Security update for glibc
This update for glibc fixes the following issues: - Drop old fix that could break services that start before IPv6 is up. (bsc#931399) - Do not copy d_name field of struct dirent. (CVE-2016-1234, bsc#969727) - Fix memory leak in _nss_dns_gethostbyname4_r. (bsc#973010) - Relocate DSOs in dependency order, fixing a potential crash during symbol relocation phase. (bsc#986302) - Fix nscd assertion failure in gc. (bsc#965699) - Fix stack overflow in _nss_dns_getnetbyname_r. (CVE-2016-3075, bsc#973164) - Fix getaddrinfo stack overflow in hostent conversion. (CVE-2016-3706, bsc#980483) - Do not use alloca in clntudp_call. (CVE-2016-4429, bsc#980854)
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for glibc fixes the following issues: - Drop old fix that could break services that start before IPv6 is up. (bsc#931399) - Do not copy d_name field of struct dirent. (CVE-2016-1234, bsc#969727) - Fix memory leak in _nss_dns_gethostbyname4_r. (bsc#973010) - Relocate DSOs in dependency order, fixing a potential crash during symbol relocation phase. (bsc#986302) - Fix nscd assertion failure in gc. (bsc#965699) - Fix stack overflow in _nss_dns_getnetbyname_r. (CVE-2016-3075, bsc#973164) - Fix getaddrinfo stack overflow in hostent conversion. (CVE-2016-3706, bsc#980483) - Do not use alloca in clntudp_call. (CVE-2016-4429, bsc#980854)
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/931399
- https://bugzilla.suse.com/965699
- https://bugzilla.suse.com/969727
- https://bugzilla.suse.com/973010
- https://bugzilla.suse.com/973164
- https://bugzilla.suse.com/973179
- https://bugzilla.suse.com/980483
- https://bugzilla.suse.com/980854
- https://bugzilla.suse.com/986302
- https://www.suse.com/security/cve/CVE-2016-1234
- https://www.suse.com/security/cve/CVE-2016-3075
- https://www.suse.com/security/cve/CVE-2016-3706
- https://www.suse.com/security/cve/CVE-2016-4429
- https://www.suse.com/support/update/announcement/2016/suse-su-20162156-1/