CVE-2016-6323 PUBLISHED

The makecontext function in the GNU C Library (aka glibc or libc6) before 2.25 creates execution contexts incompatible with the unwinder on ARM EABI (32-bit) platforms, which might allow context-dependent attackers to cause a denial of service (hang), as demonstrated by applications compiled using gccgo, related to backtrace generation.

EPSS 1.13% · 78.2th percentile

Risk Scores

EPSS Score
1.13%
78.2th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSglibc0, 2.21-0ubuntu4, 2.21-0ubuntu5
Ubuntu:14.04:LTSeglibc2.19-0ubuntu3, 2.19-0ubuntu4, 2.19-0ubuntu5

Timeline

References

Open in Interactive Console →