Race condition in libsafe 2.0.16 and earlier, when running in multi-threaded applications, allows attackers to bypass libsafe protection and exploit other vulnerabilities before the _libsafe_die function call is completed.
2005-05-02T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 5.1 (MEDIUM)
AV:N/AC:H/Au:N/C:P/I:P/A:P
4.9
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | avaya | libsafe | 2.0.1 | Yes |
Application | avaya | libsafe | 2.0.2 | Yes |
Application | avaya | libsafe | 2.0.3 | Yes |
Application | avaya | libsafe | 2.0.4 | Yes |
Application | avaya | libsafe | 2.0.5 | Yes |
Application | avaya | libsafe | 2.0.6 | Yes |
Application | avaya | libsafe | 2.0.7 | Yes |
Application | avaya | libsafe | 2.0.8 | Yes |
Application | avaya | libsafe | 2.0.9 | Yes |
Application | avaya | libsafe | 2.0.10 | Yes |
Application | avaya | libsafe | 2.0.11 | Yes |
Application | avaya | libsafe | 2.0.12 | Yes |
Application | avaya | libsafe | 2.0.13 | Yes |
Application | avaya | libsafe | 2.0.14 | Yes |
Application | avaya | libsafe | 2.0.15 | Yes |
Application | avaya | libsafe | 2.0.16 | Yes |