An integer overflow in the implementation of the posix_memalign in memalign functions in the GNU C Library (aka glibc or libc6) 2.26 and earlier could cause these functions to return a pointer to a heap area that is too small, potentially leading to heap corruption.
AI analysis not yet available
Plain-English explanation, risk summary, and remediation steps will appear here once AI analysis is complete.
No Fix Known
No patch has been released yet. Apply workarounds or mitigations where available.
| Vendor | Product | Versions | Fixed In |
|---|---|---|---|
| gnu | glibc | 2.26 | - |
| redhat | virtualization_host | - | - |
| redhat | enterprise_linux_desktop | - |
Published
CVE disclosed publicly
Last Modified
Most recent update
Indexed to CVEInsight
Added to this platform
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
20
Affected Products
18
References
gnu / glibc
| - |
| redhat | enterprise_linux_server | - | - |
| redhat | enterprise_linux_workstation | - | - |
| oracle | communications_session_border_controller | - | - |
| oracle | communications_session_border_controller | - | - |
| oracle | communications_session_border_controller | - | - |
| oracle | enterprise_communications_broker | - | - |
| oracle | enterprise_communications_broker | - | - |
| netapp | cloud_backup | - | - |
| netapp | data_ontap_edge | - | - |
| netapp | element_software | - | - |
| netapp | element_software_management | - | - |
| netapp | steelstore_cloud_integrated_storage | - | - |
| netapp | storage_replication_adapter | 7.2 | - |
| netapp | vasa_provider | 7.2 | - |
| netapp | vasa_provider | - | - |
| netapp | virtual_storage_console | 7.2 | - |
| netapp | virtual_storage_console | - | - |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability
Impact