Vulnerabilities (CVE)

Filtered by vendor Uclibc-ng Project Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-6264 2 Uclibc, Uclibc-ng Project 2 Uclibc, Uclibc-ng 2021-05-19 5.0 MEDIUM 7.5 HIGH
Integer signedness error in libc/string/arm/memset.S in uClibc and uClibc-ng before 1.0.16 allows context-dependent attackers to cause a denial of service (crash) via a negative length value to the memset function.
CVE-2016-2225 1 Uclibc-ng Project 1 Uclibc-ng 2017-03-27 5.0 MEDIUM 7.5 HIGH
The __read_etc_hosts_r function in libc/inet/resolv.c in uClibc-ng before 1.0.12 allows remote DNS servers to cause a denial of service (infinite loop) via a crafted packet.
CVE-2016-2224 1 Uclibc-ng Project 1 Uclibc-ng 2017-03-27 5.0 MEDIUM 7.5 HIGH
The __decode_dotted function in libc/inet/resolv.c in uClibc-ng before 1.0.12 allows remote DNS servers to cause a denial of service (infinite loop) via vectors involving compressed items in a reply.