CVE-2021-3999: glibc getcwd() off-by-one buffer underflow + missing bounds check

CVE-2021-3999: 1-byte buffer underflow in glibc __getcwd_generic at root

CVE-2021-3999: Off-by-One Buffer Underflow in glibc getcwd()

CVE-2023-6779: heap-overflow in glibc __vsyslog_internal via uninitialized bufsize in secondary buffer path

CVE-2023-6779: glibc __vsyslog_internal heap overflow via secondary buffer expansion

CVE-2023-6779: Heap Overflow in glibc syslog via Secondary Buffer Allocation

CVE-2023-6246: glibc __vsyslog_internal heap overread via undersized malloc in fallback path

CVE-2023-6246: Heap overflow in glibc __vsyslog_internal due to undersized malloc

CVE-2023-6246: Heap overflow in glibc syslog due to incorrect buffer allocation size

CVE-2023-4911 Looney Tunables: Buffer Overflow in glibc parse_tunables() via name=name=val input

CVE-2023-4911 Looney Tunables: heap overflow in glibc parse_tunables (GLIBC_TUNABLES env var)

CVE-2023-4911 'Looney Tunables' Buffer Overflow in glibc tunable initialization

criticalcposted 1 day ago

CVE-2014-7169: Bash Shellshock incomplete fix – command injection via function import in non-POSIX mode

CVE-2014-7169 — bash secondary Shellshock parser-state leak via env function import

CVE-2014-7169: Shellshock bypass via unvalidated function names in non-POSIX mode

CVE-2019-18276: Bash restricted-bypass via enable -f loading shared objects

CVE-2019-18276: bash disable_priv_mode leaves saved-UID intact, escalation via enable -f

CVE-2014-6271: Shellshock Command Injection in Bash Function Import

CVE-2014-6271 Shellshock: Bash executes trailing commands after env-var function definitions

CVE-2014-6271 Shellshock: bash parses past function boundary in env var imports