Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2018:0655-1

Опубликовано: 09 мар. 2018
Источник: suse-cvrf

Описание

Security update for glibc

This update for glibc fixes the following issues:

  • CVE-2017-12133: Avoid use-after-free read access in clntudp_call (bsc#1081556)

Список пакетов

SUSE Linux Enterprise Desktop 12 SP2
glibc-2.22-62.10.1
glibc-32bit-2.22-62.10.1
glibc-devel-2.22-62.10.1
glibc-devel-32bit-2.22-62.10.1
glibc-i18ndata-2.22-62.10.1
glibc-locale-2.22-62.10.1
glibc-locale-32bit-2.22-62.10.1
nscd-2.22-62.10.1
SUSE Linux Enterprise Desktop 12 SP3
glibc-2.22-62.10.1
glibc-32bit-2.22-62.10.1
glibc-devel-2.22-62.10.1
glibc-devel-32bit-2.22-62.10.1
glibc-i18ndata-2.22-62.10.1
glibc-locale-2.22-62.10.1
glibc-locale-32bit-2.22-62.10.1
nscd-2.22-62.10.1
SUSE Linux Enterprise Server 12 SP2
glibc-2.22-62.10.1
glibc-32bit-2.22-62.10.1
glibc-devel-2.22-62.10.1
glibc-devel-32bit-2.22-62.10.1
glibc-html-2.22-62.10.1
glibc-i18ndata-2.22-62.10.1
glibc-info-2.22-62.10.1
glibc-locale-2.22-62.10.1
glibc-locale-32bit-2.22-62.10.1
glibc-profile-2.22-62.10.1
glibc-profile-32bit-2.22-62.10.1
nscd-2.22-62.10.1
SUSE Linux Enterprise Server 12 SP3
glibc-2.22-62.10.1
glibc-32bit-2.22-62.10.1
glibc-devel-2.22-62.10.1
glibc-devel-32bit-2.22-62.10.1
glibc-html-2.22-62.10.1
glibc-i18ndata-2.22-62.10.1
glibc-info-2.22-62.10.1
glibc-locale-2.22-62.10.1
glibc-locale-32bit-2.22-62.10.1
glibc-profile-2.22-62.10.1
glibc-profile-32bit-2.22-62.10.1
nscd-2.22-62.10.1
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2
glibc-2.22-62.10.1
glibc-devel-2.22-62.10.1
glibc-html-2.22-62.10.1
glibc-i18ndata-2.22-62.10.1
glibc-info-2.22-62.10.1
glibc-locale-2.22-62.10.1
glibc-profile-2.22-62.10.1
nscd-2.22-62.10.1
SUSE Linux Enterprise Server for SAP Applications 12 SP2
glibc-2.22-62.10.1
glibc-32bit-2.22-62.10.1
glibc-devel-2.22-62.10.1
glibc-devel-32bit-2.22-62.10.1
glibc-html-2.22-62.10.1
glibc-i18ndata-2.22-62.10.1
glibc-info-2.22-62.10.1
glibc-locale-2.22-62.10.1
glibc-locale-32bit-2.22-62.10.1
glibc-profile-2.22-62.10.1
glibc-profile-32bit-2.22-62.10.1
nscd-2.22-62.10.1
SUSE Linux Enterprise Server for SAP Applications 12 SP3
glibc-2.22-62.10.1
glibc-32bit-2.22-62.10.1
glibc-devel-2.22-62.10.1
glibc-devel-32bit-2.22-62.10.1
glibc-html-2.22-62.10.1
glibc-i18ndata-2.22-62.10.1
glibc-info-2.22-62.10.1
glibc-locale-2.22-62.10.1
glibc-locale-32bit-2.22-62.10.1
glibc-profile-2.22-62.10.1
glibc-profile-32bit-2.22-62.10.1
nscd-2.22-62.10.1
SUSE Linux Enterprise Software Development Kit 12 SP2
glibc-devel-static-2.22-62.10.1
glibc-info-2.22-62.10.1
SUSE Linux Enterprise Software Development Kit 12 SP3
glibc-devel-static-2.22-62.10.1
glibc-info-2.22-62.10.1

Описание

Use-after-free vulnerability in the clntudp_call function in sunrpc/clnt_udp.c in the GNU C Library (aka glibc or libc6) before 2.26 allows remote attackers to have unspecified impact via vectors related to error path.


Затронутые продукты
SUSE Linux Enterprise Desktop 12 SP2:glibc-2.22-62.10.1
SUSE Linux Enterprise Desktop 12 SP2:glibc-32bit-2.22-62.10.1
SUSE Linux Enterprise Desktop 12 SP2:glibc-devel-2.22-62.10.1
SUSE Linux Enterprise Desktop 12 SP2:glibc-devel-32bit-2.22-62.10.1

Ссылки