CVE-2016-5417: GNU Glibc

High severity, CVSS 7.5. EPSS: 3.4% chance of exploitation in the next 30 days.

Memory leak in the __res_vinit function in the IPv6 name server management code in libresolv in GNU C Library (aka glibc or libc6) before 2.24 allows remote attackers to cause a denial of service (memory consumption) by leveraging partial initialization of internal resolver data structures.

Affected products

  • GNU Glibc: up to and including 2.23

Published 2017-02-17. Last modified 2026-06-17.