[Bug 1585614] Re: PHP Update on 2016-05-25 causes Apache not to restart, libm.so.6: symbol __strtold_nan, version GLIBC_PRIVATE not defined in file libc.so.6 with link time reference

Steve Beattie sbeattie at ubuntu.com
Wed May 25 23:28:06 UTC 2016


Yes, my apologies, the upstream libc fixes for CVE-2014-9761 did some
reworking of functions to eliminate some repeated vulnerable code, using
internal functions to do the work instead. Unfortunately, this did
introduce new function references between libc and libm, causing the
problems seen above. Unfortunately, these changes were applied to libc
in Ubuntu 14.04 LTS and Ubuntu 15.10 as well, so I'm surprised the same
problem was not seen there, too. There was no update for Ubuntu 16.04
LTS, so no issues should be seen there.

Joi: yes, the reboot motd notification was triggered with this update
(and will be for future libc updates). That doesn't help you if you
can't log in to see it. :(

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2014-9761

** Summary changed:

- PHP Update on 2016-05-25 causes Apache not to restart, libm.so.6: symbol __strtold_nan, version GLIBC_PRIVATE not defined in file libc.so.6 with link time reference
+ libc on 2016-05-25 causes Apache not to restart, libm.so.6: symbol __strtold_nan, version GLIBC_PRIVATE not defined in file libc.so.6 with link time reference

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to eglibc in Ubuntu.
https://bugs.launchpad.net/bugs/1585614

Title:
  libc on 2016-05-25 causes Apache not to restart, libm.so.6: symbol
  __strtold_nan, version GLIBC_PRIVATE not defined in file libc.so.6
  with link time reference

Status in eglibc package in Ubuntu:
  Confirmed

Bug description:
  This morning I applied the following updates to Ubuntu 12.04
  webservers:

  The following packages are currently pending an upgrade:

   apt 0.8.16~exp12ubuntu10.27
   apt-transport-https 0.8.16~exp12ubuntu10.27
   apt-utils 0.8.16~exp12ubuntu10.27
   libapache2-mod-php5 5.3.10-1ubuntu3.23
   libapt-inst1.4 0.8.16~exp12ubuntu10.27
   libapt-pkg4.12 0.8.16~exp12ubuntu10.27
   php5-cli 5.3.10-1ubuntu3.23
   php5-common 5.3.10-1ubuntu3.23
   php5-curl 5.3.10-1ubuntu3.23
   php5-dev 5.3.10-1ubuntu3.23
   php5-gd 5.3.10-1ubuntu3.23
   php5-mysql 5.3.10-1ubuntu3.23
   php-pear 5.3.10-1ubuntu3.23

  Apache fails to restart, siting error:

  apache2: Syntax error on line 212 of /etc/apache2/apache2.conf: Syntax
  error on line 1 of /etc/apache2/mods-enabled/php5.load: Cannot load
  /usr/lib/apache2/modules/libphp5.so into server: /lib/x86_64-linux-
  gnu/libm.so.6: symbol __strtold_nan, version GLIBC_PRIVATE not defined
  in file libc.so.6 with link time reference

  Into file /var/log/apache2/error.log

  Looks like I am trying to roll back all those php packages... Which I
  see several updates marked Security Update in the changelogs, thus
  checking the "security vulnerability" box as rolling back in this case
  is such. :-(

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/eglibc/+bug/1585614/+subscriptions



More information about the foundations-bugs mailing list