CVE-2010-4756
N/A
N/A
Summary
The glob implementation in the GNU C Library (aka glibc or libc6) allows remote authenticated users to cause a denial of service (CPU and memory consumption) via crafted glob expressions that do not match any pathnames, as demonstrated by glob expressions in STAT commands to an FTP daemon, a different vulnerability than CVE-2010-2632.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://securityreason.com/achievement_securityalert/89
- http://securityreason.com/exploitalert/9223
- http://cxib.net/stuff/glob-0day.c
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-4756
- https://bugzilla.redhat.com/show_bug.cgi?id=681681
- https://security.netapp.com/advisory/ntap-20241108-0002/
References
- http://securityreason.com/achievement_securityalert/89
- http://securityreason.com/exploitalert/9223
- http://cxib.net/stuff/glob-0day.c
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2010-4756
- https://bugzilla.redhat.com/show_bug.cgi?id=681681
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.