Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) and possibly execute arbitrary code via huge allocation.
CVSS Details
- CVSS 3.1 Base Score: 9.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade libgc | Mar 31, 2017 | Nov 25, 2016 |
| Huawei Euleros 2_0_sp2 | — | Upgrade gc | Dec 4, 2019 | Dec 12, 2016 |
| Huawei Euleros 2_0_sp3 | — | Upgrade gc | Dec 18, 2019 | Dec 12, 2016 |
| Huawei Euleros 2_0_sp5 | — | Upgrade gc | Dec 11, 2019 | Dec 12, 2016 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Aug 21, 2016 |
| Suse | — | Upgrade gc-develUpgrade libgc1 | Dec 9, 2016 | Dec 8, 2016 |
| Ubuntu | — | Upgrade libgc1c2 | Feb 16, 2017 | Dec 11, 2016 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Dec 12, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub