Security Advisory

CVE-2018-19591

7.5
HIGH

Vulnerability Description

In the GNU C Library (aka glibc or libc6) through 2.28, attempting to resolve a crafted hostname via getaddrinfo() leads to the allocation of a socket descriptor that is not closed. This is related to the if_nametoindex() function.
Published Date December 4, 2018
Official Source NIST NVD Advisory