7.8
CVSSv2

CVE-2017-8804

Published: 07/05/2017 Updated: 11/04/2024
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The xdr_bytes and xdr_string functions in the GNU C Library (aka glibc or libc6) 2.25 mishandle failures of buffer deserialization, which allows remote malicious users to cause a denial of service (virtual memory allocation, or memory consumption if an overcommit setting is not used) via a crafted UDP packet to port 111, a related issue to CVE-2017-8779. NOTE: [Information provided from upstream and references

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu glibc 2.25

Vendor Advisories

The xdr_bytes and xdr_string functions in the GNU C Library (aka glibc or libc6) 225 mishandle failures of buffer deserialization, which allows remote attackers to cause a denial of service (virtual memory allocation, or memory consumption if an overcommit setting is not used) via a crafted UDP packet to port 111, a related issue to CVE-2017-8779 ...

Github Repositories

Quay Image Security Scan

Quay Image Security Scan Small utility scirpt to get the security scan for Quay images How to use It can be used as a standalone script or to be imported into other script as a class Sample input format in json: [ { "Organisation":"coreos", "Repository":"hyperkube", "Tag":"v1104_coreos0" }, { "