FlawAtlas
Search the atlas
SUSE-SU-2022:2886-1 Not scored

Security update for glibc

This update for glibc fixes the following issues: Security issues fixed: - CVE-2015-5180: Fix crash with internal QTYPE in resolv (bsc#941234, BZ #18784) - CVE-2016-10228: Rewrite iconv option parsing (bsc#1027496, BZ #19519) - CVE-2019-25013: Fix buffer overrun in EUC-KR conversion module (bsc#1182117, BZ #24973) - CVE-2020-27618: Accept redundant shift sequences in IBM1364 iconv module (bsc#1178386, BZ #26224) - CVE-2020-29562: Fix incorrect UCS4 inner loop bounds in iconv (bsc#1179694, BZ #26923) - CVE-2020-29573: Hardened printf against non-normal long double values (bsc#1179721, BZ #26649) - CVE-2021-3326: Fix assertion failure in ISO-2022-JP-3 gconv module (bsc#1181505, BZ #27256) - Recognize ppc64p7 arch to build for power7

Exploit probability Not scored
Published August 24, 2022
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Server 12 SP2-BCL glibc
SUSE:Linux Enterprise Server 12 SP3-BCL glibc

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2022:2886-1

This update for glibc fixes the following issues: Security issues fixed: - CVE-2015-5180: Fix crash with internal QTYPE in resolv (bsc#941234, BZ #18784) - CVE-2016-10228: Rewrite iconv option parsing (bsc#1027496, BZ #19519) - CVE-2019-25013: Fix buffer overrun in EUC-KR conversion module (bsc#1182117, BZ #24973) - CVE-2020-27618: Accept redundant shift sequences in IBM1364 iconv module (bsc#1178386, BZ #26224) - CVE-2020-29562: Fix incorrect UCS4 inner loop bounds in iconv (bsc#1179694, BZ #26923) - CVE-2020-29573: Hardened printf against non-normal long double values (bsc#1179721, BZ #26649) - CVE-2021-3326: Fix assertion failure in ISO-2022-JP-3 gconv module (bsc#1181505, BZ #27256) - Recognize ppc64p7 arch to build for power7

View original source

05 / REFERENCES

Further evidence