Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-11280 | In the GNU C Library (aka glibc or libc6) through 2.28, attempting to resolve a crafted hostname via getaddrinfo() leads to the allocation of a socket descriptor that is not closed. This is related to the if_nametoindex() function. |
Ubuntu USN |
USN-4416-1 | GNU C Library vulnerabilities |
Wed, 03 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 03 Dec 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-404 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-12-03T19:13:21.308Z
Reserved: 2018-11-26T00:00:00.000Z
Link: CVE-2018-19591
Updated: 2024-08-05T11:37:11.535Z
Status : Modified
Published: 2018-12-04T16:29:00.480
Modified: 2025-12-03T19:15:47.627
Link: CVE-2018-19591
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN