|
|
Subscribe / Log in / New account

glibc: denial of service

Package(s):glibc CVE #(s):CVE-2016-6323
Created:August 22, 2016 Updated:October 20, 2016
Description: From the glibc bugzilla entry:

Since [__startcontext] transfers to a different stack it should be marked .cantunwind, so that the EABI unwinder does not try to unwind past it. This can cause _Unwind_Backtrace (used by backtrace_full in libbacktrace) to infloop.

also from Florian Weimer on oss-security:

Andreas Schwab of SuSE reported and fixed a glibc bug where the makecontext function would create an execution context which is incompatible with the unwinder, causing it to hang when the generation of a backtrace is attempted:

Alerts:
Fedora FEDORA-2016-b4c1b24a74 glibc-arm-linux-gnu 2016-10-19
Fedora FEDORA-2016-7e57edc4cc glibc-arm-linux-gnu 2016-10-19
openSUSE openSUSE-SU-2016:2443-1 glibc 2016-10-04
Fedora FEDORA-2016-87dde780b8 glibc 2016-09-02
Fedora FEDORA-2016-5f050a0a6d glibc 2016-08-19

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds