glibc-2.12-1.212.AXS4

エラータID: AXSA:2018-3156:01

Release date: 
Tuesday, June 19, 2018 - 15:51
Subject: 
glibc-2.12-1.212.AXS4
Affected Channels: 
Asianux Server 4 for x86_64
Asianux Server 4 for x86
Severity: 
Moderate
Description: 

The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly.

Security Fix(es):

* glibc: Buffer overflow in glob with GLOB_TILDE (CVE-2017-15670)

* glibc: Buffer overflow during unescaping of user names with the ~ operator (CVE-2017-15804)

For more details about the security issue(s), including the impact, a CVSS score, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Asianux Server 4.10 Release Notes and Asianux Server 4.10 Technical Notes linked from the References section.

CVE-2017-15670
The GNU C Library (aka glibc or libc6) before 2.27 contains an off-by-one error leading to a heap-based buffer overflow in the glob function in glob.c, related to the processing of home directories using the ~ operator followed by a long string.
CVE-2017-15804
The glob function in glob.c in the GNU C Library (aka glibc or libc6) before 2.27 contains a buffer overflow during unescaping of user names with the ~ operator.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. glibc-2.12-1.212.AXS4.src.rpm
    MD5: fc50d608368c95d85f274b8e078d31a8
    SHA-256: 71930f14964447d86b68bca41eab61e753c5450f48d1e65ffc8f51d1d5e80431
    Size: 15.99 MB

Asianux Server 4 for x86
  1. glibc-2.12-1.212.AXS4.i686.rpm
    MD5: 539e47b0837639d0dd98362f5f30b8dc
    SHA-256: ea584a035358888fc0e4e1afa03d17a82f08c69777987f0857028d5cb180df3d
    Size: 4.36 MB
  2. glibc-common-2.12-1.212.AXS4.i686.rpm
    MD5: 889807cc54857f3751ef01d38b28060c
    SHA-256: 0d0fb4dcd416b6373b50567fb694bdeaaeff06b189d450d8f6864fd892703d56
    Size: 14.22 MB
  3. glibc-devel-2.12-1.212.AXS4.i686.rpm
    MD5: 2eb3b5ec62f0bd8e2192d4ff37669854
    SHA-256: 73959033292c014c5f69b988ce999d65f68309717f3b4da016b576e49ada1053
    Size: 0.97 MB
  4. glibc-headers-2.12-1.212.AXS4.i686.rpm
    MD5: ea30d48284cae6fbb711650712411f1e
    SHA-256: 8a5f0b5ac3afc2975060b020cfc3a940db782590f4c8ef48f7653db68750cde1
    Size: 627.31 kB
  5. glibc-utils-2.12-1.212.AXS4.i686.rpm
    MD5: 96680dced19e7cdf14d7af187018d6d4
    SHA-256: 1ad1c6ce05a86b272ded9037fac8dc63531d5b55956c2efc4417d3ff97b9a143
    Size: 175.52 kB
  6. nscd-2.12-1.212.AXS4.i686.rpm
    MD5: b97376b262f6e6855b64bd0657deb939
    SHA-256: 68849d63d7f8f831c93584d444a6b084eec73856f039ca1bdff7e6164c0154c5
    Size: 230.18 kB

Asianux Server 4 for x86_64
  1. glibc-2.12-1.212.AXS4.x86_64.rpm
    MD5: 843f7c92b37e9508d4191c17d84b95a2
    SHA-256: 616c8dbde6423314835b9eb6586814fa401421086662c04a81b5642cab8f51a7
    Size: 3.82 MB
  2. glibc-common-2.12-1.212.AXS4.x86_64.rpm
    MD5: 0d0f09527a794f36d775354829a0cf85
    SHA-256: 3225f7969c96f5d3503dd7c5a0d0d08be3e06770ae99f4bc6cb4f79a077c9c1c
    Size: 14.23 MB
  3. glibc-devel-2.12-1.212.AXS4.x86_64.rpm
    MD5: 52a73086121cd98267e2e28a46bf6b97
    SHA-256: 67e3c2de62b75190c7842a95242635e06072a2e1d9cdb6d53c789a1d727e5bb6
    Size: 0.97 MB
  4. glibc-headers-2.12-1.212.AXS4.x86_64.rpm
    MD5: dd61c784f035a3dda01ccf28841fd878
    SHA-256: a2b2062799cce3abc437a7ddf4180e5f8f6799279d3dff27765ae35ca396646a
    Size: 618.95 kB
  5. glibc-utils-2.12-1.212.AXS4.x86_64.rpm
    MD5: 5218a64c69981d867a6811e42e72297d
    SHA-256: d111359529d8be54bad09e69a3aca041b9dfec27c6688438988d6c8b78476d9e
    Size: 173.48 kB
  6. nscd-2.12-1.212.AXS4.x86_64.rpm
    MD5: d087de7aeffa9ba2dda3cb8961e81f35
    SHA-256: f488cc3707a70827b7e46428f25c7c1552f289c8ef58cfe3e29c294a68e633ca
    Size: 231.35 kB
  7. glibc-2.12-1.212.AXS4.i686.rpm
    MD5: 539e47b0837639d0dd98362f5f30b8dc
    SHA-256: ea584a035358888fc0e4e1afa03d17a82f08c69777987f0857028d5cb180df3d
    Size: 4.36 MB
  8. glibc-devel-2.12-1.212.AXS4.i686.rpm
    MD5: 2eb3b5ec62f0bd8e2192d4ff37669854
    SHA-256: 73959033292c014c5f69b988ce999d65f68309717f3b4da016b576e49ada1053
    Size: 0.97 MB