CVE-2018-13420
Last modified
CVE-2018-13420 is a vulnerability of currently unknown severity. Google gperftools 2.7 has a memory leak in malloc_extension.cc, related to MallocExtension::Register and InitModule. NOTE: the software maintainer indicates that this is not a bug; it is only a false-positive report from the LeakSanitizer program. EPSS estimates a 1.53% chance of exploitation in the next 30 days.
Description
Google gperftools 2.7 has a memory leak in malloc_extension.cc, related to MallocExtension::Register and InitModule. NOTE: the software maintainer indicates that this is not a bug; it is only a false-positive report from the LeakSanitizer program
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Gperftools Project | Gperftools | 2.7 |
References
- https://github.com/gperftools/gperftools/issues/1013Third Party Advisory
- https://github.com/gperftools/gperftools/issues/1013Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-13420?
How severe is CVE-2018-13420?
How do I fix CVE-2018-13420?
Are you affected by CVE-2018-13420?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
