Pop-Up Thingie

>>> Magnum BBS <<<
  • Home
  • Forum
  • Files
  • Log in

  1. Forum
  2. Usenet
  3. LINUX.DEBIAN.BUGS.DIST
  • Bug#1109803: glibc: CVE-2025-8058

    From Salvatore Bonaccorso@21:1/5 to All on Thu Jul 24 07:20:01 2025
    XPost: linux.debian.maint.glibc

    Source: glibc
    Version: 2.41-10
    Severity: important
    Tags: security upstream
    X-Debbugs-Cc: [email protected], Debian Security Team <[email protected]>
    Control: found -1 2.36-9+deb12u7
    Control: found -1 2.36-9+deb12u10
    Control: found -1 2.36-9
    Control: forwarded -1 https://sourceware.org/bugzilla/show_bug.cgi?id=33185

    Hi,

    The following vulnerability was published for glibc.

    CVE-2025-8058[0]:
    | The regcomp function in the GNU C library version from 2.4 to 2.41
    | is subject to a double free if some previous allocation fails. It
    | can be accomplished either by a malloc failure or by using an
    | interposed malloc that injects random malloc failures. The double
    | free can allow buffer manipulation depending of how the regex is
    | constructed. This issue affects all architectures and ABIs
    | supported by the GNU C library.


    If you fix the vulnerability please also make sure to include the
    CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

    For further information see:

    [0] https://security-tracker.debian.org/tracker/CVE-2025-8058
    https://www.cve.org/CVERecord?id=CVE-2025-8058
    [1] https://sourceware.org/bugzilla/show_bug.cgi?id=33185
    [2] https://sourceware.org/git/?p=glibc.git;a=commit;h=7ea06e994093fa0bcca0d0ee2c1db271d8d7885d
    [3] https://sourceware.org/git/?p=glibc.git;a=blob_plain;f=advisories/GLIBC-SA-2025-0005

    Regards,
    Salvatore

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • Who's Online

  • Recent Visitors

    • Krenn
      Tue Jun 9 11:18:15 2026
      from Sydney, Nsw via Telnet
    • Bob Worm
      Tue Jun 9 10:31:07 2026
      from Wales, Uk via Telnet
    • Centurion
      Mon Jun 8 23:30:43 2026
      from Berea, Ohio via Telnet
    • Centurion
      Mon Jun 8 21:33:11 2026
      from Berea, Ohio via Telnet
    • Bob Worm
      Mon Jun 8 20:15:00 2026
      from Wales, Uk via Telnet
    • Bob Worm
      Mon Jun 8 16:33:22 2026
      from Wales, Uk via Telnet
    • Bob Worm
      Mon Jun 8 14:11:46 2026
      from Wales, Uk via Telnet
    • Krenn
      Mon Jun 8 11:22:02 2026
      from Sydney, Nsw via Telnet
  • System Info

    Sysop: Keyop
    Location: Huddersfield, West Yorkshire, UK
    Users: 715
    Nodes: 16 (3 / 13)
    Uptime: 43:11:50
    Calls: 12,111
    Calls today: 2
    Files: 15,008
    Messages: 6,518,439

© >>> Magnum BBS <<<, 2026