CVE-2012-0864: GNU Glibc

Medium severity, CVSS 6.8. EPSS: 2.7% chance of exploitation in the next 30 days.

Integer overflow in the vfprintf function in stdio-common/vfprintf.c in glibc 2.14 and other versions allows context-dependent attackers to bypass the FORTIFY_SOURCE protection mechanism, conduct format string attacks, and write to arbitrary memory via a large number of arguments.

Affected products

  • GNU Glibc: version 2.14 only

Published 2013-05-02. Last modified 2026-06-16.