CVE-2015-0235
high · 10Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code via vectors related to the (1) gethostbyname or (2) gethostbyname2 function, aka "GHOST."
10
CVSS
94.6%
EPSS (exploit prob.)
100th
EPSS percentile
2015-01-28
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
CWE-787
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| gnu | glibc | >= 2.0, < 2.18 |
| oracle | communications_application_session_controller | < 3.7.1 |
| oracle | communications_eagle_application_processor | 16.0 |
| oracle | communications_eagle_lnp_application_processor | 10.0 |
| oracle | communications_lsms | 13.1 |
| oracle | communications_policy_management | 9.7.3 |
| oracle | communications_policy_management | 9.9.1 |
| oracle | communications_policy_management | 10.4.1 |
| oracle | communications_policy_management | 11.5 |
| oracle | communications_policy_management | 12.1.1 |
| oracle | communications_session_border_controller | < 7.2.0 |
| oracle | communications_session_border_controller | 7.2.0 |
| oracle | communications_session_border_controller | 8.0.0 |
| oracle | communications_user_data_repository | >= 10.0.0, <= 10.0.1 |
| oracle | communications_webrtc_session_controller | 7.0 |
| oracle | communications_webrtc_session_controller | 7.1 |
| oracle | communications_webrtc_session_controller | 7.2 |
| oracle | exalogic_infrastructure | 1.0 |
| oracle | exalogic_infrastructure | 2.0 |
| oracle | vm_virtualbox | < 5.1.24 |
| oracle | linux | 5 |
| oracle | linux | 7 |
| debian | debian_linux | 7.0 |
| debian | debian_linux | 8.0 |
| redhat | virtualization | 6.0 |
| apple | mac_os_x | < 10.11.1 |
| ibm | pureapplication_system | 1.0.0.0 |
| ibm | pureapplication_system | 1.1.0.0 |
| ibm | pureapplication_system | 2.0.0.0 |
| ibm | security_access_manager_for_enterprise_single_sign-on | 8.2 |
| php | php | >= 5.4.0, < 5.4.38 |
| php | php | >= 5.5.0, < 5.5.22 |
| php | php | >= 5.6.0, < 5.6.6 |
Check a specific version with /api/v1/cve/match.
References
- http://blogs.sophos.com/2015/01/29/sophos-products-and-the-ghost-vulnerability-affecting-linux/
- http://linux.oracle.com/errata/ELSA-2015-0090.html
- http://linux.oracle.com/errata/ELSA-2015-0092.html
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html
- http://lists.apple.com/archives/security-announce/2015/Oct/msg00005.html
- http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html
- http://marc.info/?l=bugtraq&m=142296726407499&w=2
- http://marc.info/?l=bugtraq&m=142721102728110&w=2
- http://marc.info/?l=bugtraq&m=142722450701342&w=2
- http://marc.info/?l=bugtraq&m=142781412222323&w=2
- http://marc.info/?l=bugtraq&m=143145428124857&w=2
- http://packetstormsecurity.com/files/130171/Exim-ESMTP-GHOST-Denial-Of-Service.html
- http://packetstormsecurity.com/files/130768/EMC-Secure-Remote-Services-GHOST-SQL-Injection-Command-Injection.html
- http://packetstormsecurity.com/files/130974/Exim-GHOST-glibc-gethostbyname-Buffer-Overflow.html
- http://packetstormsecurity.com/files/153278/WAGO-852-Industrial-Managed-Switch-Series-Code-Execution-Hardcoded-Credentials.html
- http://packetstormsecurity.com/files/164014/Moxa-Command-Injection-Cross-Site-Scripting-Vulnerable-Software.html
- http://packetstormsecurity.com/files/167552/Nexans-FTTO-GigaSwitch-Outdated-Components-Hardcoded-Backdoor.html
- http://rhn.redhat.com/errata/RHSA-2015-0126.html
- http://seclists.org/fulldisclosure/2015/Jan/111
- http://seclists.org/fulldisclosure/2019/Jun/18
- http://seclists.org/fulldisclosure/2021/Sep/0
- http://seclists.org/fulldisclosure/2022/Jun/36
- http://seclists.org/oss-sec/2015/q1/269
- http://seclists.org/oss-sec/2015/q1/274
- http://secunia.com/advisories/62517
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2015-0235