glib unsetenv() Duplicate Entry...

- AV AC AU C I A
发布: 2000-08-31
修订: 2025-04-13

A potential vulnerability exists in the GNU glibc package. glibc is a libc implementation shipped with a number of popular free/open source OS distributions. A bug in the unsetenv() function makes it so that duplicate environment entries are not eliminated when this function is called. Any program that relies on unsetenv() to remove all instances of a environment variable for security purposes, when built against a vulnerable version of glibc, may be open to attack.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息