ELSA-2014-2023

ELSA-2014-2023 - glibc security and bug fix update

Type:SECURITY
Severity:MODERATE
Release Date:2014-12-18

Description


[2.17-55.0.4.el7_0.3]
- Remove strstr and strcasestr implementations using sse4.2 instructions.
- Upstream commits 584b18eb4df61ccd447db2dfe8c8a7901f8c8598 and
1818483b15d22016b0eae41d37ee91cc87b37510 backported. (Jose E. Marchesi)

[2.17-55.3]
- Fix wordexp() to honour WRDE_NOCMD (CVE-2014-7817, #1170118)

[2.17-55.2]
- ftell: seek to end only when there are unflushed bytes (#1170187).

[2.17-55.1]
- Remove gconv transliteration loadable modules support (CVE-2014-5119,
- _nl_find_locale: Improve handling of crafted locale names (CVE-2014-0475,


Related CVEs


CVE-2014-7817

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (x86_64) glibc-2.17-55.0.4.el7_0.3.src.rpme4aa3c596aaf153c8424b7b76f14e2ddELBA-2021-9262
glibc-2.17-55.0.4.el7_0.3.i686.rpmbdfe683e31e838ea735d3ad936dba364ELBA-2021-9262
glibc-2.17-55.0.4.el7_0.3.x86_64.rpmdb3cf6234cb6312d4fd9429fdd48eb96ELBA-2021-9262
glibc-common-2.17-55.0.4.el7_0.3.x86_64.rpmc0ef1df9a4aa3471ce2692522733f571ELBA-2021-9262
glibc-devel-2.17-55.0.4.el7_0.3.i686.rpm5c340020426ad27f5e4da04b39f0aae6ELBA-2021-9262
glibc-devel-2.17-55.0.4.el7_0.3.x86_64.rpm56217951269dbfdaf2e18ceeb937845eELBA-2021-9262
glibc-headers-2.17-55.0.4.el7_0.3.x86_64.rpmbf4b06f8d6f11c409cdcffe5eb40dbb4ELBA-2021-9262
glibc-static-2.17-55.0.4.el7_0.3.i686.rpm3fd9b76e17fef3b7719b90f0bf26e286ELBA-2021-9262
glibc-static-2.17-55.0.4.el7_0.3.x86_64.rpm8b5aa3ffe59293b62389c969bc202d0bELBA-2021-9262
glibc-utils-2.17-55.0.4.el7_0.3.x86_64.rpmd2e8c3c776ba32129511c40c64931bf6ELBA-2021-9262
nscd-2.17-55.0.4.el7_0.3.x86_64.rpmfffe8a667b36b16cfc1e4faed4a69741ELBA-2021-9262



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete