CVE-2015-0235
Exim GHOST (glibc gethostbyname) Buffer Overflow
Title source: metasploitDescription
Heap-based buffer overflow in the __nss_hostname_digits_dots function in glibc 2.2, and other 2.x versions before 2.18, allows context-dependent attackers to execute arbitrary code via vectors related to the (1) gethostbyname or (2) gethostbyname2 function, aka "GHOST."
Exploits (21)
exploitdb
WORKING POC
VERIFIED
by Qualys Corporation · rubyremotelinux
https://www.exploit-db.com/exploits/36421
nomisec
WORKING POC
6 stars
by makelinux · poc
https://github.com/makelinux/CVE-2015-0235-workaround
nomisec
WORKING POC
1 stars
by nickanderson · poc
https://github.com/nickanderson/cfengine-CVE_2015_0235
nomisec
WORKING POC
1 stars
by adherzog · poc
https://github.com/adherzog/ansible-CVE-2015-0235-GHOST
github
WORKING POC
by gitcollect · cpoc
https://github.com/gitcollect/CVE_Exploits/tree/master/cve-2015-0235
nomisec
WORKING POC
by koudaiii-archives · poc
https://github.com/koudaiii-archives/cookbook-update-glibc
metasploit
SCANNER
by Robert Rowley, Christophe De La Fuente, Chaim Sanders, Felipe Costa, Jonathan Claudius, Karl Sigler, Christian Mehlmauer · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/http/wordpress_ghost_scanner.rb
metasploit
WORKING POC
GREAT
by Unknown · rubypocunix
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/smtp/exim_gethostbyname_bof.rb
References (90)
... and 70 more
Scores
EPSS
0.8666
EPSS Percentile
99.4%
Details
CWE
CWE-787
Status
published
Products (31)
apple/mac_os_x
< 10.11.1
debian/debian_linux
7.0
debian/debian_linux
8.0
gnu/glibc
2.0 - 2.18
ibm/pureapplication_system
1.0.0.0
ibm/pureapplication_system
1.1.0.0
ibm/pureapplication_system
2.0.0.0
ibm/security_access_manager_for_enterprise_single_sign-on
8.2
oracle/communications_application_session_controller
< 3.7.1
oracle/communications_eagle_application_processor
16.0
... and 21 more
Published
Jan 28, 2015
Tracked Since
Feb 18, 2026