CVE-2010-4756
Published: January 22, 2024Last modified: July 22, 2025
Description
The glob implementation in the GNU C Library (aka glibc or libc6) allows remote authenticated users to cause a denial of service (CPU and memory consumption) via crafted glob expressions that do not match any pathnames, as demonstrated by glob expressions in STAT commands to an FTP daemon, a different vulnerability than CVE-2010-2632.
Notes
This is standard POSIX behavior provided by glibc.
Status
| Product | Release | Package | Status |
|---|---|---|---|
| Alpaquita Linux | 23 LTS | glibc | Not affected (2.37.0-r0) |
| Stream | glibc | Not affected (2.37.0-r0) | |
| Hardened Containers | 23 LTS | glibc | Not affected (2.37.0-r0) |
| Stream | glibc | Not affected (2.37.0-r0) |