Updated glibc packages are available to fix an overflowable buffer
and for 7.x to fix a couple of non-security related bugs.
An overflowable buffer exists in earlier versions of glibc glob(3)
implementation. It may be possible to
exploit programs that pass user modifiable input to the glibc glob
function.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2001-0886 to this issue.
This errata also fixes a couple of non-security related bugs
in glibc packages for Red Hat Linux 7.x.
There was a bug in the dynamic linker which caused DT_RUNPATH dynamic
tags (e.g. created by GNU ld with --enable-new-dtags -rpath DIR options)
to behave the same way as mere DT_RPATH tag, ie. search paths in it
couldn't be overridden by LD_LIBRARY_PATH environment variable;
this is fixed in the updated packages, as well as a strndup bug
when strndup was used with string literal argument and a typo in
<inttypes.h> header.
It is recommended that all users upgrade to provided packages.
We'd like to thank Flavio Veloso <flaviovs@magnux.com> for discovering
this buffer overflow problem.
| Red Hat Linux 6.2 |
|
| SRPMS: |
glibc-2.1.3-23.src.rpm
File outdated by: RHSA-2002:197 |
c357416249d75bdc045f6a0bd375d38e |
| |
| Alpha: |
glibc-2.1.3-23.alpha.rpm
File outdated by: RHSA-2002:197 |
1488ff1e3bd4505ebad71e9eadc6cfe3 |
glibc-devel-2.1.3-23.alpha.rpm
File outdated by: RHSA-2002:197 |
ccf5c9dd4c68eaae2f7661bce814a686 |
glibc-profile-2.1.3-23.alpha.rpm
File outdated by: RHSA-2002:197 |
87e6ba6d7600a3b3fd35e106745fa788 |
nscd-2.1.3-23.alpha.rpm
File outdated by: RHSA-2002:197 |
a8679c548f4de4c413720b88231b79ea |
| |
| IA-32: |
glibc-2.1.3-23.i386.rpm
File outdated by: RHSA-2003:089 |
3e8cba807ffdce5579114bb2f3fbbdfd |
glibc-devel-2.1.3-23.i386.rpm
File outdated by: RHSA-2003:089 |
aa3c90d7d4cedfd4ebf45a44312fd3a2 |
glibc-profile-2.1.3-23.i386.rpm
File outdated by: RHSA-2003:089 |
07197b46d6f567131b43330bcc59b28f |
nscd-2.1.3-23.i386.rpm
File outdated by: RHSA-2003:089 |
ec8527e6b9924ce9e8a5824d1983a606 |
| |
| Sparc: |
glibc-2.1.3-23.sparc.rpm
File outdated by: RHSA-2002:197 |
6e3523c567b724d6875b05d48a8781e1 |
glibc-2.1.3-23.sparcv9.rpm
File outdated by: RHSA-2002:197 |
907c6bdf5a8dd1c4f2803f6d8f3a0ae3 |
glibc-devel-2.1.3-23.sparc.rpm
File outdated by: RHSA-2002:197 |
9435475af4f944accc5c33119f4bebe1 |
glibc-profile-2.1.3-23.sparc.rpm
File outdated by: RHSA-2002:197 |
b12cb08aaed71abab6c8b8eaa2b41072 |
nscd-2.1.3-23.sparc.rpm
File outdated by: RHSA-2002:197 |
b124928f89fb1a46cff833056d44dd79 |
| |
| Red Hat Linux 7.0 |
|
| SRPMS: |
glibc-2.2.4-18.7.0.3.src.rpm
File outdated by: RHSA-2003:089 |
ae84cff41c783ea0b75f083870a756f4 |
| |
| Alpha: |
glibc-2.2.4-18.7.0.3.alpha.rpm
File outdated by: RHSA-2002:197 |
f1c2cca381e329afcb9f580b3b889363 |
glibc-2.2.4-18.7.0.3.alphaev6.rpm
File outdated by: RHSA-2002:197 |
dcbfacca113f7ea4d3d7c75baac8d0fb |
glibc-common-2.2.4-18.7.0.3.alpha.rpm
File outdated by: RHSA-2002:197 |
2076d9b49459b1b9d51a71ca6c1f7f6a |
glibc-devel-2.2.4-18.7.0.3.alpha.rpm
File outdated by: RHSA-2002:197 |
f375a5b1b44110fb0fee04b69b6f2c63 |
glibc-profile-2.2.4-18.7.0.3.alpha.rpm
File outdated by: RHSA-2002:197 |
8f2430025f19cec38df29f673cd9b7bb |
nscd-2.2.4-18.7.0.3.alpha.rpm
File outdated by: RHSA-2002:197 |
1bfd015bc33811a1c6ad08f57d1bac29 |
| |
| IA-32: |
glibc-2.2.4-18.7.0.3.i386.rpm
File outdated by: RHSA-2003:089 |
05bb9c3de55e04b8fca48d3508c99d03 |
glibc-2.2.4-18.7.0.3.i686.rpm
File outdated by: RHSA-2003:089 |
2cda97a74018abad487b749923607cee |
glibc-common-2.2.4-18.7.0.3.i386.rpm
File outdated by: RHSA-2003:089 |
b4269c4c1c5e48166068a691cd0fd968 |
glibc-devel-2.2.4-18.7.0.3.i386.rpm
File outdated by: RHSA-2003:089 |
e46be81d1912d78ea5a1e9db63623fe6 |
glibc-profile-2.2.4-18.7.0.3.i386.rpm
File outdated by: RHSA-2003:089 |
fedfe5e3d2cdbeef9eb616fbe215cb96 |
nscd-2.2.4-18.7.0.3.i386.rpm
File outdated by: RHSA-2003:089 |
dff1ecb55acef7be12cffa5c45b725b1 |
| |
| Red Hat Linux 7.1 |
|
| SRPMS: |
glibc-2.2.4-19.3.src.rpm
File outdated by: RHSA-2003:325 |
1ab748bd3fe04702751b7633b98a315d |
| |
| Alpha: |
glibc-2.2.4-19.3.alpha.rpm
File outdated by: RHSA-2002:197 |
3e2faca6f40e6167f88eea85eac58940 |
glibc-2.2.4-19.3.alphaev6.rpm
File outdated by: RHSA-2002:197 |
0c74520246ae0f5b1ccacfcd65223feb |
glibc-common-2.2.4-19.3.alpha.rpm
File outdated by: RHSA-2002:197 |
56538cf7a756228a90f25abd85774228 |
glibc-devel-2.2.4-19.3.alpha.rpm
File outdated by: RHSA-2002:197 |
b5a3914236dc76181d4f1b417fcb08f2 |
glibc-profile-2.2.4-19.3.alpha.rpm
File outdated by: RHSA-2002:197 |
11ddc075098bd3cd3953d86658250620 |
nscd-2.2.4-19.3.alpha.rpm
File outdated by: RHSA-2002:197 |
b4c02b68cf7a98376707e11a665e8057 |
| |
| IA-32: |
glibc-2.2.4-19.3.i386.rpm
File outdated by: RHSA-2003:325 |
9ece40bc4b5a2fb8734c7807b28b86a4 |
glibc-2.2.4-19.3.i686.rpm
File outdated by: RHSA-2003:325 |
1dfabf932afb04048d12622e6fc6859f |
glibc-common-2.2.4-19.3.i386.rpm
File outdated by: RHSA-2003:325 |
8b9c9635214c475b6fd6c7e5dab3d3c0 |
glibc-devel-2.2.4-19.3.i386.rpm
File outdated by: RHSA-2003:325 |
78ddc49ad3cbb1f769d61f2357466d8d |
glibc-profile-2.2.4-19.3.i386.rpm
File outdated by: RHSA-2003:325 |
e53b1f547dd67c86aa2cf969f54ff015 |
nscd-2.2.4-19.3.i386.rpm
File outdated by: RHSA-2003:325 |
ce89d05dad8b1278d3a753676b96e5aa |
| |
| IA-64: |
glibc-2.2.4-19.3.ia64.rpm
File outdated by: RHSA-2002:197 |
24cb3c3be8b8b50c709f5dfd593f2b0a |
glibc-common-2.2.4-19.3.ia64.rpm
File outdated by: RHSA-2002:197 |
330ec0f05b6d2e83c4c57dcad9c513de |
glibc-devel-2.2.4-19.3.ia64.rpm
File outdated by: RHSA-2002:197 |
5bf8a4da1d8e34b79c4bdc953d610467 |
glibc-profile-2.2.4-19.3.ia64.rpm
File outdated by: RHSA-2002:197 |
5163bf8fa2897e653c93a9234a0d39b8 |
nscd-2.2.4-19.3.ia64.rpm
File outdated by: RHSA-2002:197 |
64a273fa127fbd09f7f3a30b00390972 |
| |
| Red Hat Linux 7.2 |
|
| SRPMS: |
glibc-2.2.4-19.3.src.rpm
File outdated by: RHSA-2003:325 |
1ab748bd3fe04702751b7633b98a315d |
| |
| IA-32: |
glibc-2.2.4-19.3.i386.rpm
File outdated by: RHSA-2003:325 |
9ece40bc4b5a2fb8734c7807b28b86a4 |
glibc-2.2.4-19.3.i686.rpm
File outdated by: RHSA-2003:325 |
1dfabf932afb04048d12622e6fc6859f |
glibc-common-2.2.4-19.3.i386.rpm
File outdated by: RHSA-2003:325 |
8b9c9635214c475b6fd6c7e5dab3d3c0 |
glibc-devel-2.2.4-19.3.i386.rpm
File outdated by: RHSA-2003:325 |
78ddc49ad3cbb1f769d61f2357466d8d |
glibc-profile-2.2.4-19.3.i386.rpm
File outdated by: RHSA-2003:325 |
e53b1f547dd67c86aa2cf969f54ff015 |
nscd-2.2.4-19.3.i386.rpm
File outdated by: RHSA-2003:325 |
ce89d05dad8b1278d3a753676b96e5aa |
| |
55865 - LD_LIBRARY_PATH / rpath interaction
57268 - syntax error in inttypes.h with 2.2.4-19 update