SUSE-SU-2018:2302-1
Dashboard / Vulnerabilities / SUSE-SU-2018:2302-1
SUSE-SU-2018:2302-1
Summary: Security update for glibc
Details: This update for glibc fixes the following issues: Security issue fixed: - CVE-2018-11236: Fix 32bit arch integer overflow in stdlib/canonicalize.c when processing very long pathname arguments (bsc#1094161). Bug fixes: - bsc#1086690: Fix crash in resolver on memory allocation failure. - bsc#1077763: Fix allocation in in6ailist_add. - bsc#1079625: Fix allocation in nss_compat for large number of memberships to a group.
References: https://www.suse.com/support/update/announcement/2018/suse-su-20182302-1/, https://bugzilla.suse.com/1077763, https://bugzilla.suse.com/1079625, https://bugzilla.suse.com/1086690, https://bugzilla.suse.com/1094161, https://www.suse.com/security/cve/CVE-2018-11236
Affected packages
Package
Name: glibc
Purl: pkg:rpm/suse/glibc&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4
Affected ranges
Type: ECOSYSTEM
Events:
