Pop-Up Thingie

>>> Magnum BBS <<<
  • Home
  • Forum
  • Files
  • Log in

  1. Forum
  2. Usenet
  3. LINUX.DEBIAN.MAINT.GLIBC
  • Bug#879500: CVE-2017-15671

    From Moritz Muehlenhoff@21:1/5 to All on Sun Oct 22 12:50:02 2017
    XPost: linux.debian.bugs.dist

    Package: libc6
    Version: 2.24-17
    Severity: important
    Tags: security

    Please see http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-15671:
    The glob function in glob.c in the GNU C Library (aka glibc or libc6) before 2.27,
    when invoked with GLOB_TILDE, could skip freeing allocated memory when processing
    the ~ operator with a long user name, potentially leading to a denial of service (memory leak).

    Upstream bug is https://sourceware.org/bugzilla/show_bug.cgi?id=22325

    Fix is here: https://sourceware.org/git/gitweb.cgi?p=glibc.git;h=c66c908230169c1bab1f83b071eb585baa214b9f

    Cheers,
    Moritz

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • Who's Online

  • System Info

    Sysop: Keyop
    Location: Huddersfield, West Yorkshire, UK
    Users: 715
    Nodes: 16 (2 / 14)
    Uptime: 12:00:23
    Calls: 12,100
    Files: 15,003
    Messages: 6,517,995

© >>> Magnum BBS <<<, 2026