klibc (2.0.6-1+deb10u1) buster; urgency=medium
authorBen Hutchings <benh@debian.org>
Sat, 5 Jun 2021 18:20:42 +0000 (19:20 +0100)
committerBen Hutchings <benh@debian.org>
Sat, 5 Jun 2021 18:20:42 +0000 (19:20 +0100)
commit6d5077788a90792db772f440e909e7c59d8f19c4
tree576d7b32ba5bf3265a4dc2744023545ca2232db8
parent1fbc3122af9a69f77401bc0c8a6e2ed4f4668eb9
parentc0a4e9744bb3b7acb9acbf57013f7e6d8695b46b
klibc (2.0.6-1+deb10u1) buster; urgency=medium

  [ Ben Hutchings ]
  * Apply security fixes from 2.0.9 (Closes: #989505):
    - malloc: Set errno on failure
    - malloc: Fail if requested size > PTRDIFF_MAX (CVE-2021-31873)
    - calloc: Fail if multiplication overflows (CVE-2021-31870)
    - cpio: Fix possible integer overflow on 32-bit systems (CVE-2021-31872)
    - cpio: Fix possible crash on 64-bit systems (CVE-2021-31871)

  [ Thorsten Glaser ]
  * {set,long}jmp [s390x]: save/restore the correct FPU registers
    (f8‥f15 not f1/f3/f5/f7) (Closes: #943425)

[dgit import unpatched klibc 2.0.6-1+deb10u1]
26 files changed:
debian/changelog
debian/compat
debian/control
debian/copyright
debian/initramfs-tools/hooks/klibc-utils
debian/klibc-utils.install
debian/klibc-utils.lintian-overrides
debian/klibc-utils.postinst
debian/libklibc-dev.install
debian/libklibc-dev.lintian-overrides
debian/libklibc-dev.manpages
debian/libklibc-dev.preinst
debian/libklibc.docs
debian/libklibc.install
debian/libklibc.lintian-overrides
debian/patches/0035-klibc-malloc-Set-errno-on-failure.patch
debian/patches/0036-klibc-malloc-Fail-if-requested-size-PTRDIFF_MAX.patch
debian/patches/0037-klibc-calloc-Fail-if-multiplication-overflows.patch
debian/patches/0039-klibc-cpio-Fix-possible-integer-overflow-on-32-bit-s.patch
debian/patches/0040-klibc-cpio-Fix-possible-crash-on-64-bit-systems.patch
debian/patches/0041-klibc-set-long-jmp-s390x-save-restore-the-correct-re.patch
debian/patches/resume-backward-compatibility-for-resume_offset.patch
debian/patches/series
debian/rules
debian/source/format
debian/watch