CVE-2017-12133: GNU Glibc

Medium severity, CVSS 5.9. EPSS: 2.4% chance of exploitation in the next 30 days.

Use-after-free vulnerability in the clntudp_call function in sunrpc/clnt_udp.c in the GNU C Library (aka glibc or libc6) before 2.26 allows remote attackers to have unspecified impact via vectors related to error path.

Affected products

  • GNU Glibc: up to and including 2.25

Published 2017-09-07. Last modified 2026-06-17.