High severity7.5NVD Advisory· Published Jun 10, 2016· Updated May 6, 2026
CVE-2016-3706
CVE-2016-3706
Description
Stack-based buffer overflow in the getaddrinfo function in sysdeps/posix/getaddrinfo.c in the GNU C Library (aka glibc or libc6) allows remote attackers to cause a denial of service (crash) via vectors involving hostent conversion. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-4458.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- lists.opensuse.org/opensuse-updates/2016-06/msg00030.htmlnvdMailing ListThird Party Advisory
- lists.opensuse.org/opensuse-updates/2016-07/msg00039.htmlnvdMailing ListThird Party Advisory
- www-01.ibm.com/support/docview.wssnvdThird Party Advisory
- www.securityfocus.com/bid/102073nvdThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/88440nvdThird Party AdvisoryVDB Entry
- source.android.com/security/bulletin/2017-12-01nvdThird Party Advisory
News mentions
0No linked articles in our index yet.