oss-sec mailing list archives

GHOST gethostbyname() heap overflow in glibc (CVE-2015-0235)


From: Hanno Böck <hanno () hboeck de>
Date: Tue, 27 Jan 2015 17:04:58 +0100

There seems to be news out about a heap overflow in
glibc's gethostbyname() function.

The original is french which I don't understand, hackernews links
google translate:

https://translate.google.com/translate?hl=en&sl=fr&tl=en&u=http%3A%2F%2Fwww.frsag.org%2Fpipermail%2Ffrsag%2F2015-January%2F005722.html

This is redhat's report:
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-0235

Origin seems to be a report from qualys.

-- 
Hanno Böck
http://hboeck.de/

mail/jabber: hanno () hboeck de
GPG: BBB51E42

Attachment: _bin
Description: OpenPGP digital signature


Current thread: