CVE-2015-8777: GNU Glibc

Medium severity, CVSS 5.5. EPSS: 0.6% chance of exploitation in the next 30 days.

The process_envvars function in elf/rtld.c in the GNU C Library (aka glibc or libc6) before 2.23 allows local users to bypass a pointer-guarding protection mechanism via a zero value of the LD_POINTER_GUARD environment variable.

Affected products

  • GNU Glibc: up to and including 2.22

Published 2016-01-20. Last modified 2026-06-17.