Glibc

Vendor:

First CVE: May 3, 2000 · Active for 26 years

168
Total CVEs
More Total CVEs than 99% of tracked products
7.6
Avg CVEs / Year
Higher CVE frequency than 93% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 36% of tracked products
0.6%
KEV Rate
Higher KEV Rate than 96% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Glibc over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 3, 2000
26 years ago
Most Recent CVE
Apr 28, 2026
86 days ago

CVE Severity & Scoring

Glibc168 CVEs
All CVEs352,101 CVEs
LowMediumHighCritical
Attack Vector
Local29 (17.3%)
Network76 (45.2%)
Unknown62 (36.9%)
Physical0 (0.0%)
Adjacent Network1 (0.6%)
Attack Complexity
Low79 (47.0%)
High27 (16.1%)
Unknown62 (36.9%)
User Interaction
None99 (58.9%)
Unknown62 (36.9%)
Required6 (3.6%)
Privileges Required
Low20 (11.9%)
High0 (0.0%)
None86 (51.2%)
Unknown62 (36.9%)

Top CVEs

Signals from CVEs in this product scope (168 CVEs).

168 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
A buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environment variable. This issue could allow a local attacker to us
Oct 3, 20237.898YESYES
Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code
Jan 28, 201510.092NOYES
The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT charac
Apr 17, 20247.387NOYES
Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc or libc6) before 2.23 allow remote attac
Feb 18, 20168.183NOYES
Stack consumption vulnerability in the regcomp implementation in the GNU C Library (aka glibc or libc6) through 2.11.3, and 2.12.x through 2.12.2, allows context-dependent attacker
Jan 13, 20115.055NOYES
In glibc 2.26 and earlier there is confusion in the usage of getcwd() by realpath() which can be used to write before the destination buffer leading to a buffer underflow and poten
Jan 31, 20187.852NOYES
The regcomp implementation in the GNU C Library (aka glibc or libc6) through 2.11.3, and 2.12.x through 2.12.2, allows context-dependent attackers to cause a denial of service (app
Jan 13, 20115.050NOYES
ld.so in the GNU C Library (aka glibc or libc6) before 2.11.3, and 2.12.x before 2.12.2, does not properly restrict use of the LD_AUDIT environment variable to reference dynamic sh
Jan 7, 20117.248NOYES
elf/dl-load.c in ld.so in the GNU C Library (aka glibc or libc6) through 2.11.2, and 2.12.x through 2.12.1, does not properly handle a value of $ORIGIN for the LD_AUDIT environment
Jan 7, 20116.946NOYES
Off-by-one error in the __gconv_translit_find function in gconv_trans.c in GNU C Library (aka glibc) allows context-dependent attackers to cause a denial of service (crash) or exec
Aug 29, 20147.545NOYES

Exploit Exposure

Signals from CVEs in this product scope (168 CVEs).

CISA KEV
1 CVE
0.6% of CVEs· 96th percentile
Metasploit
6 CVEs
3.6% of CVEs· 96th percentile
Nuclei
3 CVEs
1.8% of CVEs· 96th percentile
ExploitDB
22 CVEs
13.1% of CVEs· 89th percentile

Social Chatter

Signals from CVEs in this product scope (168 CVEs).

Media Mentions

Signals from CVEs in this product scope (168 CVEs).

Top CNAs Publishing CVEs For Glibc

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
2.9125.712.3%05
2.8125.45.0%04
2.7135.54.8%04
2.6.1125.45.0%04
2.6125.45.0%04
2.5-49.el5_5.616.90.8%01
2.5.1125.45.0%04
2.5145.64.6%05
2.4135.45.5%05
2.3719.81.4%00
2.3.6125.45.0%04
2.3615.31.6%00
2.3.5125.45.0%04
2.3.4154.74.0%04
2.3417.53.1%00
2.3.3154.74.0%04
2.3327.82.2%00
2.3.2174.94.5%04
2.3219.82.9%00
2.3.10134.94.3%04