[ubuntu/lunar-security] glibc 2.37-0ubuntu2.2 (Accepted)
Camila Camargo de Matos
camila.camargodematos at canonical.com
Thu Dec 7 15:48:16 UTC 2023
glibc (2.37-0ubuntu2.2) lunar-security; urgency=medium
* SECURITY UPDATE: use-after-free through getcanonname_r plugin call
- debian/patches/any/CVE-2023-4806.patch: copy h_name over and free it at
the end (getaddrinfo).
- CVE-2023-4806
* SECURITY UPDATE: memory leak in getaddrinfo
- debian/patches/any/CVE-2023-5156.patch: fix leak in getaddrinfo
introduced by the fix for CVE-2023-4806.
- CVE-2023-5156
Date: 2023-11-23 19:04:09.439828+00:00
Changed-By: Camila Camargo de Matos <camila.camargodematos at canonical.com>
https://launchpad.net/ubuntu/+source/glibc/2.37-0ubuntu2.2
-------------- next part --------------
Sorry, changesfile not available.
More information about the lunar-changes
mailing list