Memory corruption in GNU C Library (glibc) - CVE-2017-1000366
Published: June 20, 2017 / Updated: June 17, 2021
Vulnerability details
The vulnerability allows a local attacker to gain elevated privileges on the target system.
The vulnerability exists due to memory management errors in implementation of various functions under multiple operating systems. A local or remote attacker can trigger the affected application to process specially crafted LD_LIBRARY_PATH values to manipulate the heap/stack, trigger memory corruption and execute arbitrary code on the target system.
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.
Affected software
Debian Linux
Gentoo Linux
Arch Linux
Amazon Linux AMI
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux EUS Compute Node
Red Hat Enterprise Linux for Power
SUSE Linux
Ubuntu
Slackware Linux
Fedora
musl (Alpine package)
glibc
Red Hat Virtualization Host
Dynamic System Analysis (DSA) Preboot
How to mitigate CVE-2017-1000366
Dynamic System Analysis (DSA) Preboot - update to dsyte2z-9.65
glibc - addressed in versions 2.23.1-12.fc24, 2.24-8.fc25, 2.25-6.fc26
Links to Public Exploits and PoC-codes
- Exploit #6384 - GNU C Library Dynamic Loader glibc ld.so - Memory Leak / Buffer Overflow (June 17, 2021)
- Exploit #1244 - Linux Kernel (Debian 9/10 / Ubuntu 14.04.5/16.04.2/17.04 / Fedora 23/24/25) - 'ldso_dynamic' Local Privilege Escalation 'Stack Clash' Exploit (March 18, 2020)
- Exploit #1245 - Linux Kernel (Debian 7.7/8.5/9.0 / Ubuntu 14.04.2/16.04.2/17.04 / Fedora 22/25 / CentOS 7.3.1611) - 'ldso_hwcap_64' Local Privilege Escalation 'Stack Clash' Exploit (March 18, 2020)
- Exploit #1246 - Linux Kernel (Debian 7/8/9/10 / Fedora 23/24/25 / CentOS 5.3/5.11/6.0/6.8/7.2.1511) - 'ldso_hwcap' Local Privilege Escalation 'Stack Clash' Exploit (March 18, 2020)
External References
Related Security Bulletins
- Arbitrary code execution in GNU Glibc
- Debian update for glibc
- Ubuntu update for GNU C Library
- Slackware Linux update for glibc
- Arch Linux update for lib32-glibc
- Arch Linux update for glibc
- Ubuntu update for GNU C Library
- Amazon Linux AMI update for glibc
- OpenSUSE Linux update for glibc
- SUSE Linux update for glibc
- SUSE Linux update for glibc
- SUSE Linux update for glibc
- SUSE Linux update for glibc
- Red Hat update for glibc
- Red Hat update for glibc
- Red Hat update for glibc
- Memory corruption in musl (Alpine package)
- Gentoo update for GNU C Library
- Multiple vulnerabilities in IBM Dynamic System Analysis (DSA) Preboot
- Fedora 26 update for glibc
- Fedora 24 update for glibc
- Fedora 25 update for glibc