View previous topic :: View next topic |
Author |
Message |
GLSA Advocate

Joined: 12 May 2004 Posts: 2663
|
Posted: Sun Mar 08, 2015 4:26 pm Post subject: [ GLSA 201503-04 ] GNU C Library |
|
|
Gentoo Linux Security Advisory
Title: GNU C Library: Multiple vulnerabilities (GLSA 201503-04)
Severity: normal
Exploitable: remote
Date: March 08, 2015
Bug(s): #431218, #434408, #454862, #464634, #477330, #480734, #484646, #488084, #489234, #501196, #513090, #521930, #537990
ID: 201503-04
Synopsis
Multiple vulnerabilities have been found in GNU C Library, the
worst of which allowing a local attacker to execute arbitrary code or cause
a Denial of Service .
Background
The GNU C library is the standard C library used by Gentoo Linux
systems.
Affected Packages
Package: sys-libs/glibc
Vulnerable: < 2.19-r1
Unaffected: >= 2.19-r1
Architectures: All supported architectures
Description
Multiple vulnerabilities have been discovered in the GNU C Library.
Please review the CVE identifiers referenced below for details.
Impact
A local attacker may be able to execute arbitrary code or cause a Denial
of Service condition,.
Workaround
There is no known workaround at this time.
Resolution
All glibc users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=sys-libs/glibc-2.19-r1"
|
References
CVE-2012-3404
CVE-2012-3405
CVE-2012-3406
CVE-2012-3480
CVE-2012-4412
CVE-2012-4424
CVE-2012-6656
CVE-2013-0242
CVE-2013-1914
CVE-2013-2207
CVE-2013-4237
CVE-2013-4332
CVE-2013-4458
CVE-2013-4788
CVE-2014-4043
CVE-2015-0235
Last edited by GLSA on Thu Jun 18, 2015 4:17 am; edited 1 time in total |
|
Back to top |
|
 |
|
|
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
|