PoC Index

CVE-2014-5119

HIGH 7.5EPSS 18.1%

Off-by-one error in the __gconv_translit_find function in gconv_trans.c in GNU C Library (aka glibc) allows context-dependent attackers to cause a denial of service (crash) or execute arbitrary code via vectors related to the CHARSET environment variable and gconv transliteration modules.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
18.10% chance of exploitation in the next 30 days, 97th percentile
Published
2014-08-29
Updated
2024-08-06

Proof-of-concept exploits (1)

ExploitDB entries (1)

References

Related