AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-7476

CRITICAL · CVSS 9.8 EPSS 3.65%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-05-02 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. See the original NVD description below for full technical details.

CVE
CVE-2017-7476
Severity
CRITICAL
CVSS
9.8
EPSS
3.65%

Original NVD Description

Gnulib before 2017-04-26 has a heap-based buffer overflow with the TZ environment variable. The error is in the save_abbr function in time_rz.c.