An attacker can exploit this issue to execute arbitrary shell commands in the context of the application that uses the vulnerable library.
Versions prior to klibc 1.5.22 are vulnerable.
Vendor Status:
Currently we are not aware of any vendor-supplied patches