | Upgrade eglibcUpgrade glibc | Jul 30, 2024 | Feb 10, 2014 |
| F5 Big Ip | — | Update F5 BIG-IP to the latest version | Jun 17, 2026 | Jul 23, 2015 |
| Gentoo Linux | — | Upgrade sys-libs/glibc. | Oct 30, 2017 | Feb 10, 2014 |
| Oracle_linux | — | Upgrade glibc-staticUpgrade nscdUpgrade glibc-headersUpgrade glibc-utilsUpgrade glibc-commonUpgrade glibc-develUpgrade glibc | Oct 16, 2024 | Feb 10, 2014 |
| Suse | — | Upgrade glibc-utilsUpgrade libnsl1Upgrade glibc-profile-32bitUpgrade glibc-locale-32bitUpgrade glibc-profileUpgrade nscdUpgrade glibc-infoUpgrade glibc-langUpgrade glibc-locale-baseUpgrade glibc-i18ndataUpgrade glibc-x86Upgrade glibcUpgrade libnsl1-32bitUpgrade glibc-extraUpgrade glibc-devel-32bitUpgrade glibc-locale-x86Upgrade glibc-develUpgrade glibc-localeUpgrade glibc-locale-base-32bitUpgrade glibc-32bitUpgrade glibc-devel-staticUpgrade glibc-profile-x86Upgrade glibc-htmlUpgrade glibc-gconv-modules-extra | Dec 12, 2013 | Jun 28, 2013 |
| Ubuntu | — | Upgrade libc6 | Nov 8, 2024 | Feb 10, 2014 |
| Vmsa 2012 0018 | — | Upgrade VMware ESXi 5.1 to build number 911593Upgrade VMware ESXi 5.0 to build number 912577 | Jan 4, 2013 | Jan 4, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub