cvedb.io
CVE-2017-1000408
HIGH · CVSS 7.8
EPSS exploitation probability: 0%
Published 2018-02-01T04:29:00.247 · Last modified 2026-06-17T00:59:07.243

Summary

A memory leak in glibc 2.1.1 (released on May 24, 1999) can be reached and amplified through the LD_HWCAP_MASK environment variable. Please note that many versions of glibc are not vulnerable to this issue if patched for CVE-2017-1000366.

Affected products

gnu — glibc

Does this affect you?

Add your gear to cvedb and we'll alert you only when gnu ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.