eglibc 2.11.1-0ubuntu7.10 source package in Ubuntu

Changelog

eglibc (2.11.1-0ubuntu7.10) lucid-security; urgency=low

  * SECURITY UPDATE: timezone header parsing integer overflow (LP: #906961)
    - debian/patches/any/glibc-CVE-2009-5029.patch: Check values from
      TZ file header
    - CVE-2009-5029
  * SECURITY UPDATE: memory consumption denial of service in fnmatch
    - debian/patches/any/glibc-CVE-2011-1071.patch: avoid too much
      stack use in fnmatch.
    - CVE-2011-1071
  * SECURITY UPDATE: /etc/mtab corruption denial of service
    - debian/patches/any/glibc-CVE-2011-1089.patch: Report write
      error in addmnt even for cached streams
    - CVE-2011-1089
  * SECURITY UPDATE: insufficient locale environment sanitization
    - debian/patches/any/glibc-CVE-2011-1095.patch: escape contents of
      LANG environment variable.
    - CVE-2011-1095
  * SECURITY UPDATE: ld.so insecure handling of privileged programs'
    RPATHs with $ORIGIN
    - debian/patches/any/glibc-CVE-2011-1658.patch: improve handling of
      RPATH and ORIGIN
    - CVE-2011-1658
  * SECURITY UPDATE: fnmatch integer overflow
    - debian/patches/any/glibc-CVE-2011-1659.patch: check size of
      pattern in wide character representation
    - CVE-2011-1659
  * SECURITY UPDATE: signedness bug in memcpy_ssse3
    - debian/patches/any/glibc-CVE-2011-2702.patch: use unsigned
      comparison instructions
    - CVE-2011-2702
  * SECURITY UPDATE: DoS in RPC implementation (LP: #901716)
    - debian/patches/any/glibc-CVE-2011-4609.patch: nanosleep when too
      many open fds is detected
    - CVE-2011-4609
  * SECURITY UPDATE: vfprintf nargs overflow leading to FORTIFY
    check bypass
    - debian/patches/any/glibc-CVE-2012-0864.patch: check for integer
      overflow
    - CVE-2012-0864
  * debian/testsuite-checking/expected-results-x86_64-linux-gnu-libc,
    debian/testsuite-checking/expected-results-i686-linux-gnu-i386,
    debian/testsuite-checking/expected-results-arm-linux-gnueabi-libc:
    update for pre-existing testsuite failures that prevents FTBFS
    when the testsuite is enabled.
 -- Steve Beattie <email address hidden>   Wed, 07 Mar 2012 10:28:32 -0800

Upload details

Uploaded by:
Steve Beattie
Uploaded to:
Lucid
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
libs
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
eglibc_2.11.1.orig.tar.gz 22.4 MiB 7e349d22bcea45c33f9e59b8acf49f58166390f81ceacb3618f724c2d756e9fa
eglibc_2.11.1-0ubuntu7.10.diff.gz 873.0 KiB 19f9a7587b14635e2d56d901279c194fc0e0e27a767b0f23e5e8bc9b92acc8c6
eglibc_2.11.1-0ubuntu7.10.dsc 3.6 KiB b6060601da9431c1a353d44a928dc4c63284d17891aff9a12ad21a4bfd58aaa8

View changes file

Binary packages built by this source

eglibc-source: No summary available for eglibc-source in ubuntu lucid.

No description available for eglibc-source in ubuntu lucid.

glibc-doc: No summary available for glibc-doc in ubuntu lucid.

No description available for glibc-doc in ubuntu lucid.

libc-bin: No summary available for libc-bin in ubuntu lucid.

No description available for libc-bin in ubuntu lucid.

libc-dev-bin: No summary available for libc-dev-bin in ubuntu lucid.

No description available for libc-dev-bin in ubuntu lucid.

libc6: No summary available for libc6 in ubuntu lucid.

No description available for libc6 in ubuntu lucid.

libc6-amd64: No summary available for libc6-amd64 in ubuntu lucid.

No description available for libc6-amd64 in ubuntu lucid.

libc6-dbg: No summary available for libc6-dbg in ubuntu lucid.

No description available for libc6-dbg in ubuntu lucid.

libc6-dev: No summary available for libc6-dev in ubuntu lucid.

No description available for libc6-dev in ubuntu lucid.

libc6-dev-amd64: No summary available for libc6-dev-amd64 in ubuntu lucid.

No description available for libc6-dev-amd64 in ubuntu lucid.

libc6-dev-i386: No summary available for libc6-dev-i386 in ubuntu lucid.

No description available for libc6-dev-i386 in ubuntu lucid.

libc6-dev-ppc64: No summary available for libc6-dev-ppc64 in ubuntu lucid.

No description available for libc6-dev-ppc64 in ubuntu lucid.

libc6-dev-sparc64: No summary available for libc6-dev-sparc64 in ubuntu lucid.

No description available for libc6-dev-sparc64 in ubuntu lucid.

libc6-i386: No summary available for libc6-i386 in ubuntu lucid.

No description available for libc6-i386 in ubuntu lucid.

libc6-i686: No summary available for libc6-i686 in ubuntu lucid.

No description available for libc6-i686 in ubuntu lucid.

libc6-pic: No summary available for libc6-pic in ubuntu lucid.

No description available for libc6-pic in ubuntu lucid.

libc6-ppc64: No summary available for libc6-ppc64 in ubuntu lucid.

No description available for libc6-ppc64 in ubuntu lucid.

libc6-prof: No summary available for libc6-prof in ubuntu lucid.

No description available for libc6-prof in ubuntu lucid.

libc6-sparc64: No summary available for libc6-sparc64 in ubuntu lucid.

No description available for libc6-sparc64 in ubuntu lucid.

libc6-sparc64b: No summary available for libc6-sparc64b in ubuntu lucid.

No description available for libc6-sparc64b in ubuntu lucid.

libc6-sparc64v: No summary available for libc6-sparc64v in ubuntu lucid.

No description available for libc6-sparc64v in ubuntu lucid.

libc6-sparc64v2: No summary available for libc6-sparc64v2 in ubuntu lucid.

No description available for libc6-sparc64v2 in ubuntu lucid.

libc6-sparcv9b: No summary available for libc6-sparcv9b in ubuntu lucid.

No description available for libc6-sparcv9b in ubuntu lucid.

libc6-sparcv9v: No summary available for libc6-sparcv9v in ubuntu lucid.

No description available for libc6-sparcv9v in ubuntu lucid.

libc6-sparcv9v2: No summary available for libc6-sparcv9v2 in ubuntu lucid.

No description available for libc6-sparcv9v2 in ubuntu lucid.

libc6-udeb: No summary available for libc6-udeb in ubuntu lucid.

No description available for libc6-udeb in ubuntu lucid.

libc6-xen: No summary available for libc6-xen in ubuntu lucid.

No description available for libc6-xen in ubuntu lucid.

libc6.1: No summary available for libc6.1 in ubuntu lucid.

No description available for libc6.1 in ubuntu lucid.

libc6.1-dbg: No summary available for libc6.1-dbg in ubuntu lucid.

No description available for libc6.1-dbg in ubuntu lucid.

libc6.1-dev: No summary available for libc6.1-dev in ubuntu lucid.

No description available for libc6.1-dev in ubuntu lucid.

libc6.1-pic: No summary available for libc6.1-pic in ubuntu lucid.

No description available for libc6.1-pic in ubuntu lucid.

libc6.1-prof: No summary available for libc6.1-prof in ubuntu lucid.

No description available for libc6.1-prof in ubuntu lucid.

libc6.1-udeb: No summary available for libc6.1-udeb in ubuntu lucid.

No description available for libc6.1-udeb in ubuntu lucid.

libnss-dns-udeb: No summary available for libnss-dns-udeb in ubuntu lucid.

No description available for libnss-dns-udeb in ubuntu lucid.

libnss-files-udeb: No summary available for libnss-files-udeb in ubuntu lucid.

No description available for libnss-files-udeb in ubuntu lucid.

nscd: No summary available for nscd in ubuntu lucid.

No description available for nscd in ubuntu lucid.