Security update for glibc
Announcement ID: | SUSE-SU-2015:1844-1 |
---|---|
Rating: | moderate |
References: | |
Cross-References: | |
CVSS scores: |
|
Affected Products: |
|
An update that solves two vulnerabilities and has 11 security fixes can now be installed.
Description:
glibc was updated to fix bugs and security issues.
Security issues fixed:
- A buffer overflow in nss_dns was fixed that could lead to crashes. (CVE-2015-1781, bsc#927080, BZ #18287)
- A denial of service attack (out of memory) in the NSS files backend was fixed (CVE-2014-8121, bsc#918187, GLIBC BZ #18007)
Non security bugs fixed:
- Fix regression in threaded application malloc performance (bsc#915955, GLIBC#17195)
- Fix read past end of pattern in fnmatch (bsc#920338, GLIBC#17062, GLIBC#18032, GLIBC#18036)
- Record TTL also for DNS PTR queries (bsc#928723, GLIBC#18513)
- Increase MINSIGSTKSZ and SIGSTKSZ for aarch64 (bsc#931480, GLIBC#16850)
- Fix handling of IPv6 nameservers (bsc#939211, GLIBC#13028, GLIBC#17053)
- Avoid use of asm/ptrace.h (bsc#934084)
- Do not corrupt the top of a threaded heap if top chunk is MINSIZE (GLIBC#18502)
- Terminate unwinding after makecontext_ret on s390 (bsc#940332. bsc#944494, GLIBC#18508)
- Restore signal mask in set/swapcontext on s390 (bsc#940195, bsc#944494, GLIBC#18080)
- fix dlopen in static binaries (bsc#937853, GLIBC#17250)
- Properly reread entry after failure in nss_files getent function (bsc#945779, BZ #18991)
Features added:
- AVX512 support (fate#318844)
- Add compatibility symlinks for LSB 3.0 (fate#318933)
Patch Instructions:
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
-
SUSE Linux Enterprise Desktop 12
zypper in -t patch SUSE-SLE-DESKTOP-12-2015-764=1
-
SUSE Linux Enterprise Software Development Kit 12
zypper in -t patch SUSE-SLE-SDK-12-2015-764=1
-
SUSE Linux Enterprise Server 12
zypper in -t patch SUSE-SLE-SERVER-12-2015-764=1
-
SUSE Linux Enterprise Server for SAP Applications 12
zypper in -t patch SUSE-SLE-SERVER-12-2015-764=1
Package List:
-
SUSE Linux Enterprise Desktop 12 (nosrc x86_64)
- glibc-2.19-22.7.1
-
SUSE Linux Enterprise Desktop 12 (x86_64)
- glibc-locale-32bit-2.19-22.7.1
- nscd-2.19-22.7.1
- glibc-32bit-2.19-22.7.1
- glibc-debuginfo-32bit-2.19-22.7.1
- glibc-locale-debuginfo-32bit-2.19-22.7.1
- glibc-locale-2.19-22.7.1
- glibc-debugsource-2.19-22.7.1
- glibc-devel-2.19-22.7.1
- glibc-devel-debuginfo-2.19-22.7.1
- glibc-locale-debuginfo-2.19-22.7.1
- glibc-devel-debuginfo-32bit-2.19-22.7.1
- nscd-debuginfo-2.19-22.7.1
- glibc-devel-32bit-2.19-22.7.1
- glibc-debuginfo-2.19-22.7.1
-
SUSE Linux Enterprise Desktop 12 (noarch)
- glibc-i18ndata-2.19-22.7.1
-
SUSE Linux Enterprise Software Development Kit 12 (ppc64le s390x x86_64)
- glibc-devel-static-2.19-22.7.1
- glibc-debugsource-2.19-22.7.1
- glibc-debuginfo-2.19-22.7.1
-
SUSE Linux Enterprise Server 12 (nosrc ppc64le s390x x86_64)
- glibc-2.19-22.7.1
-
SUSE Linux Enterprise Server 12 (ppc64le s390x x86_64)
- nscd-2.19-22.7.1
- glibc-locale-2.19-22.7.1
- glibc-debugsource-2.19-22.7.1
- glibc-devel-2.19-22.7.1
- glibc-devel-debuginfo-2.19-22.7.1
- glibc-locale-debuginfo-2.19-22.7.1
- glibc-profile-2.19-22.7.1
- nscd-debuginfo-2.19-22.7.1
- glibc-debuginfo-2.19-22.7.1
-
SUSE Linux Enterprise Server 12 (noarch)
- glibc-info-2.19-22.7.1
- glibc-html-2.19-22.7.1
- glibc-i18ndata-2.19-22.7.1
-
SUSE Linux Enterprise Server 12 (s390x x86_64)
- glibc-locale-32bit-2.19-22.7.1
- glibc-32bit-2.19-22.7.1
- glibc-locale-debuginfo-32bit-2.19-22.7.1
- glibc-debuginfo-32bit-2.19-22.7.1
- glibc-profile-32bit-2.19-22.7.1
- glibc-devel-debuginfo-32bit-2.19-22.7.1
- glibc-devel-32bit-2.19-22.7.1
-
SUSE Linux Enterprise Server for SAP Applications 12 (nosrc x86_64)
- glibc-2.19-22.7.1
-
SUSE Linux Enterprise Server for SAP Applications 12 (x86_64)
- glibc-locale-32bit-2.19-22.7.1
- nscd-2.19-22.7.1
- glibc-32bit-2.19-22.7.1
- glibc-debuginfo-32bit-2.19-22.7.1
- glibc-locale-debuginfo-32bit-2.19-22.7.1
- glibc-locale-2.19-22.7.1
- glibc-debugsource-2.19-22.7.1
- glibc-devel-2.19-22.7.1
- glibc-devel-debuginfo-2.19-22.7.1
- glibc-locale-debuginfo-2.19-22.7.1
- glibc-profile-32bit-2.19-22.7.1
- glibc-profile-2.19-22.7.1
- glibc-devel-debuginfo-32bit-2.19-22.7.1
- nscd-debuginfo-2.19-22.7.1
- glibc-devel-32bit-2.19-22.7.1
- glibc-debuginfo-2.19-22.7.1
-
SUSE Linux Enterprise Server for SAP Applications 12 (noarch)
- glibc-info-2.19-22.7.1
- glibc-html-2.19-22.7.1
- glibc-i18ndata-2.19-22.7.1
References:
- https://www.suse.com/security/cve/CVE-2014-8121.html
- https://www.suse.com/security/cve/CVE-2015-1781.html
- https://bugzilla.suse.com/show_bug.cgi?id=915955
- https://bugzilla.suse.com/show_bug.cgi?id=918187
- https://bugzilla.suse.com/show_bug.cgi?id=920338
- https://bugzilla.suse.com/show_bug.cgi?id=927080
- https://bugzilla.suse.com/show_bug.cgi?id=928723
- https://bugzilla.suse.com/show_bug.cgi?id=931480
- https://bugzilla.suse.com/show_bug.cgi?id=934084
- https://bugzilla.suse.com/show_bug.cgi?id=937853
- https://bugzilla.suse.com/show_bug.cgi?id=939211
- https://bugzilla.suse.com/show_bug.cgi?id=940195
- https://bugzilla.suse.com/show_bug.cgi?id=940332
- https://bugzilla.suse.com/show_bug.cgi?id=944494
- https://bugzilla.suse.com/show_bug.cgi?id=945779