GHOST: glibc vulnerability affecting all variants of Red Hat Enterprise Linux

Red Hat Enterprise Linux

Red Hat Product Security has been made aware of a critical vulnerability in the glibc library, which has been assigned CVE-2015-0235 and is commonly referred to as ‘GHOST’. All versions of glibc shipped with all variants of Red Hat Enterprise Linux are affected.


GHOST is a ‘buffer overflow’ bug affecting the gethostbyname() and gethostbyname2() function calls in the glibc library. This vulnerability allows a remote attacker that is able to make an application call to either of these functions to execute arbitrary code with the permissions of the user running the application.


It is recommend to update the glibc and nscd packages on Linux systems to eliminate the possibility of an exploit. Read more at: Red Hat Knowledgebase