An integer overflow flaw, leading to a heap-based buffer overflow, was found in glibc's _IO_wstr_overflow() function. If an application used this function, it could cause the application to crash or, potentially, execute arbitrary code with the privileges of the user running the application.
Created glibc tracking bugs for this issue:
Affects: fedora-all [bug 1195763]
CVE request via:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2015:2199 https://rhn.redhat.com/errata/RHSA-2015-2199.html