#4799: glibc-2.33
--------------------+-----------------------
 Reporter:  bdubbs  |       Owner:  lfs-book
     Type:  task    |      Status:  closed
 Priority:  high    |   Milestone:  10.1
Component:  Book    |     Version:  SVN
 Severity:  normal  |  Resolution:  fixed
 Keywords:          |
--------------------+-----------------------
Changes (by ken@…):

 * priority:  normal => high


Comment:

 Belatedly flagging as High as a reminder to create a security advisory.

 Of the CVEs noted, CVE-2019-25013 and CVE-2020-29562 are listed as Medium
 at NVD, CVE-2020-27618 not found at NVD ('reserved' at mitre),
 CVE-2021-3326 undergoing analysis at NVD.

 I assume that for most, if not all, LFS and BLFS users these will not be
 overly relevant since the only safe way to update glibc is to build a new
 system (although pulling out the patches, rebuilding, and then rebooting
 with unclean shutdown has been used in the past).

--
Ticket URL: <http://wiki.linuxfromscratch.org/lfs/ticket/4799#comment:3>
LFS Trac <http://wiki.linuxfromscratch.org/lfs/>
Linux From Scratch: Your Distro, Your Rules.
-- 
http://lists.linuxfromscratch.org/listinfo/lfs-book
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page

Reply via email to