In the GNU C Library (aka glibc or libc6) through 2.29, the memcmp function for the x32 architecture can incorrectly return zero (indicating that the inputs are equal) because the RDX most significant bit is mishandled.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-02-03T02:00:00

Updated: 2024-08-04T20:46:46.043Z

Reserved: 2019-02-02T00:00:00

Link: CVE-2019-7309

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-02-03T02:29:00.237

Modified: 2020-08-24T17:37:01.140

Link: CVE-2019-7309

cve-icon Redhat

Severity : Low

Publid Date: 2019-02-02T00:00:00Z

Links: CVE-2019-7309 - Bugzilla