[ubuntu/lunar-security] glibc 2.37-0ubuntu2.2 (Accepted)

Camila Camargo de Matos camila.camargodematos at canonical.com
Thu Dec 7 15:48:16 UTC 2023


glibc (2.37-0ubuntu2.2) lunar-security; urgency=medium

  * SECURITY UPDATE: use-after-free through getcanonname_r plugin call
    - debian/patches/any/CVE-2023-4806.patch: copy h_name over and free it at
      the end (getaddrinfo).
    - CVE-2023-4806
  * SECURITY UPDATE: memory leak in getaddrinfo
    - debian/patches/any/CVE-2023-5156.patch: fix leak in getaddrinfo
      introduced by the fix for CVE-2023-4806.
    - CVE-2023-5156

Date: 2023-11-23 19:04:09.439828+00:00
Changed-By: Camila Camargo de Matos <camila.camargodematos at canonical.com>
https://launchpad.net/ubuntu/+source/glibc/2.37-0ubuntu2.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the lunar-changes mailing list