CVE-2021-35942: Integer Overflow in glibc wordexp() w_addword Function
CVE-2024-2961: Buffer overflow in glibc ISO-2022-CN-EXT converter
CVE-2021-3999: 1-byte buffer underflow in glibc __getcwd_generic at root
CVE-2021-3999: Off-by-One Buffer Underflow in glibc getcwd()
CVE-2023-6779: heap-overflow in glibc __vsyslog_internal via uninitialized bufsize in secondary buffer path
CVE-2023-6779: glibc __vsyslog_internal heap overflow via secondary buffer expansion
CVE-2023-6246: Heap overflow in glibc __vsyslog_internal due to undersized malloc
CVE-2023-6246: Heap overflow in glibc syslog due to incorrect buffer allocation size
CVE-2023-4911 Looney Tunables: heap overflow in glibc parse_tunables (GLIBC_TUNABLES env var)
CVE-2014-7169: Bash Shellshock incomplete fix – command injection via function import in non-POSIX mode
CVE-2014-7169: Shellshock bypass via unvalidated function names in non-POSIX mode
CVE-2014-6271: Shellshock Command Injection in Bash Function Import
CVE-2014-6271 Shellshock: bash parses past function boundary in env var imports
binutils CVE-2023-1579: Heap overflow in COFF relocation handling due to incorrect reloc_count tracking
CVE-2021-3487: binutils readelf OOB read in fetch_indexed_string (.debug_str_offsets)
CVE-2021-3487: Integer underflow in DWARF string offset parsing leads to out-of-bounds read
CVE-2020-16592: binutils libbfd UAF in section merging via hash table resize
CVE-2020-16592: Use-after-free in BFD merge.c during section merging
CVE-2022-38126: Memory leak in binutils bfd/dwarf2.c read_abbrevs — partial abbrev not freed on error, re-parsing loop
CVE-2022-38126: Memory leak in BFD DWARF abbreviation table handling