~ubuntu-branches/ubuntu/trusty/eglibc/trusty-proposed

Viewing all changes in revision 346.

  • Committer: Package Import Robot
  • Author(s): Marc Deslauriers
  • Date: 2015-02-25 09:04:10 UTC
  • mfrom: (337.1.8 trusty-proposed)
  • Revision ID: package-import@ubuntu.com-20150225090410-oj67k6xhsh0w91ls
Tags: 2.19-0ubuntu6.6
* SECURITY UPDATE: getaddrinfo writes to random file descriptors under
  high load
  - debian/patches/any/cvs-resolv-reuse-fd.diff: reload file descriptor
    after calling reopen in resolv/res_send.c.
  - CVE-2013-7423
* SECURITY UPDATE: denial of service via endless loop in getaddr_r
  - debian/patches/any/cvs-getnetbyname.diff: iterate over alias names in
    resolv/nss_dns/dns-network.c.
  - CVE-2014-9402
* SECURITY UPDATE: buffer overflow in wscanf
  - debian/patches/any/cvs-wscanf.diff: calculate correct size in
    stdio-common/vfscanf.c, added test to stdio-common/tst-sscanf.c.
  - CVE-2015-1472
  - CVE-2015-1473

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: