- glibc-2.17-260.el7_6.5 ()
- 2.17-326.el7_9
- 2024-06-27 11:02:10
- CVE CVE-2020-1752, CVSSv2 Score: 7.0
- Description:
Fix use-after-free in glob when expanding ~user
- Patch: glibc/2.17/CVE-2020-1752.patch
- CVE CVE-2019-19126, CVSSv2 Score: 2.9
- Description:
Check __libc_enable_secure before honoring LD_PREFER_MAP_32BIT_EXEC
- Patch: glibc/2.17/glibc-rh1775599.patch
- CVE N/A, CVSSv2 Score:
- Description:
Do not override GCC keywords with macros [BZ #16907]
- Patch: glibc/2.17/glibc-rh1763325.patch
- CVE N/A, CVSSv2 Score:
- Description:
Remove Fast_Copy_Backward from Intel Core processors
- Patch: glibc/2.17/glibc-rh1772307.patch
- CVE N/A, CVSSv2 Score:
- Description:
Disable vtable validation for pre-2.1 interposed handles [BZ #25203]
- Patch: glibc/2.17/glibc-rh1775816.patch
- CVE N\A, CVSSv2 Score:
- Description:
nss_compat internal_end*ent may clobber errno, hiding ERANGE
- Patch: glibc/2.17/glibc-rh1834816.patch
- CVE N\A, CVSSv2 Score:
- Description:
The commit included in this patch only incidentally fixes the problem reported in bug 1427734: In each of the IBM9xx character sets referenced in this patch, the removal of the "break" statement means that the subsequent increment of "inptr" is executed instead of being skipped. This allows conversion to progress instead of hanging.
- Patch: glibc/2.17/glibc-rh1427734-1.patch
- CVE N/A, CVSSv2 Score:
- Description:
Fix build error in iconvdata/bug-iconv11.c
- Patch: glibc/2.17/glibc-rh1427734-2.patch
- CVE CVE-2020-10029, CVSSv2 Score: 7.0
- Description:
Stack corruption from crafted input in cosl, sinl, sincosl, and tanl functions
- Patch: glibc/2.17/glibc-rh1812119-1.patch
- CVE CVE-2020-10029, CVSSv2 Score: 7.0
- Description:
Stack corruption from crafted input in cosl, sinl, sincosl, and tanl functions
- Patch: glibc/2.17/glibc-rh1812119-2.patch
- CVE CVE-2020-29573, CVSSv2 Score: 7.5
- Description:
stack-based buffer overflow if the input to any of the printf family of functions is an 80-bit long double with a non-canonical bit pattern
- Patch: glibc/2.17/glibc-rh1869380.patch
- CVE CVE-2019-25013, CVSSv2 Score: 4.8
- Description:
buffer over-read in iconv when processing invalid multi-byte input sequences in the EUC-KR encoding
- Patch: glibc/2.17/glibc-rh1912543.patch
- CVE CVE-2020-29573, CVSSv2 Score: 7.5
- Description:
Fixes regression introduced by glibc-rh1869380.patch
- Patch: glibc/2.17/glibc-rh1925204-1.patch
- CVE CVE-2020-29573, CVSSv2 Score: 7.5
- Description:
Fixes regression introduced by glibc-rh1869380.patch
- Patch: glibc/2.17/glibc-rh1925204-2.patch
- CVE CVE-2021-3999, CVSSv2 Score: 7.4
- Description:
Off-by-one buffer overflow/underflow in getcwd()
- Patch: glibc/2.17/glibc-rh2032280-4.patch
- CVE N/A, CVSSv2 Score:
- Description:
- Patch: glibc/2.17/glibc-rh2045062-1.patch
- CVE CVE-2022-23219, CVSSv2 Score: 7.0
- Description:
Buffer overflow in sunrpc clnt_create for "unix"
- Patch: glibc/2.17/glibc-rh2045062-2.patch
- CVE N/A, CVSSv2 Score:
- Description:
- Patch: glibc/2.17/glibc-rh2045062-3.patch
- CVE CVE-2022-23218, CVSSv2 Score: 7.0
- Description:
Buffer overflow in sunrpc svcunix_create
- Patch: glibc/2.17/glibc-rh2045062-4.patch
- CVE CVE-2024-2961, CVSSv2 Score: 8.8
- Description:
iconv: ISO-2022-CN-EXT: fix out-of-bound writes when writing escape sequence
- Patch: glibc/2.17/glibc-RHEL-31803.patch
- CVE N/A, CVSSv2 Score:
- Description:
- Patch: glibc/2.17/glibc-RHEL-34263-1.patch
- CVE N/A, CVSSv2 Score:
- Description:
- Patch: glibc/2.17/glibc-RHEL-34263-2.patch
- CVE N/A, CVSSv2 Score:
- Description:
- Patch: glibc/2.17/glibc-RHEL-34263-3.patch
- CVE N/A, CVSSv2 Score:
- Description:
- Patch: glibc/2.17/glibc-RHEL-34263-4.patch
- CVE N/A, CVSSv2 Score:
- Description:
- Patch: glibc/2.17/glibc-RHEL-34263-5.patch
- CVE CVE-2024-33599, CVSSv2 Score: 7.6
- Description:
nscd: Stack-based buffer overflow in netgroup cache
- Patch: glibc/2.17/glibc-RHEL-34263-6.patch
- CVE CVE-2024-33600, CVSSv2 Score: 5.3
- Description:
nscd: Null pointer crashes after notfound response
- Patch: glibc/2.17/glibc-RHEL-34263-7.patch
- CVE CVE-2024-33600, CVSSv2 Score: 5.3
- Description:
nscd: Null pointer crashes after notfound response
- Patch: glibc/2.17/glibc-RHEL-34263-8.patch
- CVE CVE-2024-33601 CVE-2024-33602, CVSSv2 Score: 4.0
- Description:
nscd: netgroup cache assumes NSS callback uses in-buffer strings
- Patch: glibc/2.17/glibc-RHEL-34263-9.patch
- CVE CVE-2024-33601 CVE-2024-33602, CVSSv2 Score: 4.0
- Description:
nscd: netgroup cache assumes NSS callback uses in-buffer strings
- Patch: glibc/2.17/glibc-RHEL-34263-10.patch