From 9b1971f18a648a10af3d4cb463d1e229ffa97b50 Mon Sep 17 00:00:00 2001 From: Aaron Bauman Date: Tue, 3 Apr 2018 21:54:18 -0400 Subject: Added GLSA 201804-02 [ GLSA 201804-02 ] glibc: Multiple vulnerabilities --- glsa-201804-02.xml | 63 ++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 63 insertions(+) create mode 100644 glsa-201804-02.xml (limited to 'glsa-201804-02.xml') diff --git a/glsa-201804-02.xml b/glsa-201804-02.xml new file mode 100644 index 00000000..efd4696c --- /dev/null +++ b/glsa-201804-02.xml @@ -0,0 +1,63 @@ + + + + glibc: Multiple vulnerabilities + Multiple vulnerabilities have been found in glibc, the worst of + which could allow remote attackers to execute arbitrary code. + + glibc + 2018-04-04 + 2018-04-04 + 632556 + 634920 + 635118 + 641644 + 644278 + 646490 + 646492 + local, remote + + + 2.25-r11 + 2.25-r11 + + + +

glibc is a package that contains the GNU C library.

+
+ +

Multiple vulnerabilities have been discovered in glibc. Please review + the CVE identifiers referenced below for details. +

+
+ +

An attacker could possibly execute arbitrary code, escalate privileges, + cause a Denial of Service condition, or have other unspecified impacts. +

+
+ +

There is no known workaround at this time.

+
+ +

All glibc users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=sys-libs/glibc-2.25-r11" + +
+ + CVE-2017-14062 + CVE-2017-15670 + CVE-2017-15671 + CVE-2017-15804 + CVE-2017-16997 + + CVE-2018-1000001 + + CVE-2018-6485 + CVE-2018-6551 + + chrisadr + b-man +
-- cgit v1.2.3-65-gdbad