Описание
ELSA-2013-1500: gc security update (MODERATE)
[7.1-12]
- Fix host triplets on x86 (#1014273)
- Related: CVE-2012-2673
[7.1-11]
- Add sanity checking for calloc/malloc calls
- Resolves: CVE-2012-2673
Обновленные пакеты
Oracle Linux 6
Oracle Linux x86_64
gc
7.1-12.el6_4
gc-devel
7.1-12.el6_4
Oracle Linux i686
gc
7.1-12.el6_4
gc-devel
7.1-12.el6_4
Oracle Linux sparc64
gc
7.1-12.el6_4
gc-devel
7.1-12.el6_4
Связанные CVE
Связанные уязвимости
Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc functions in malloc.c, and the (3) GC_generic_malloc_ignore_off_page function in mallocx.c in Boehm-Demers-Weiser GC (libgc) before 7.2 make it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a large size value, which causes less memory to be allocated than expected.
Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc functions in malloc.c, and the (3) GC_generic_malloc_ignore_off_page function in mallocx.c in Boehm-Demers-Weiser GC (libgc) before 7.2 make it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a large size value, which causes less memory to be allocated than expected.
Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc functions in malloc.c, and the (3) GC_generic_malloc_ignore_off_page function in mallocx.c in Boehm-Demers-Weiser GC (libgc) before 7.2 make it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a large size value, which causes less memory to be allocated than expected.
Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc ...
Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc functions in malloc.c, and the (3) GC_generic_malloc_ignore_off_page function in mallocx.c in Boehm-Demers-Weiser GC (libgc) before 7.2 make it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a large size value, which causes less memory to be allocated than expected.