CVE-2021-0348
NixOS vulnerability analysis and mitigation

Overview

CVE-2021-0348 is a security vulnerability discovered in glibc (GNU C Library). The vulnerability was identified and reported by Le Wu of Baidu Security, with disclosure occurring in February 2021 (Red Hat Portal).

Technical details

The vulnerability affects the glibc packages which provide standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd). Red Hat has rated this update as having a security impact of Moderate (Red Hat Portal).

Impact

The vulnerability affects multiple systems and software that rely on the glibc library. Without these libraries, the Linux system cannot function correctly. The impact is considered Moderate according to Red Hat's security classification (Red Hat Portal).

Mitigation and workarounds

Red Hat has released security updates to address this vulnerability. For the update to take effect, all services linked to the glibc library must be restarted, or the system rebooted. The fix is available through the glibc-2.17-322.el7_9 update package (Red Hat Portal).

Additional resources


SourceThis report was generated using AI

Related NixOS vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-91782LOW1.9
  • NixOS logoNixOS
  • binutils
NoYesSep 15, 2026
CVE-2026-91781LOW1.9
  • NixOS logoNixOS
  • binutils
NoYesSep 15, 2026
CVE-2026-91780LOW1.9
  • NixOS logoNixOS
  • binutils
NoNoSep 15, 2026
CVE-2026-91779LOW1.9
  • NixOS logoNixOS
  • binutils
NoNoSep 15, 2026
CVE-2026-90831LOW1.9
  • NixOS logoNixOS
  • gcc-toolset-15-binutils-devel
NoYesSep 14, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management