Описание
Security update for glibc
This update for glibc fixes the following issues:
Security issue fixed:
- CVE-2023-4813: Fixed a potential use-after-free in gaih_inet() (bsc#1215286, BZ #28931)
Other changes:
- Added GB18030-2022 charmap (jsc#PED-4908, BZ #30243)
- Run vismain only if linker supports protected data symbol (bsc#1215505)
Список пакетов
Container caasp/v4/cilium-operator:1.6.6
glibc-2.26-150000.13.70.1
Container caasp/v4/cilium:1.6.6
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-devel-32bit-2.26-150000.13.70.1
Container suse/sle15:15.1
glibc-2.26-150000.13.70.1
Container suse/sle15:15.2
glibc-2.26-150000.13.70.1
Image SLES15-SP1-SAP-Azure-LI-BYOS-Production
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Image SLES15-SP1-SAP-Azure-VLI-BYOS-Production
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Image SLES15-SP2-BYOS-Azure
glibc-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Image SLES15-SP2-HPC-BYOS-Azure
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Image SLES15-SP2-SAP-Azure
glibc-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Image SLES15-SP2-SAP-Azure-LI-BYOS-Production
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Image SLES15-SP2-SAP-Azure-VLI-BYOS-Production
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Image SLES15-SP2-SAP-BYOS-Azure
glibc-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Image SLES15-SP2-SAP-BYOS-EC2-HVM
glibc-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Image SLES15-SP2-SAP-BYOS-GCE
glibc-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Image SLES15-SP2-SAP-EC2-HVM
glibc-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Image SLES15-SP2-SAP-GCE
glibc-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-devel-32bit-2.26-150000.13.70.1
glibc-devel-static-2.26-150000.13.70.1
glibc-extra-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-info-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
glibc-locale-base-32bit-2.26-150000.13.70.1
glibc-profile-2.26-150000.13.70.1
glibc-utils-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-devel-32bit-2.26-150000.13.70.1
glibc-devel-static-2.26-150000.13.70.1
glibc-extra-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-info-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
glibc-locale-base-32bit-2.26-150000.13.70.1
glibc-profile-2.26-150000.13.70.1
glibc-utils-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
SUSE Linux Enterprise Server 15 SP1-LTSS
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-devel-32bit-2.26-150000.13.70.1
glibc-devel-static-2.26-150000.13.70.1
glibc-extra-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-info-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
glibc-locale-base-32bit-2.26-150000.13.70.1
glibc-profile-2.26-150000.13.70.1
glibc-utils-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
SUSE Linux Enterprise Server 15 SP2-LTSS
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-devel-32bit-2.26-150000.13.70.1
glibc-devel-static-2.26-150000.13.70.1
glibc-extra-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-info-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
glibc-locale-base-32bit-2.26-150000.13.70.1
glibc-profile-2.26-150000.13.70.1
glibc-utils-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-devel-32bit-2.26-150000.13.70.1
glibc-devel-static-2.26-150000.13.70.1
glibc-extra-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-info-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
glibc-locale-base-32bit-2.26-150000.13.70.1
glibc-profile-2.26-150000.13.70.1
glibc-utils-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
glibc-2.26-150000.13.70.1
glibc-32bit-2.26-150000.13.70.1
glibc-devel-2.26-150000.13.70.1
glibc-devel-32bit-2.26-150000.13.70.1
glibc-devel-static-2.26-150000.13.70.1
glibc-extra-2.26-150000.13.70.1
glibc-i18ndata-2.26-150000.13.70.1
glibc-info-2.26-150000.13.70.1
glibc-locale-2.26-150000.13.70.1
glibc-locale-base-2.26-150000.13.70.1
glibc-locale-base-32bit-2.26-150000.13.70.1
glibc-profile-2.26-150000.13.70.1
glibc-utils-2.26-150000.13.70.1
nscd-2.26-150000.13.70.1
Ссылки
- Link for SUSE-SU-2023:4047-1
- E-Mail link for SUSE-SU-2023:4047-1
- SUSE Security Ratings
- SUSE Bug 1215286
- SUSE Bug 1215505
- SUSE CVE CVE-2023-4813 page
Описание
A flaw was found in glibc. In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash. This issue is only exploitable when the getaddrinfo function is called and the hosts database in /etc/nsswitch.conf is configured with SUCCESS=continue or SUCCESS=merge.
Затронутые продукты
Container caasp/v4/cilium-operator:1.6.6:glibc-2.26-150000.13.70.1
Container caasp/v4/cilium:1.6.6:glibc-2.26-150000.13.70.1
Container caasp/v4/cilium:1.6.6:glibc-32bit-2.26-150000.13.70.1
Container caasp/v4/cilium:1.6.6:glibc-devel-2.26-150000.13.70.1
Ссылки
- CVE-2023-4813
- SUSE Bug 1215286