7.5
CVSSv2

CVE-1999-0199

Published: 06/10/2020 Updated: 03/12/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

manual/search.texi in the GNU C Library (aka glibc) prior to 2.2 lacks a statement about the unspecified tdelete return value upon deletion of a tree's root, which might allow malicious users to access a dangling pointer in an application whose developer was unaware of a documentation update from 1999.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu glibc

Github Repositories

fuzzy search for code that reminds code from fixes to known vulnerabilities

cvematch Fuzzy search for code similar to code that caused known vulnerabilities Reports should be interpreted as "structure of this code loosely reminds the code that lead to CVE-123" Its purpose is to suggest candidates for manual code audit, somewhat like you would use a noisy static analyzer, not an SCA tool Supported languages are C, C++, C#, Java, Python, PHP