CVE-2017-12132: GNU Glibc
Medium severity, CVSS 5.9. EPSS: 2% chance of exploitation in the next 30 days.
The DNS stub resolver in the GNU C Library (aka glibc or libc6) before version 2.26, when EDNS support is enabled, will solicit large UDP responses from name servers, potentially simplifying off-path DNS spoofing attacks due to IP fragmentation.
Affected products
- GNU Glibc: up to and including 2.25
Published 2017-08-01. Last modified 2026-06-17.