CVE-2016-6323: Fedoraproject Fedora

High severity, CVSS 7.5. EPSS: 3.8% chance of exploitation in the next 30 days.

The makecontext function in the GNU C Library (aka glibc or libc6) before 2.25 creates execution contexts incompatible with the unwinder on ARM EABI (32-bit) platforms, which might allow context-dependent attackers to cause a denial of service (hang), as demonstrated by applications compiled using gccgo, related to backtrace generation.

Affected products

  • Fedoraproject Fedora: version 23 only; version 24 only; version 25 only
  • GNU Glibc: up to and including 2.24
  • Opensuse Opensuse: version 13.2 only

Published 2016-10-07. Last modified 2026-06-17.