glibc: __nss_hostname_digits_dots() heap-based buffer overflow
Published Jan 28, 2015
10.0
HIGHCVSS 2.0
EPSS 94.56%
Description
Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code via vectors related to the (1) gethostbyname or (2) gethostbyname2 function, aka "GHOST."
Affected products
No data.
Configuration 2
- < 3.7.1
- 16.0
- 10.0
- 13.1
- 9.7.3
- 9.9.1
- 10.4.1
- 11.5
- 12.1.1
- < 7.2.0
- 7.2.0
- 8.0.0
- ≥ 10.0.0 · ≤ 10.0.1
- 7.0
- 7.1
- 7.2
- 1.0
- 2.0
- < 5.1.24
- 5
- 7
Configuration 3
- 7.0
- 8.0
Configuration 4
- 6.0
Configuration 6
- 1.0.0.0
- 1.1.0.0
- 2.0.0.0
- 8.2
No data.
RHEV 3.X Hypervisor and Agents for RHEL-6
rhev-hypervisor6-0:6.6-20150123.1.el6ev
Fixed · RHSA-2015:0126
Red Hat Enterprise Linux 4 Extended Lifecycle Support
glibc-0:2.3.4-2.57.el4.2
Fixed · RHSA-2015:0101
Red Hat Enterprise Linux 5
glibc-0:2.5-123.el5_11.1
Fixed · RHSA-2015:0090
Red Hat Enterprise Linux 5.6 Long Life
glibc-0:2.5-58.el5_6.6
Fixed · RHSA-2015:0099
Red Hat Enterprise Linux 5.9 Extended Update Support
glibc-0:2.5-107.el5_9.8
Fixed · RHSA-2015:0099
Red Hat Enterprise Linux 6
glibc-0:2.12-1.149.el6_6.5
Fixed · RHSA-2015:0092
Red Hat Enterprise Linux 6.2 Advanced Update Support
glibc-0:2.12-1.47.el6_2.15
Fixed · RHSA-2015:0099
Red Hat Enterprise Linux 6.4 Extended Update Support
glibc-0:2.12-1.107.el6_4.7
Fixed · RHSA-2015:0099
Red Hat Enterprise Linux 6.5 Extended Update Support
glibc-0:2.12-1.132.el6_5.5
Fixed · RHSA-2015:0099
Red Hat Enterprise Linux 7
glibc-0:2.17-55.el7_0.5
Fixed · RHSA-2015:0092
| Product | Package | State | Advisory |
|---|---|---|---|
| RHEV 3.X Hypervisor and Agents for RHEL-6 | rhev-hypervisor6-0:6.6-20150123.1.el6ev | Fixed | RHSA-2015:0126 |
| Red Hat Enterprise Linux 4 Extended Lifecycle Support | glibc-0:2.3.4-2.57.el4.2 | Fixed | RHSA-2015:0101 |
| Red Hat Enterprise Linux 5 | glibc-0:2.5-123.el5_11.1 | Fixed | RHSA-2015:0090 |
| Red Hat Enterprise Linux 5.6 Long Life | glibc-0:2.5-58.el5_6.6 | Fixed | RHSA-2015:0099 |
| Red Hat Enterprise Linux 5.9 Extended Update Support | glibc-0:2.5-107.el5_9.8 | Fixed | RHSA-2015:0099 |
| Red Hat Enterprise Linux 6 | glibc-0:2.12-1.149.el6_6.5 | Fixed | RHSA-2015:0092 |
| Red Hat Enterprise Linux 6.2 Advanced Update Support | glibc-0:2.12-1.47.el6_2.15 | Fixed | RHSA-2015:0099 |
| Red Hat Enterprise Linux 6.4 Extended Update Support | glibc-0:2.12-1.107.el6_4.7 | Fixed | RHSA-2015:0099 |
| Red Hat Enterprise Linux 6.5 Extended Update Support | glibc-0:2.12-1.132.el6_5.5 | Fixed | RHSA-2015:0099 |
| Red Hat Enterprise Linux 7 | glibc-0:2.17-55.el7_0.5 | Fixed | RHSA-2015:0092 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:L/Au:N/C:C/I:C/A:C
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (42 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 94.56% (0.94558) | 99.85th | v5 (v2026.06.15) |
| Jun 15, 2026 | 94.86% (0.94859) | 99.85th | v5 (v2026.06.15) |
| May 21, 2026 | 84.87% (0.84870) | 99.36th | v4 (v2025.03.14) |
| Apr 23, 2026 | 86.66% (0.86662) | 99.42th | v4 (v2025.03.14) |
| Apr 12, 2026 | 84.87% (0.84870) | 99.35th | v4 (v2025.03.14) |
| Mar 4, 2026 | 86.66% (0.86662) | 99.41th | v4 (v2025.03.14) |
| Mar 1, 2026 | 84.84% (0.84844) | 99.33th | v4 (v2025.03.14) |
| Feb 16, 2026 | 86.66% (0.86662) | 99.40th | v4 (v2025.03.14) |
| Feb 4, 2026 | 84.87% (0.84870) | 99.32th | v4 (v2025.03.14) |
| Feb 1, 2026 | 82.65% (0.82652) | 99.22th | v4 (v2025.03.14) |
| Jan 4, 2026 | 85.70% (0.85700) | 99.34th | v4 (v2025.03.14) |
| Jan 1, 2026 | 82.65% (0.82652) | 99.21th | v4 (v2025.03.14) |
| Dec 4, 2025 | 84.87% (0.84870) | 99.29th | v4 (v2025.03.14) |
| Dec 1, 2025 | 82.65% (0.82652) | 99.20th | v4 (v2025.03.14) |
| Nov 4, 2025 | 85.45% (0.85447) | 99.32th | v4 (v2025.03.14) |
| Nov 1, 2025 | 83.36% (0.83356) | 99.23th | v4 (v2025.03.14) |
| Oct 4, 2025 | 85.45% (0.85447) | 99.32th | v4 (v2025.03.14) |
| Oct 1, 2025 | 83.36% (0.83356) | 99.24th | v4 (v2025.03.14) |
| Sep 4, 2025 | 85.84% (0.85843) | 99.34th | v4 (v2025.03.14) |
| Sep 1, 2025 | 83.84% (0.83840) | 99.27th | v4 (v2025.03.14) |
| Aug 17, 2025 | 85.84% (0.85843) | 99.34th | v4 (v2025.03.14) |
| Aug 4, 2025 | 87.63% (0.87630) | 99.42th | v4 (v2025.03.14) |
| Aug 1, 2025 | 86.03% (0.86032) | 99.36th | v4 (v2025.03.14) |
| Jul 4, 2025 | 88.61% (0.88605) | 99.47th | v4 (v2025.03.14) |
| Jul 1, 2025 | 87.23% (0.87231) | 99.41th | v4 (v2025.03.14) |
| Jun 4, 2025 | 89.53% (0.89535) | 99.52th | v4 (v2025.03.14) |
| Jun 1, 2025 | 88.38% (0.88379) | 99.47th | v4 (v2025.03.14) |
| May 4, 2025 | 89.53% (0.89535) | 99.51th | v4 (v2025.03.14) |
| May 1, 2025 | 88.38% (0.88379) | 99.46th | v4 (v2025.03.14) |
| Mar 17, 2025 | 89.53% (0.89535) | 99.54th | v4 (v2025.03.14) |
| Dec 12, 2024 | 97.44% (0.97439) | 99.96th | v3 (v2023.03.01) |
| Jun 3, 2024 | 97.50% (0.97505) | 99.98th | v3 (v2023.03.01) |
| Feb 22, 2024 | 97.52% (0.97523) | 99.99th | v3 (v2023.03.01) |
| Nov 18, 2023 | 97.53% (0.97531) | 99.99th | v3 (v2023.03.01) |
| Oct 5, 2023 | 97.54% (0.97540) | 99.99th | v3 (v2023.03.01) |
| Aug 23, 2023 | 97.53% (0.97528) | 99.98th | v3 (v2023.03.01) |
| Jul 8, 2023 | 97.55% (0.97547) | 99.99th | v3 (v2023.03.01) |
| Mar 7, 2023 | 97.50% (0.97495) | 99.95th | v3 (v2023.03.01) |
| Mar 6, 2023 | 85.88% (0.85884) | 99.70th | v2 (v2022.01.01) |
| Nov 11, 2022 | 85.88% (0.85884) | 99.68th | v2 (v2022.01.01) |
| Jun 18, 2022 | 87.38% (0.87375) | 99.73th | v2 (v2022.01.01) |
| Feb 4, 2022 | 83.86% (0.83855) | 99.54th | v2 (v2022.01.01) |
References (96)
- http://blogs.sophos.com/2015/01/29/sophos-products-and-the-ghost-vulnerability-affecting-linux/ x_refsource_CONFIRMThird Party Advisory
- http://linux.oracle.com/errata/ELSA-2015-0090.html x_refsource_CONFIRMThird Party Advisory
- http://linux.oracle.com/errata/ELSA-2015-0092.html x_refsource_CONFIRMThird Party Advisory
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html vendor-advisoryx_refsource_APPLEMailing ListThird Party Advisory
- http://lists.apple.com/archives/security-announce/2015/Oct/msg00005.html vendor-advisoryx_refsource_APPLEMailing ListThird Party Advisory
- http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html vendor-advisoryx_refsource_APPLEMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=142296726407499&w=2 vendor-advisoryx_refsource_HPIssue TrackingMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=142721102728110&w=2 vendor-advisoryx_refsource_HPIssue TrackingMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=142722450701342&w=2 vendor-advisoryx_refsource_HPIssue TrackingMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=142781412222323&w=2 vendor-advisoryx_refsource_HPIssue TrackingMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=143145428124857&w=2 vendor-advisoryx_refsource_HPIssue TrackingMailing ListThird Party Advisory
- http://packetstormsecurity.com/files/130171/Exim-ESMTP-GHOST-Denial-Of-Service.html x_refsource_MISCExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/130768/EMC-Secure-Remote-Services-GHOST-SQL-Injection-Command-Injection.html x_refsource_MISCThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/130974/Exim-GHOST-glibc-gethostbyname-Buffer-Overflow.html x_refsource_MISCExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/153278/WAGO-852-Industrial-Managed-Switch-Series-Code-Execution-Hardcoded-Credentials.html x_refsource_MISCExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/164014/Moxa-Command-Injection-Cross-Site-Scripting-Vulnerable-Software.html x_refsource_MISCExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/167552/Nexans-FTTO-GigaSwitch-Outdated-Components-Hardcoded-Backdoor.html x_refsource_MISCExploitThird Party AdvisoryVDB Entry
- http://rhn.redhat.com/errata/RHSA-2015-0126.html vendor-advisoryx_refsource_REDHATThird Party Advisory
- http://seclists.org/fulldisclosure/2015/Jan/111 mailing-listx_refsource_FULLDISCMailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2019/Jun/18 mailing-listx_refsource_FULLDISCExploitMailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2021/Sep/0 mailing-listx_refsource_FULLDISCExploitMailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2022/Jun/36 mailing-listx_refsource_FULLDISCExploitMailing ListThird Party Advisory
- http://seclists.org/oss-sec/2015/q1/269 mailing-listx_refsource_BUGTRAQMailing ListThird Party Advisory
- http://seclists.org/oss-sec/2015/q1/274 mailing-listx_refsource_BUGTRAQExploitMailing ListThird Party Advisory
- http://secunia.com/advisories/62517 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62640 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62667 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62680 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62681 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62688 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62690 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62691 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62692 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62698 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62715 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62758 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62812 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62813 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62816 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62865 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62870 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62871 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62879 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://secunia.com/advisories/62883 third-party-advisoryx_refsource_SECUNIANot Applicable
- http://support.apple.com/kb/HT204942 x_refsource_CONFIRMThird Party Advisory
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150128-ghost vendor-advisoryx_refsource_CISCOThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21695695 x_refsource_CONFIRMThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21695774 x_refsource_CONFIRMThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21695835 x_refsource_CONFIRMThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21695860 x_refsource_CONFIRMThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21696131 x_refsource_CONFIRMThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21696243 x_refsource_CONFIRMThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21696526 x_refsource_CONFIRMThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21696600 x_refsource_CONFIRMThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21696602 x_refsource_CONFIRMThird Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21696618 x_refsource_CONFIRMThird Party Advisory
- http://www.debian.org/security/2015/dsa-3142 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- http://www.idirect.net/Partners/~/media/Files/CVE/iDirect-Posted-Common-Vulnerabilities-and-Exposures.pdf x_refsource_CONFIRMBroken LinkURL Repurposed
- http://www.mandriva.com/security/advisories?name=MDVSA-2015:039 vendor-advisoryx_refsource_MANDRIVAThird Party Advisory
- http://www.openwall.com/lists/oss-security/2015/01/27/9
- http://www.openwall.com/lists/oss-security/2021/05/04/7 mailing-listx_refsource_MLISTExploitMailing List
- http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html x_refsource_CONFIRMPatchThird Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html x_refsource_CONFIRMPatchThird Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html x_refsource_CONFIRMPatchThird Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpuoct2017-3236626.html x_refsource_CONFIRMPatchThird Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html x_refsource_CONFIRMPatchThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html x_refsource_CONFIRMThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html x_refsource_CONFIRMThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html x_refsource_CONFIRMThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html x_refsource_CONFIRMThird Party Advisory
- http://www.securityfocus.com/archive/1/534845/100/0/threaded mailing-listx_refsource_BUGTRAQExploitThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/72325 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/91787 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032909 vdb-entryx_refsource_SECTRACKThird Party AdvisoryVDB Entry
- http://www.websense.com/support/article/kbarticle/Vulnerabilities-resolved-in-TRITON-APX-Version-8-0 x_refsource_CONFIRMBroken LinkPermissions Required
- https://access.redhat.com/articles/1332213
- https://access.redhat.com/security/cve/CVE-2015-0235 Vendor Advisory
- https://bto.bluecoat.com/security-advisory/sa90 x_refsource_CONFIRMThird Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1183461 Issue Tracking
- https://cert-portal.siemens.com/productcert/pdf/ssa-994726.pdf x_refsource_CONFIRMThird Party Advisory
- https://community.qualys.com/blogs/laws-of-vulnerabilities/2015/01/27/the-ghost-vulnerability x_refsource_MISCThird Party Advisory
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04874668 x_refsource_CONFIRMThird Party Advisory
- https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes x_refsource_CONFIRMThird Party Advisory
- https://kb.juniper.net/InfoCenter/index?page=content&id=JSA10671 x_refsource_CONFIRMThird Party Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10100 x_refsource_CONFIRMThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2015-0235
- https://seclists.org/bugtraq/2019/Jun/14 mailing-listx_refsource_BUGTRAQExploitMailing ListThird Party Advisory
- https://security.gentoo.org/glsa/201503-04 vendor-advisoryx_refsource_GENTOOThird Party Advisory
- https://security.netapp.com/advisory/ntap-20150127-0001/ x_refsource_CONFIRMThird Party Advisory
- https://support.apple.com/HT205267 x_refsource_CONFIRMThird Party Advisory
- https://support.apple.com/HT205375 x_refsource_CONFIRMThird Party Advisory
- https://www.arista.com/en/support/advisories-notices/security-advisories/1053-security-advisory-9 x_refsource_MISCThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2015-0235
- https://www.f-secure.com/en/web/labs_global/fsc-2015-1 x_refsource_CONFIRMThird Party Advisory
- https://www.qualys.com/research/security-advisories/GHOST-CVE-2015-0235.txt x_refsource_MISCThird Party Advisory
- https://www.sophos.com/en-us/support/knowledgebase/121879.aspx x_refsource_CONFIRMThird Party Advisory
Change history (0)
No recorded changes yet.