CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2015-0235

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1640%
EPSS Percentile21.45th
Published2015年1月28日
Last Modified2026年5月6日

Vulnerability Description

Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code via vectors related to the (1) gethostbyname or (2) gethostbyname2 function, aka "GHOST."

Affected Platforms (CPE)

📦
Gnu

Glibc

>= 2.0 and < 2.18
📦
Oracle

Communications Application Session Controller

< 3.7.1
📦
Oracle

Communications Eagle Application Processor

= 16.0
📦
Oracle

Communications Eagle Lnp Application Processor

= 10.0
📦
Oracle

Communications Lsms

= 13.1
📦
Oracle

Communications Policy Management

= 9.7.3
📦
Oracle

Communications Policy Management

= 9.9.1
📦
Oracle

Communications Policy Management

= 10.4.1
📦
Oracle

Communications Policy Management

= 11.5
📦
Oracle

Communications Policy Management

= 12.1.1
📦
Oracle

Communications Session Border Controller

< 7.2.0
📦
Oracle

Communications Session Border Controller

= 7.2.0
📦
Oracle

Communications Session Border Controller

= 8.0.0
📦
Oracle

Communications User Data Repository

>= 10.0.0 and <= 10.0.1
📦
Oracle

Communications Webrtc Session Controller

= 7.0
📦
Oracle

Communications Webrtc Session Controller

= 7.1
📦
Oracle

Communications Webrtc Session Controller

= 7.2
📦
Oracle

Exalogic Infrastructure

= 1.0
📦
Oracle

Exalogic Infrastructure

= 2.0
📦
Oracle

Vm Virtualbox

< 5.1.24
💻
Oracle

Linux

= 5
💻
Oracle

Linux

= 7
💻
Debian

Debian Linux

= 7.0
💻
Debian

Debian Linux

= 8.0
📦
Redhat

Virtualization

= 6.0
💻
Apple

Mac Os X

< 10.11.1
📦
Ibm

Pureapplication System

= 1.0.0.0
📦
Ibm

Pureapplication System

= 1.1.0.0
📦
Ibm

Pureapplication System

= 2.0.0.0
📦
Ibm

Security Access Manager For Enterprise Single Sign On

= 8.2
📦
Php

Php

>= 5.4.0 and < 5.4.38
📦
Php

Php

>= 5.5.0 and < 5.5.22
📦
Php

Php

>= 5.6.0 and < 5.6.6

References & Advisories

相關漏洞威脅