cpe:/a:boehm-demers-weiser:garbage_collector:1.3 cpe:/a:boehm-demers-weiser:garbage_collector:1.4 cpe:/a:boehm-demers-weiser:garbage_collector:1.5 cpe:/a:boehm-demers-weiser:garbage_collector:1.8 cpe:/a:boehm-demers-weiser:garbage_collector:1.9 cpe:/a:boehm-demers-weiser:garbage_collector:2.0 cpe:/a:boehm-demers-weiser:garbage_collector:2.1 cpe:/a:boehm-demers-weiser:garbage_collector:2.2 cpe:/a:boehm-demers-weiser:garbage_collector:2.3 cpe:/a:boehm-demers-weiser:garbage_collector:2.4 cpe:/a:boehm-demers-weiser:garbage_collector:3.0 cpe:/a:boehm-demers-weiser:garbage_collector:3.1 cpe:/a:boehm-demers-weiser:garbage_collector:3.2 cpe:/a:boehm-demers-weiser:garbage_collector:3.3 cpe:/a:boehm-demers-weiser:garbage_collector:3.4 cpe:/a:boehm-demers-weiser:garbage_collector:3.5 cpe:/a:boehm-demers-weiser:garbage_collector:3.6 cpe:/a:boehm-demers-weiser:garbage_collector:3.7 cpe:/a:boehm-demers-weiser:garbage_collector:4.0 cpe:/a:boehm-demers-weiser:garbage_collector:4.1 cpe:/a:boehm-demers-weiser:garbage_collector:4.2 cpe:/a:boehm-demers-weiser:garbage_collector:4.3 cpe:/a:boehm-demers-weiser:garbage_collector:4.4 cpe:/a:boehm-demers-weiser:garbage_collector:4.5 cpe:/a:boehm-demers-weiser:garbage_collector:4.6 cpe:/a:boehm-demers-weiser:garbage_collector:4.7 cpe:/a:boehm-demers-weiser:garbage_collector:4.8 cpe:/a:boehm-demers-weiser:garbage_collector:4.9 cpe:/a:boehm-demers-weiser:garbage_collector:4.10 cpe:/a:boehm-demers-weiser:garbage_collector:4.11 cpe:/a:boehm-demers-weiser:garbage_collector:4.12 cpe:/a:boehm-demers-weiser:garbage_collector:4.13 cpe:/a:boehm-demers-weiser:garbage_collector:4.14 cpe:/a:boehm-demers-weiser:garbage_collector:4.14:alpha1 cpe:/a:boehm-demers-weiser:garbage_collector:4.14:alpha2 cpe:/a:boehm-demers-weiser:garbage_collector:5.0 cpe:/a:boehm-demers-weiser:garbage_collector:5.0:alpha1 cpe:/a:boehm-demers-weiser:garbage_collector:5.0:alpha2 cpe:/a:boehm-demers-weiser:garbage_collector:5.0:alpha3 cpe:/a:boehm-demers-weiser:garbage_collector:5.0:alpha4 cpe:/a:boehm-demers-weiser:garbage_collector:5.0:alpha6 cpe:/a:boehm-demers-weiser:garbage_collector:5.0:alpha7 cpe:/a:boehm-demers-weiser:garbage_collector:5.1 cpe:/a:boehm-demers-weiser:garbage_collector:5.2 cpe:/a:boehm-demers-weiser:garbage_collector:5.3 cpe:/a:boehm-demers-weiser:garbage_collector:5.4 cpe:/a:boehm-demers-weiser:garbage_collector:6.0 cpe:/a:boehm-demers-weiser:garbage_collector:6.0:alpha1 cpe:/a:boehm-demers-weiser:garbage_collector:6.0:alpha2 cpe:/a:boehm-demers-weiser:garbage_collector:6.0:alpha3 cpe:/a:boehm-demers-weiser:garbage_collector:6.0:alpha4 cpe:/a:boehm-demers-weiser:garbage_collector:6.0:alpha5 cpe:/a:boehm-demers-weiser:garbage_collector:6.0:alpha6 cpe:/a:boehm-demers-weiser:garbage_collector:6.0:alpha7 cpe:/a:boehm-demers-weiser:garbage_collector:6.0:alpha8 cpe:/a:boehm-demers-weiser:garbage_collector:6.0:alpha9 cpe:/a:boehm-demers-weiser:garbage_collector:6.1 cpe:/a:boehm-demers-weiser:garbage_collector:6.1:alpha1 cpe:/a:boehm-demers-weiser:garbage_collector:6.1:alpha2 cpe:/a:boehm-demers-weiser:garbage_collector:6.1:alpha3 cpe:/a:boehm-demers-weiser:garbage_collector:6.1:alpha4 cpe:/a:boehm-demers-weiser:garbage_collector:6.1:alpha5 cpe:/a:boehm-demers-weiser:garbage_collector:6.2 cpe:/a:boehm-demers-weiser:garbage_collector:6.2:alpha1 cpe:/a:boehm-demers-weiser:garbage_collector:6.2:alpha2 cpe:/a:boehm-demers-weiser:garbage_collector:6.2:alpha3 cpe:/a:boehm-demers-weiser:garbage_collector:6.2:alpha4 cpe:/a:boehm-demers-weiser:garbage_collector:6.2:alpha5 cpe:/a:boehm-demers-weiser:garbage_collector:6.2:alpha6 cpe:/a:boehm-demers-weiser:garbage_collector:6.3 cpe:/a:boehm-demers-weiser:garbage_collector:6.3:alpha1 cpe:/a:boehm-demers-weiser:garbage_collector:6.3:alpha2 cpe:/a:boehm-demers-weiser:garbage_collector:6.3:alpha3 cpe:/a:boehm-demers-weiser:garbage_collector:6.3:alpha4 cpe:/a:boehm-demers-weiser:garbage_collector:6.3:alpha5 cpe:/a:boehm-demers-weiser:garbage_collector:6.3:alpha6 cpe:/a:boehm-demers-weiser:garbage_collector:6.4 cpe:/a:boehm-demers-weiser:garbage_collector:6.5 cpe:/a:boehm-demers-weiser:garbage_collector:6.6 cpe:/a:boehm-demers-weiser:garbage_collector:6.7 cpe:/a:boehm-demers-weiser:garbage_collector:6.8 cpe:/a:boehm-demers-weiser:garbage_collector:6.9 cpe:/a:boehm-demers-weiser:garbage_collector:7.0 cpe:/a:boehm-demers-weiser:garbage_collector:7.0:alpha1 cpe:/a:boehm-demers-weiser:garbage_collector:7.0:alpha2 cpe:/a:boehm-demers-weiser:garbage_collector:7.0:alpha3 cpe:/a:boehm-demers-weiser:garbage_collector:7.0:alpha4 cpe:/a:boehm-demers-weiser:garbage_collector:7.0:alpha5 cpe:/a:boehm-demers-weiser:garbage_collector:7.0:alpha7 cpe:/a:boehm-demers-weiser:garbage_collector:7.0:alpha9 cpe:/a:boehm-demers-weiser:garbage_collector:7.1 cpe:/a:boehm-demers-weiser:garbage_collector:7.1:alpha2 cpe:/a:boehm-demers-weiser:garbage_collector:7.2:alpha2 cpe:/a:boehm-demers-weiser:garbage_collector:7.2:alpha4 cpe:/a:boehm-demers-weiser:garbage_collector:7.2:alpha6 CVE-2012-2673 2012-07-25T15:55:02.773-04:00 2016-09-28T21:59:06.160-04:00 5.0 NETWORK LOW NONE NONE PARTIAL NONE http://nvd.nist.gov 2016-10-03T15:41:49.187-04:00 BID 54227 FEDORA FEDORA-2012-9556 FEDORA FEDORA-2012-9637 MANDRIVA MDVSA-2012:158 REDHAT RHSA-2013:1500 REDHAT RHSA-2014:0149 REDHAT RHSA-2014:0150 UBUNTU USN-1546-1 MLIST [oss-security] 20120605 memory allocator upstream patches MLIST [oss-security] 20120607 Re: memory allocator upstream patches MISC http://kqueue.org/blog/2012/03/05/memory-allocator-security-revisited/ CONFIRM https://github.com/ivmai/bdwgc/blob/master/ChangeLog CONFIRM https://github.com/ivmai/bdwgc/commit/6a93f8e5bcad22137f41b6c60a1c7384baaec2b3 CONFIRM https://github.com/ivmai/bdwgc/commit/83231d0ab5ed60015797c3d1ad9056295ac3b2bb CONFIRM https://github.com/ivmai/bdwgc/commit/be9df82919960214ee4b9d3313523bff44fd99e1 CONFIRM https://github.com/ivmai/bdwgc/commit/e10c1eb9908c2774c16b3148b30d2f3823d66a9a Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc functions in malloc.c, and the (3) GC_generic_malloc_ignore_off_page function in mallocx.c in Boehm-Demers-Weiser GC (libgc) before 7.2 make it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a large size value, which causes less memory to be allocated than expected.