CVE-2015-0235 critical (for linux) aka GHOST.

Elixer

Lifer
May 7, 2002
10,371
762
126
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-0235

Patch ASAP, or someone can send you a mail that compromises your system(s)!


A heap-based buffer overflow was found in glibc's __nss_hostname_digits_dots() function, which is used by the gethostbyname() and gethostbyname2() glibc function calls. A remote attacker able to make an application call either of these functions could use this flaw to execute arbitrary code with the permissions of the user running the application.
 

Jodell88

Diamond Member
Jan 29, 2007
8,762
30
91
This is really for servers, and long lived distros like Ubuntu LTS 12.04.

Most distros should be using a newer glibc version than those affected.