klibc (2.0.4-9+deb9u1) stretch-security; urgency=high
authorBen Hutchings <benh@debian.org>
Mon, 28 Jun 2021 14:24:37 +0000 (15:24 +0100)
committerBen Hutchings <benh@debian.org>
Mon, 28 Jun 2021 14:24:37 +0000 (15:24 +0100)
commit1422cd1ec2e2a332c37e5ad508b60376ccc267a2
treeb484b3ad85f07631fe42cb67c623117d418bd262
parent102a06f2d42e36be20e5bf363fd1204809f10123
parentff4057872d41ab4a34c2ae7525316080599c6b02
klibc (2.0.4-9+deb9u1) stretch-security; urgency=high

  * Never clean files in quilt status directory
  * debian/rules: Use $(MAKE) for recursive make
  * debian/rules: Change override_dh_auto_test rule to actually run tests
  * Apply security fixes from 2.0.9 (Closes: #989505):
    - malloc: Set errno on failure
    - malloc: Fail if requested size > PTRDIFF_MAX (CVE-2021-31873)
    - calloc: Fail if multiplication overflows (CVE-2021-31870)
    - cpio: Fix possible integer overflow on 32-bit systems (CVE-2021-31872)
    - cpio: Fix possible crash on 64-bit systems (CVE-2021-31871)

[dgit import unpatched klibc 2.0.4-9+deb9u1]
46 files changed:
debian/changelog
debian/compat
debian/control
debian/copyright
debian/initramfs-tools/hooks/klibc-utils
debian/klibc-utils.install
debian/klibc-utils.lintian-overrides
debian/klibc-utils.postinst
debian/klibc-utils.postrm
debian/klibc-utils.preinst
debian/libklibc-dev.install
debian/libklibc-dev.lintian-overrides
debian/libklibc-dev.manpages
debian/libklibc-dev.preinst
debian/libklibc.docs
debian/libklibc.install
debian/libklibc.lintian-overrides
debian/patches/0001-add-mips64-support-headers.patch
debian/patches/0002-add-mips64-support-arch-mips32.patch
debian/patches/0003-add-mips64-support-arch-mips64-specific.patch
debian/patches/0035-klibc-malloc-Set-errno-on-failure.patch
debian/patches/0036-klibc-malloc-Fail-if-requested-size-PTRDIFF_MAX.patch
debian/patches/0037-klibc-calloc-Fail-if-multiplication-overflows.patch
debian/patches/0039-klibc-cpio-Fix-possible-integer-overflow-on-32-bit-s.patch
debian/patches/0040-klibc-cpio-Fix-possible-crash-on-64-bit-systems.patch
debian/patches/Fix-minimal-mv-to-work-across-fs
debian/patches/dash-mkbuiltins-fix-sort-order-harder.patch
debian/patches/gzip-fix-silent-fallback-to-decompression.patch
debian/patches/implement-realpath.patch
debian/patches/install-headers-with-consistent-mode.patch
debian/patches/klibc-add-pread-and-pwrite-32bit-syscall-wrappers-for-parisc.patch
debian/patches/klibc-linux-libc-dev
debian/patches/klibc-mips-setjmp-s-don-t-save-and-restore-floating-point.patch
debian/patches/klibc-ppc64-fix-struct-stat.patch
debian/patches/mips-update-archfcntl-h.patch
debian/patches/mount-implement-o-defaults.patch
debian/patches/multiarch-include-path
debian/patches/never-clean-files-in-quilt-status-directory.patch
debian/patches/ppc64el-load-toc-syscall-stub.patch
debian/patches/readlink-add-f-option.patch
debian/patches/run-init-add-dry-run-mode.patch
debian/patches/series
debian/patches/syscalls-override-detection-of-direct-socket-syscalls-on-i386-m68k-s390.patch
debian/rules
debian/source/format
debian/watch