[ubuntu/dapper-security] glibc, glibc (delayed) 2.3.6-0ubuntu20.6 (Accepted)

Ubuntu Installer archive at ubuntu.com
Tue May 25 21:05:49 BST 2010


glibc (2.3.6-0ubuntu20.6) dapper-security; urgency=low

  * SECURITY UPDATE: integer overflow in strfmon() might lead to arbitrary
    code execution.
    - debian/patches/any/git-strfmon-overflow.dpatch: backport from upstream.
    - CVE-2008-1391
  * SECURITY UPDATE: newlines not escaped in /etc/mtab.
    - debian/patches/any/git-mntent-newline-escape.dpatch: upstream fixes.
    - CVE-2010-0296
  * SECURITY UPDATE: arbitrary code execution from ELF headers (LP: #542197).
    - debian/patches/any/git-fix-dtag-cast.dpatch: upstream fixes.
    - CVE-2010-0830
  * debian/patches/any/git-readdir-padding.dpatch: fix readdir padding when
    processing getdents64() in a 32-bit execution environment (LP: #392501).

Date: Wed, 19 May 2010 16:59:53 -0700
Changed-By: Kees Cook <kees at ubuntu.com>
Maintainer: GNU Libc Maintainers <debian-glibc at lists.debian.org>
https://launchpad.net/ubuntu/dapper/+source/glibc/2.3.6-0ubuntu20.6
-------------- next part --------------
Format: 1.7
Date: Wed, 19 May 2010 16:59:53 -0700
Source: glibc
Binary: libc6-dev-amd64 libc6-i686 libc6-dev-ppc64 libc0.3-pic libc6-sparc64b glibc-doc libc6-sparcv9v libc1-udeb libc0.3 libc6.1-dev libc1-pic libc6-s390x libnss-files-udeb libc1-dbg libc6-dev-sparc64 libc6-i386 libc6-udeb libc0.3-dev libc6-dbg libc6.1-pic libc6-dev libc0.3-prof libc6-dev-i386 libc6.1-prof libc1 libc6-pic libc0.3-udeb libc1-prof libc6-ppc64 libc0.3-dbg zoneinfo-udeb libc6-amd64 libc6-prof libc6 libc6-sparcv9b libc6.1-udeb libc6.1-dbg nscd libc6-sparc64v libc6-sparc64 libnss-dns-udeb libc6.1 libc1-dev libc6-dev-s390x
Architecture: source
Version: 2.3.6-0ubuntu20.6
Distribution: dapper-security
Urgency: low
Maintainer: GNU Libc Maintainers <debian-glibc at lists.debian.org>
Changed-By: Kees Cook <kees at ubuntu.com>
Description: 
 glibc-doc  - GNU C Library: Documentation
 libc0.3    - GNU C Library: Shared libraries and Timezone data
 libc0.3-dbg - GNU C Library: Libraries with debugging symbols
 libc0.3-dev - GNU C Library: Development Libraries and Header Files
 libc0.3-pic - GNU C Library: PIC archive library
 libc0.3-prof - GNU C Library: Profiling Libraries
 libc0.3-udeb - GNU C Library: Shared libraries - udeb
 libc1      - GNU C Library: Shared libraries and Timezone data
 libc1-dbg  - GNU C Library: Libraries with debugging symbols
 libc1-dev  - GNU C Library: Development Libraries and Header Files
 libc1-pic  - GNU C Library: PIC archive library
 libc1-prof - GNU C Library: Profiling Libraries
 libc1-udeb - GNU C Library: Shared libraries - udeb
 libc6      - GNU C Library: Shared libraries and Timezone data
 libc6-amd64 - GNU C Library: 64bit Shared libraries for AMD64
 libc6-dbg  - GNU C Library: Libraries with debugging symbols
 libc6-dev  - GNU C Library: Development Libraries and Header Files
 libc6-dev-amd64 - GNU C Library: 64bit Development Libraries for AMD64
 libc6-dev-i386 - GNU C Library: 32bit Development Libraries for amd64
 libc6-dev-ppc64 - GNU C Library: 64bit Development Libraries for PowerPC
 libc6-dev-s390x - GNU C Library: 64bit Development Libraries for IBM zSeries
 libc6-dev-sparc64 - GNU C Library: 64bit Development Libraries for UltraSPARC
 libc6-i386 - GNU C Library: 32bit Shared libraries for amd64
 libc6-i686 - GNU C Library: Shared libraries [i686 optimized]
 libc6-pic  - GNU C Library: PIC archive library
 libc6-ppc64 - GNU C Library: 64bit Shared libraries for PowerPC
 libc6-prof - GNU C Library: Profiling Libraries
 libc6-s390x - GNU C Library: 64bit Shared libraries for IBM zSeries
 libc6-sparc64 - GNU C Library: 64bit Shared libraries for UltraSPARC
 libc6-sparc64b - GNU C Library: 64bit Shared libraries for UltraSPARC [v9b optimiz
 libc6-sparc64v - GNU C Library: 64bit Shared libraries for UltraSPARC [v9v optimiz
 libc6-sparcv9b - GNU C Library: Shared libraries [v9b optimized]
 libc6-sparcv9v - GNU C Library: Shared libraries [v9v optimized]
 libc6-udeb - GNU C Library: Shared libraries - udeb
 libc6.1    - GNU C Library: Shared libraries and Timezone data
 libc6.1-dbg - GNU C Library: Libraries with debugging symbols
 libc6.1-dev - GNU C Library: Development Libraries and Header Files
 libc6.1-pic - GNU C Library: PIC archive library
 libc6.1-prof - GNU C Library: Profiling Libraries
 libc6.1-udeb - GNU C Library: Shared libraries - udeb
 libnss-dns-udeb - GNU C Library: NSS helper for DNS - udeb
 libnss-files-udeb - GNU C Library: NSS helper for files - udeb
 nscd       - GNU C Library: Name Service Cache Daemon
 zoneinfo-udeb - GNU C Library: Time zone information tables - udeb
Changes: 
 glibc (2.3.6-0ubuntu20.6) dapper-security; urgency=low
 .
   * SECURITY UPDATE: integer overflow in strfmon() might lead to arbitrary
     code execution.
     - debian/patches/any/git-strfmon-overflow.dpatch: backport from upstream.
     - CVE-2008-1391
   * SECURITY UPDATE: newlines not escaped in /etc/mtab.
     - debian/patches/any/git-mntent-newline-escape.dpatch: upstream fixes.
     - CVE-2010-0296
   * SECURITY UPDATE: arbitrary code execution from ELF headers (LP: #542197).
     - debian/patches/any/git-fix-dtag-cast.dpatch: upstream fixes.
     - CVE-2010-0830
   * debian/patches/any/git-readdir-padding.dpatch: fix readdir padding when
     processing getdents64() in a 32-bit execution environment (LP: #392501).
Files: 
 fe2822fd0469e46f34783b1f9c7e5380 1979 libs required glibc_2.3.6-0ubuntu20.6.dsc
 a6a01bf279888c3d2b14dee810d96630 572994 libs required glibc_2.3.6-0ubuntu20.6.diff.gz
Package-Type: udeb


More information about the dapper-changes mailing list