CVE-2014-5119
EPSS 21.5%eglibc - security update
Published: 8/29/2014Modified: 4/28/2026
Description
Off-by-one error in the __gconv_translit_find function in gconv_trans.c in GNU C Library (aka glibc) allows context-dependent attackers to cause a denial of service (crash) or execute arbitrary code via vectors related to the CHARSET environment variable and gconv transliteration modules.
Affected packages (2)
- Debian/eglibcfrom 0, < 2.13-38+deb7u4
- Debian/glibcfrom 0, < 2.19-10