GNU C Library: Arbitrary descriptor allocation A vulnerability in the GNU C Library could result in a Denial of Service condition. glibc 2019-03-14 2019-03-14 617938 remote 2.26.0 2.26.0

The GNU C library is the standard C library used by Gentoo Linux systems.

A vulnerability was discovered in the GNU C Library functions xdr_bytes and xdr_string.

A remote attacker, by sending a crafted UDP packet, could cause a Denial of Service condition.

There is no known workaround at this time.

All GNU C Library users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=sys-libs/glibc-2.26.0"
CVE-2018-19591 Zlogene Zlogene