7.3
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
Exploitability: 2.5 / Impact: 4.7
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)
Description
The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable.
Affected (13)
Products: Debian: Debian Linux · Gnu: Glibc · Netapp: Active Iq Unified Manager, Hci H300s Firmware, Hci H500s Firmware, Hci H700s Firmware, Hci H410s Firmware, Hci H410c Firmware, Hci H610c Firmware, Hci H610s Firmware, Hci H615c Firmware, Hci Compute Node, Ontap Select Deploy Administration Utility
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 10.0 | |
| From 2.1.93 to 2.40 | |
| All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netapp Hci H300s | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netapp Hci H500s | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netapp Hci H700s | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netapp Hci H410s | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netapp Hci H410c | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netapp Hci H610c | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netapp Hci H610s | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netapp Hci H615c | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netapp Hci Compute Node | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
References (36)
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Mailing ListThird Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Broken Link
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Broken Link
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Broken Link
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Third Party Advisory
Source: 3ff69d7a-14f2-4f67-a097-88dee7810d18
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e
Timeline
No history available yet.