Back

MEDIUM

glibc: incorrect size calculation in formatted printing can lead to FORTIFY_SOURCE format string protection bypass

Published Feb 10, 2014

Description

The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.12 and other versions does not properly calculate a buffer length, which allows context-dependent attackers to bypass the FORTIFY_SOURCE format-string protection mechanism and cause a denial of service (stack corruption and crash) via a format string that uses positional parameters and many format specifiers.

Affected products

Remediation

Red Hat statement

This issue did not affect the version of glibc as shipped with Red Hat Enterprise Linux 5.

Metrics

Weaknesses (1)

References (10)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Feb 10, 2014
Updated Aug 6, 2024
Reserved Jun 14, 2012
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Moderate
Public date Jul 11, 2012