CVE-2020-1751 PUBLISHED

An out-of-bounds write vulnerability was found in glibc before 2.31 when handling signal trampolines on PowerPC. Specifically, the backtrace function did not properly check the array bounds when storing the frame address, resulting in a denial of service or potential code execution. The highest threat from this vulnerability is to system availability.

EPSS 0.14% · 33.5th percentile

Risk Scores

EPSS Score
0.14%
33.5th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSglibc0, 2.21-0ubuntu4, 2.21-0ubuntu5
Ubuntu:18.04:LTSglibc0, 2.26-0ubuntu2, 2.26-0ubuntu2.1
Ubuntu:Pro:14.04:LTSeglibc2.19-0ubuntu6.9, 2.19-0ubuntu6.10, 2.19-0ubuntu6.11

Timeline

References

Open in Interactive Console →