eglibc (2.17-0ubuntu5.1) raring-security; urgency=low
* SECURITY UPDATE: denial of service and possible code execution via
strcoll overflows
- debian/patches/any/CVE-2012-44xx.diff: fix overflows in
string/strcoll_l.c, add test to string/tst-strcoll-overflow.c,
string/Makefile.
- CVE-2012-4412
- CVE-2012-4424
* SECURITY UPDATE: denial of service in regular expression matcher
- debian/patches/any/CVE-2013-0242.diff: fix buffer overrun in
posix/regexec.c, add test to posix/bug-regex34.c, posix/Makefile.
- CVE-2013-0242
* SECURITY UPDATE: denial of service in getaddrinfo
- debian/patches/any/CVE-2013-1914.diff: fix overflow in
sysdeps/posix/getaddrinfo.c.
- CVE-2013-1914
* SECURITY UPDATE: denial of service and possible code execution via
readdir_r
- debian/patches/any/CVE-2013-4237.diff: enforce NAME_MAX limit in
sysdeps/posix/readdir_r.c, add errcode to sysdeps/posix/dirstream.h,
sysdeps/posix/opendir.c, sysdeps/posix/rewinddir.c, remove
GETDENTS_64BIT_ALIGNED from
sysdeps/unix/sysv/linux/i386/readdir64_r.c,
sysdeps/unix/sysv/linux/wordsize-64/readdir_r.c.
- CVE-2013-4237
* SECURITY UPDATE: denial of service and possible code execution via
overflows in memory allocator
- debian/patches/any/CVE-2013-4332.diff: check for overflows in
malloc/malloc.c.
- CVE-2013-4332
Date: 2013-09-30 12:42:20.533426+00:00
Changed-By: Marc Deslauriers <[email protected]>
Signed-By: Ubuntu Archive Robot
<[email protected]>
https://launchpad.net/ubuntu/raring/+source/eglibc/2.17-0ubuntu5.1
Sorry, changesfile not available.
--
Raring-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/raring-changes