[klibc] FW: ICS-VU-393924 New Vulnerability

GRP-CSOC csoc at inl.gov
Thu Jan 7 10:28:23 PST 2021


Hello,

I hope you are well.

We have been attempting to contact someone who would be in charge of product security for the following reason:

My name is Jeremiah Stoddard. I am a cybersecurity analyst for DHS-CISA.

I am contacting you to alert you of a vulnerability has been found that affects the Linux Foundation klibc (2.0.8) product.

I have attached a .PDF document that discusses the vulnerability.

Please acknowledge receipt.

Regards,



Jeremiah Stoddard
Industrial Control Systems Vulnerability Management and Coordination (ICS-VMC)
Cybersecurity and Infrastructure Security Agency (CISA)
US Department of Homeland Security (DHS)
Web: https://www.us-cert.gov/ics<https://gcc01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.us-cert.gov%2Fics&data=02%7C01%7CJeremiah.Stoddard%40inl.gov%7C1f779f0bb8f848cb922708d859444894%7C4cf464b7869a42368da2a98566485554%7C0%7C0%7C637357497100203690&sdata=NxBsJ8iCv6LN23sZHspBabfQilS4VKv%2FotfVbQIvcRs%3D&reserved=0>
Phone: 208-526-0900, 877-776-7585
Email: ics-cert at hq.dhs.gov<mailto:ics-cert at hq.dhs.gov>,  csoc at inl.gov<mailto:csoc at inl.gov>

From: GRP-CSOC
Sent: Wednesday, December 16, 2020 4:21 PM
To: security at linuxfoundation.org
Cc: GRP-CSOC <csoc at inl.gov>; ics-cert at hq.dhs.gov
Subject: ICS-VU-393924 New Vulnerability

Hello,

I hope you are well.

My name is Jeremiah Stoddard. I am a cybersecurity analyst for DHS-CISA.

I am contacting you to alert you of a vulnerability has been found that affects the Linux Foundation klibc (2.0.8) product.

I have attached a .PDF document that discusses the vulnerability.

Please acknowledge receipt.

Thank you.

Regards,




Jeremiah Stoddard
Industrial Control Systems Vulnerability Management and Coordination (ICS-VMC)
Cybersecurity and Infrastructure Security Agency (CISA)
US Department of Homeland Security (DHS)
Web: https://www.us-cert.gov/ics
Phone: 208-526-0900, 877-776-7585
Email: ics-cert at hq.dhs.gov<mailto:ics-cert at hq.dhs.gov>,  csoc at inl.gov<mailto:csoc at inl.gov>

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.zytor.com/archives/klibc/attachments/20210107/85b17e35/attachment-0001.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: Linux klibc.pdf
Type: application/pdf
Size: 528359 bytes
Desc: Linux klibc.pdf
URL: <https://lists.zytor.com/archives/klibc/attachments/20210107/85b17e35/attachment-0001.pdf>


More information about the klibc mailing list