ELSA-2014-1391

ELSA-2014-1391 - glibc security, bug fix, and enhancement update

Type:SECURITY
Impact:MODERATE
Release Date:2014-10-15

Description


[2.12-1.149]
- Remove gconv transliteration loadable modules support (CVE-2014-5119,
- _nl_find_locale: Improve handling of crafted locale names (CVE-2014-0475,

[2.12-1.148]
- Switch gettimeofday from INTUSE to libc_hidden_proto (#1099025).

[2.12-1.147]
- Fix stack overflow due to large AF_INET6 requests (CVE-2013-4458, #1111460).
- Fix buffer overflow in readdir_r (CVE-2013-4237, #1111460).

[2.12-1.146]
- Fix memory order when reading libgcc handle (#905941).
- Fix format specifier in malloc_info output (#1027261).
- Fix nscd lookup for innetgr when netgroup has wildcards (#1054846).

[2.12-1.145]
- Add mmap usage to malloc_info output (#1027261).

[2.12-1.144]
- Use NSS_STATUS_TRYAGAIN to indicate insufficient buffer (#1087833).

[2.12-1.143]
- [ppc] Add VDSO IFUNC for gettimeofday (#1028285).
- [ppc] Fix ftime gettimeofday internal call returning bogus data (#1099025).

[2.12-1.142]
- Also relocate in dependency order when doing symbol dependency testing
(#1019916).

[2.12-1.141]
- Fix infinite loop in nscd when netgroup is empty (#1085273).
- Provide correct buffer length to netgroup queries in nscd (#1074342).
- Return NULL for wildcard values in getnetgrent from nscd (#1085289).
- Avoid overlapping addresses to stpcpy calls in nscd (#1082379).
- Initialize all of datahead structure in nscd (#1074353).

[2.12-1.140]
- Return EAI_AGAIN for AF_UNSPEC when herrno is TRY_AGAIN (#1044628).

[2.12-1.139]
- Do not fail if one of the two responses to AF_UNSPEC fails (#845218).

[2.12-1.138]
- nscd: Make SELinux checks dynamic (#1025933).

[2.12-1.137]
- Fix race in free() of fastbin chunk (#1027101).

[2.12-1.136]
- Fix copy relocations handling of unique objects (#1032628).

[2.12-1.135]
- Fix encoding name for IDN in getaddrinfo (#981942).

[2.12-1.134]
- Fix return code from getent netgroup when the netgroup is not found (#1039988).
- Fix handling of static TLS in dlopen'ed objects (#995972).

[2.12-1.133]
- Don't use alloca in addgetnetgrentX (#1043557).
- Adjust pointers to triplets in netgroup query data (#1043557).


Related CVEs


CVE-2013-4237
CVE-2013-4458

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 6 (i386) glibc-2.12-1.149.el6.src.rpme7a1ea8f19f432480b096835edcd78bff986c0850020401972845924a488e09eELBA-2022-9275ol6_i386_latest_archive
glibc-2.12-1.149.el6.src.rpme7a1ea8f19f432480b096835edcd78bff986c0850020401972845924a488e09eELBA-2022-9275ol6_u6_i386_base
glibc-2.12-1.149.el6.i686.rpmefb6b803ef18bd7805fb9d68e1e8334b2cba0388b9e585a1deefb9456d15d309ELBA-2022-9275ol6_i386_latest_archive
glibc-2.12-1.149.el6.i686.rpmefb6b803ef18bd7805fb9d68e1e8334b2cba0388b9e585a1deefb9456d15d309ELBA-2022-9275ol6_u6_i386_base
glibc-common-2.12-1.149.el6.i686.rpme85bcca9115efa63b6519b714786206f855c963d6ce2cccd69a19a81d54cbc24ELBA-2022-9275ol6_i386_latest_archive
glibc-common-2.12-1.149.el6.i686.rpme85bcca9115efa63b6519b714786206f855c963d6ce2cccd69a19a81d54cbc24ELBA-2022-9275ol6_u6_i386_base
glibc-devel-2.12-1.149.el6.i686.rpmc45fad181b585ba727349c3680f16787ebc73236edda59de0466d083ebf00c08ELBA-2022-9275ol6_i386_latest_archive
glibc-devel-2.12-1.149.el6.i686.rpmc45fad181b585ba727349c3680f16787ebc73236edda59de0466d083ebf00c08ELBA-2022-9275ol6_u6_i386_base
glibc-headers-2.12-1.149.el6.i686.rpmeefeca136f27bedec4c3429767c8866825952d21803d44f2ec1af72d23c2d518ELBA-2022-9275ol6_i386_latest_archive
glibc-headers-2.12-1.149.el6.i686.rpmeefeca136f27bedec4c3429767c8866825952d21803d44f2ec1af72d23c2d518ELBA-2022-9275ol6_u6_i386_base
glibc-static-2.12-1.149.el6.i686.rpme0c5ed4a592a584ddb74b1adbe9ddf1042b210914f7e3f3d38a37f8aa6e70539ELBA-2022-9275ol6_i386_latest_archive
glibc-static-2.12-1.149.el6.i686.rpme0c5ed4a592a584ddb74b1adbe9ddf1042b210914f7e3f3d38a37f8aa6e70539ELBA-2022-9275ol6_u6_i386_base
glibc-utils-2.12-1.149.el6.i686.rpm9203e48fc645f5b8e2c85d4965b543529127ed57f03db3e4275afbc8683c4998ELBA-2022-9275ol6_i386_latest_archive
glibc-utils-2.12-1.149.el6.i686.rpm9203e48fc645f5b8e2c85d4965b543529127ed57f03db3e4275afbc8683c4998ELBA-2022-9275ol6_u6_i386_base
nscd-2.12-1.149.el6.i686.rpm54020ebc2813f27ec603f22f6afc004677461acd42652bb7ea01c2662eeac5f7ELBA-2022-9275ol6_i386_latest_archive
nscd-2.12-1.149.el6.i686.rpm54020ebc2813f27ec603f22f6afc004677461acd42652bb7ea01c2662eeac5f7ELBA-2022-9275ol6_u6_i386_base
Oracle Linux 6 (x86_64) glibc-2.12-1.149.el6.src.rpme7a1ea8f19f432480b096835edcd78bff986c0850020401972845924a488e09eELBA-2022-9275ol6_u6_x86_64_base
glibc-2.12-1.149.el6.src.rpme7a1ea8f19f432480b096835edcd78bff986c0850020401972845924a488e09eELBA-2022-9275ol6_x86_64_latest_archive
glibc-2.12-1.149.el6.i686.rpmefb6b803ef18bd7805fb9d68e1e8334b2cba0388b9e585a1deefb9456d15d309ELBA-2022-9275exadata_dbserver_12.1.2.1.0_x86_64_base
glibc-2.12-1.149.el6.i686.rpmefb6b803ef18bd7805fb9d68e1e8334b2cba0388b9e585a1deefb9456d15d309ELBA-2022-9275ol6_u6_x86_64_base
glibc-2.12-1.149.el6.i686.rpmefb6b803ef18bd7805fb9d68e1e8334b2cba0388b9e585a1deefb9456d15d309ELBA-2022-9275ol6_x86_64_latest_archive
glibc-2.12-1.149.el6.x86_64.rpm242ee7d75ae21836fa0a90562e06d9cdf825b8b4a7436c3ef62ec46920586b98ELBA-2022-9275exadata_dbserver_12.1.2.1.0_x86_64_base
glibc-2.12-1.149.el6.x86_64.rpm242ee7d75ae21836fa0a90562e06d9cdf825b8b4a7436c3ef62ec46920586b98ELBA-2022-9275ol6_u6_x86_64_base
glibc-2.12-1.149.el6.x86_64.rpm242ee7d75ae21836fa0a90562e06d9cdf825b8b4a7436c3ef62ec46920586b98ELBA-2022-9275ol6_x86_64_latest_archive
glibc-common-2.12-1.149.el6.x86_64.rpm68dcce60a7acbe92d9035f73f2f670d82a51c69b6e89d316601fc900160ee232ELBA-2022-9275exadata_dbserver_12.1.2.1.0_x86_64_base
glibc-common-2.12-1.149.el6.x86_64.rpm68dcce60a7acbe92d9035f73f2f670d82a51c69b6e89d316601fc900160ee232ELBA-2022-9275ol6_u6_x86_64_base
glibc-common-2.12-1.149.el6.x86_64.rpm68dcce60a7acbe92d9035f73f2f670d82a51c69b6e89d316601fc900160ee232ELBA-2022-9275ol6_x86_64_latest_archive
glibc-devel-2.12-1.149.el6.i686.rpmc45fad181b585ba727349c3680f16787ebc73236edda59de0466d083ebf00c08ELBA-2022-9275exadata_dbserver_12.1.2.1.0_x86_64_base
glibc-devel-2.12-1.149.el6.i686.rpmc45fad181b585ba727349c3680f16787ebc73236edda59de0466d083ebf00c08ELBA-2022-9275ol6_u6_x86_64_base
glibc-devel-2.12-1.149.el6.i686.rpmc45fad181b585ba727349c3680f16787ebc73236edda59de0466d083ebf00c08ELBA-2022-9275ol6_x86_64_latest_archive
glibc-devel-2.12-1.149.el6.x86_64.rpm78b8db741bf5ea9842b622e3650c1a4018ad172646a7237a9a170f7c3458b291ELBA-2022-9275exadata_dbserver_12.1.2.1.0_x86_64_base
glibc-devel-2.12-1.149.el6.x86_64.rpm78b8db741bf5ea9842b622e3650c1a4018ad172646a7237a9a170f7c3458b291ELBA-2022-9275ol6_u6_x86_64_base
glibc-devel-2.12-1.149.el6.x86_64.rpm78b8db741bf5ea9842b622e3650c1a4018ad172646a7237a9a170f7c3458b291ELBA-2022-9275ol6_x86_64_latest_archive
glibc-headers-2.12-1.149.el6.x86_64.rpm5c5df5191c9b5da99c3c5b557926a2390cff6d174fd25313bd5634d1e6ef0181ELBA-2022-9275exadata_dbserver_12.1.2.1.0_x86_64_base
glibc-headers-2.12-1.149.el6.x86_64.rpm5c5df5191c9b5da99c3c5b557926a2390cff6d174fd25313bd5634d1e6ef0181ELBA-2022-9275ol6_u6_x86_64_base
glibc-headers-2.12-1.149.el6.x86_64.rpm5c5df5191c9b5da99c3c5b557926a2390cff6d174fd25313bd5634d1e6ef0181ELBA-2022-9275ol6_x86_64_latest_archive
glibc-static-2.12-1.149.el6.i686.rpme0c5ed4a592a584ddb74b1adbe9ddf1042b210914f7e3f3d38a37f8aa6e70539ELBA-2022-9275ol6_u6_x86_64_base
glibc-static-2.12-1.149.el6.i686.rpme0c5ed4a592a584ddb74b1adbe9ddf1042b210914f7e3f3d38a37f8aa6e70539ELBA-2022-9275ol6_x86_64_latest_archive
glibc-static-2.12-1.149.el6.x86_64.rpm364ec96428815f97de3ecab63c9c0a009871c4e1de4ad5396263fd423142116bELBA-2022-9275ol6_u6_x86_64_base
glibc-static-2.12-1.149.el6.x86_64.rpm364ec96428815f97de3ecab63c9c0a009871c4e1de4ad5396263fd423142116bELBA-2022-9275ol6_x86_64_latest_archive
glibc-utils-2.12-1.149.el6.x86_64.rpmb7b727c34b972ab37c789c54f3032e7d2caf9da2faec518d7e390c40ff7bb266ELBA-2022-9275ol6_u6_x86_64_base
glibc-utils-2.12-1.149.el6.x86_64.rpmb7b727c34b972ab37c789c54f3032e7d2caf9da2faec518d7e390c40ff7bb266ELBA-2022-9275ol6_x86_64_latest_archive
nscd-2.12-1.149.el6.x86_64.rpm425c2f49deda0f42e84723c6898134cbf568d4651f7331a1b21dac97e70ed7d5ELBA-2022-9275exadata_dbserver_12.1.2.1.0_x86_64_base
nscd-2.12-1.149.el6.x86_64.rpm425c2f49deda0f42e84723c6898134cbf568d4651f7331a1b21dac97e70ed7d5ELBA-2022-9275ol6_u6_x86_64_base
nscd-2.12-1.149.el6.x86_64.rpm425c2f49deda0f42e84723c6898134cbf568d4651f7331a1b21dac97e70ed7d5ELBA-2022-9275ol6_x86_64_latest_archive



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete