Am 28.01.2015 um 07:18 schrieb Benny Pedersen:
On 28. jan. 2015 06.50.31 Peter <[email protected]> wrote:
Honestly, I don't know if postfix uses that function or not, but if
postfix isn't vulnerable then you almost certainly have some other
program on your box that is. I would recommend that you update glibc
without delay regardless.
bug is resolved in glibc 2.18, and possible other distros with lots of
backports, in gentoo its glibc 2.19 stable, note update glibc can not be
reversed in terms of version numbers, so be sure to ask maintainers first
all serious distributions have a newer glibc or offer updates
Jan 28 05:41:58 Updated: glibc-common-2.5-123.el5_11.1.x86_64
Jan 28 05:42:03 Updated: glibc-2.5-123.el5_11.1.x86_64