6.8
CVSSv2

CVE-2019-1010023

Published: 15/07/2019 Updated: 11/04/2024
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

GNU Libc current is affected by: Re-mapping current loaded library with malicious ELF file. The impact is: In worst case attacker may evaluate privileges. The component is: libld. The attack vector is: Attacker sends 2 ELF files to victim and asks to run ldd on it. ldd execute code. NOTE: Upstream comments indicate "this is being treated as a non-security bug and no real threat.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu glibc -

Github Repositories

Gatecheck CI/CD Validation Tool

Gatecheck Gatecheck automates report validation in a CI/CD Pipeline by comparing security findings to a pre-determined thresholds It also provides report aggregation, artifact integrity, and deployment validation Gatecheck is stateless so self-hosting and provisioning servers is not required Upcoming Features The CLI is currently going through a much needed refactor Onc