LWN.net Logo

glibc: multiple vulnerabilities

Package(s):glibc CVE #(s):CVE-2012-4412 CVE-2012-4424 CVE-2013-2207 CVE-2013-4237
Created:August 22, 2013 Updated:September 5, 2013
Description:

From the Fedora advisory:

CVE-2012-4412 glibc: strcoll() integer overflow leading to buffer overflow
CVE-2012-4424 glibc: alloca() stack overflow in the strcoll() interface
CVE-2013-2207 glibc (pt_chown): Improper pseudotty ownership and permissions changes when granting access to the slave pseudoterminal
CVE-2013-4237 glibc: Buffer overwrite when using readdir_r on file systems returning file names longer than NAME_MAX characters

Alerts:
Fedora FEDORA-2013-15053 2013-08-22
Fedora FEDORA-2013-15316 2013-08-27
Fedora FEDORA-2013-15072 2013-09-05
openSUSE openSUSE-SU-2013:1510-1 2013-09-30

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds