Описание
Optional update for gcc5, binutils and gdb
The core toolchain components were updated to newer version to bring various features, improved performance and usability, and also bugfixes.
This GNU Compiler Collection feature update is provided for the Intel/AMD x86_64, IBM zSeries and IBM PowerPC 64bit architectures.
The GNU Compiler Collection 5.2 is provided new with this update.
Changes to previously released GCC 4.8 series are documented on: https://gcc.gnu.org/gcc-4.9/changes.html and https://gcc.gnu.org/gcc-5/changes.html
Major features:
- AddressSanitzer, UndefinedBehaviour and PointerBoundsChecker checking frameworks were added.
- Lots of Register Allocation, Link Time, Interprocedural and Feedback Directed optimization improvements were done.
- Architecture support for IBM zSeries z13.
- The new libstdc++ CXX11 ABI is available, (The old ABI is still used by default.)
The binutils suite was updated to version 2.25.0, bringing new platform support, features and and bugfixes, including:
- IBM zSeries z13 hardware support (fate#318036, bnc#936050).
- various IBM Power8 improvements (fate#318238, bnc#926412).
- AVX512 support on the Intel EM64T platform (fate#318520).
- CVE-2012-3509: Fixed a integer overflow in libiberty.
The GNU Debugger gdb was updated to version 7.9.1, bringing new platform support, features and bugfixes. The gdb update also includes IBM zSeries z13 support.
Список пакетов
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server for SAP Applications 11 SP4
SUSE Linux Enterprise Software Development Kit 11 SP4
Ссылки
- Link for SUSE-OU-2015:1803-1
- E-Mail link for SUSE-OU-2015:1803-1
- SUSE Security Ratings
- SUSE Bug 776968
- SUSE Bug 877566
- SUSE Bug 891040
- SUSE Bug 896586
- SUSE Bug 936050
- SUSE Bug 943792
- SUSE Bug 945634
- SUSE CVE CVE-2012-3509 page
Описание
Multiple integer overflows in the (1) _objalloc_alloc function in objalloc.c and (2) objalloc_alloc macro in include/objalloc.h in GNU libiberty, as used by binutils 2.22, allow remote attackers to cause a denial of service (crash) via vectors related to the "addition of CHUNK_HEADER_SIZE to the length," which triggers a heap-based buffer overflow.
Затронутые продукты
Ссылки
- CVE-2012-3509
- SUSE Bug 776968