summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
Aurelien Jarno [Sun, 22 Feb 2015 08:49:50 +0000 (08:49 +0000)]
eglibc (2.13-38+deb7u8) wheezy-security; urgency=medium
* debian/patches/any/cvs-wscanf.diff: new patch from upstream to fix a
heap buffer overflow in wscanf (CVE-2015-1472, CVE-2015-1473). Closes:
#777197.
* debian/patches/any/cvs-vfprintf.diff: new patch from ustream to fix a
stack overflow in vfprintf (CVE-2012-3406). Closes: #681888.
* debian/patches/any/cvs-posix_spawn_file_actions_addopen.diff: new patch
from upstream to fix a vulnerability in posix_spawn_file_actions_addopen
(CVE-2014-4043). Closes: #751774.
* debian/patches/any/cvs-getnetbyname.diff: new patch from upstream to fix
an infinite loop in getnetbyname (CVE-2014-9402). Closes: #775572.
* debian/patches/any/cvs-getaddrinfo-idn.diff: new patch from upstream to
fix a invalid-free when using getaddrinfo with IDN (CVE-2013-7424).
[dgit import package eglibc 2.13-38+deb7u8]
Aurelien Jarno [Sun, 1 May 2011 17:53:41 +0000 (17:53 +0000)]
Import eglibc_2.13.orig.tar.gz
[dgit import orig eglibc_2.13.orig.tar.gz]