Skip to content
Noroxi

uClibC records

6 published records for vendor uclibc.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
16.7%
Median publish → KEV
No record has entered KEV

All records

6 records
  • In uClibc and uClibc-ng before 1.0.39, incorrect handling of special characters in domain names returned by DNS servers via gethostbyname, g

    CriticalCVSS 9.6No exploitEPSS 3%

    uclibc · uclibcNov 10, 2021

  • A memory corruption vulnerability exists in the libpthread linuxthreads functionality of uClibC 0.9.33.2 and uClibC-ng 1.0.40.

    CriticalCVSS 9.8No exploitEPSS 1%

    uclibc · uclibcSep 29, 2022

  • CVE-2017-9728
    39Monitor

    In uClibc 0.9.33.2, there is an out-of-bounds read in the get_subexp function in misc/regex/regexec.c when processing a crafted regular expr

    CriticalCVSS 9.8No exploitEPSS 1%

    uclibc · uclibcJun 16, 2017

  • CVE-2016-6264
    31Monitor

    Integer signedness error in libc/string/arm/memset.S in uClibc and uClibc-ng before 1.0.16 allows context-dependent attackers to cause a den

    HighCVSS 7.5No exploitEPSS 3%

    uclibc · uclibcJan 27, 2017

  • uClibc-ng through 1.0.40 and uClibc through 0.9.33.2 use predictable DNS transaction IDs that may lead to DNS cache poisoning.

    MediumCVSS 6.5No exploitEPSS 12%

    uclibc · uclibcMay 6, 2022

  • CVE-2017-9729
    30Monitor

    In uClibc 0.9.33.2, there is stack exhaustion (uncontrolled recursion) in the check_dst_limits_calc_pos_1 function in misc/regex/regexec.c w

    HighCVSS 7.5No exploitEPSS 1%

    uclibc · uclibcJun 16, 2017