Glibc 2.23 library - CVE-2018-11237
‎08-01-2018
11:01 AM
1,778 Views

niranjanbc
Contributor IV
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
there is a CVE "CVE-2018-11237" reported for Glibc library, which is explained below. does this CVE is applicable to your NXP chips, in our product we are using Imx6solox
CVE Description:
An AVX-512-optimized implementation of the mempcpy function in the GNU C Library (aka glibc or libc6) 2.27 and earlier may write data beyond the target buffer, leading to a buffer overflow in __mempcpy_avx512_no_vzeroupper.
Thanks
Niranjan
Reply
2 Replies
‎08-02-2018
01:35 PM
1,606 Views

NXP TechSupport
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello niranjanbc,
Not applicable to MX6SoloX,
Regards
Reply
‎08-06-2018
07:07 AM
1,606 Views

niranjanbc
Contributor IV
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thanks
