CVE-2014-9984 PUBLISHED

nscd in the GNU C Library (aka glibc or libc6) before version 2.20 does not correctly compute the size of an internal buffer when processing netgroup requests, possibly leading to an nscd daemon crash or code execution as the user running nscd.

EPSS 0.50% · 65.8th percentile

Risk Scores

EPSS Score
0.50%
65.8th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSeglibc0, 2.17-93ubuntu4, 2.18-0ubuntu1

Timeline

References

Open in Interactive Console →