Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2012-3480
Description:Multiple integer overflows in the (1) strtod, (2) strtof, (3) strtold, (4) strtod_l, and other unspecified "related functions" in stdlib in GNU C Library (aka glibc or libc6) 2.16 allow local users to cause a denial of service (application crash) and possibly execute arbitrary code via a long string, which triggers a stack-based buffer overflow.
Test IDs: 1.3.6.1.4.1.25623.1.1.4.2013.1287.1   1.3.6.1.4.1.25623.1.0.71983   1.3.6.1.4.1.25623.1.0.71809   1.3.6.1.4.1.25623.1.0.870814   1.3.6.1.4.1.25623.1.0.120480   1.3.6.1.4.1.25623.1.1.4.2012.1667.1   1.3.6.1.4.1.25623.1.0.123838   1.3.6.1.4.1.25623.1.1.1.2.2015.165   1.3.6.1.4.1.25623.1.0.72313   1.3.6.1.4.1.25623.1.0.881477   1.3.6.1.4.1.25623.1.1.4.2013.1251.1   1.3.6.1.4.1.25623.1.0.841254   1.3.6.1.4.1.25623.1.0.72311   1.3.6.1.4.1.25623.1.1.4.2012.1666.1   1.3.6.1.4.1.25623.1.0.864631   1.3.6.1.4.1.25623.1.0.881476   1.3.6.1.4.1.25623.1.0.71808   1.3.6.1.4.1.25623.1.0.864664   1.3.6.1.4.1.25623.1.0.870816   1.3.6.1.4.1.25623.1.0.123836  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2012-3480
1027374
http://www.securitytracker.com/id?1027374
50201
http://secunia.com/advisories/50201
50422
http://secunia.com/advisories/50422
54982
http://www.securityfocus.com/bid/54982
84710
http://osvdb.org/84710
FEDORA-2012-11927
http://lists.fedoraproject.org/pipermail/package-announce/2012-August/085190.html
GLSA-201503-04
https://security.gentoo.org/glsa/201503-04
RHSA-2012:1207
http://rhn.redhat.com/errata/RHSA-2012-1207.html
RHSA-2012:1208
http://rhn.redhat.com/errata/RHSA-2012-1208.html
RHSA-2012:1262
http://rhn.redhat.com/errata/RHSA-2012-1262.html
RHSA-2012:1325
http://rhn.redhat.com/errata/RHSA-2012-1325.html
USN-1589-1
http://www.ubuntu.com/usn/USN-1589-1
[libc-alpha] 20120812 Fix strtod integer/buffer overflow (bug 14459)
http://sourceware.org/ml/libc-alpha/2012-08/msg00202.html
[oss-security] 20120813 CVE Request -- glibc: Integer overflows, leading to stack-based buffer overflows in strto* related routines
http://www.openwall.com/lists/oss-security/2012/08/13/4
[oss-security] 20120813 Re: CVE Request -- glibc: Integer overflows, leading to stack-based buffer overflows in strto* related routines
http://www.openwall.com/lists/oss-security/2012/08/13/6
http://sourceware.org/bugzilla/show_bug.cgi?id=14459
http://sourceware.org/bugzilla/show_bug.cgi?id=14459




© 1998-2025 E-Soft Inc. All rights reserved.