The malloc implementation in the GNU C Library (aka glibc or libc6), from version 2.24 to 2.26 on powerpc, and only in version 2.26 on i386, did not properly handle malloc calls with arguments close to SIZE_MAX and could return a pointer to a heap region that is smaller than requested, eventually leading to heap corruption.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-18303 The malloc implementation in the GNU C Library (aka glibc or libc6), from version 2.24 to 2.26 on powerpc, and only in version 2.26 on i386, did not properly handle malloc calls with arguments close to SIZE_MAX and could return a pointer to a heap region that is smaller than requested, eventually leading to heap corruption.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T06:10:10.398Z

Reserved: 2018-02-02T00:00:00

Link: CVE-2018-6551

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-02-02T14:29:01.590

Modified: 2024-11-21T04:10:53.263

Link: CVE-2018-6551

cve-icon Redhat

Severity : Moderate

Publid Date: 2018-02-02T00:00:00Z

Links: CVE-2018-6551 - Bugzilla

cve-icon OpenCVE Enrichment

No data.