[CLSA-2021:1629395067] Fixed CVEs in glibc: CVE-2021-35942, CVE-2021-33574, CVE-2021-38604
Type:
security
Severity:
Critical
Release date:
2021-08-19
Description:
- Adopt pthread_attr_copy functionality, test case is included - CVE-2021-33574: avoid use-after-free vulnerability - CVE-2021-35942: avoid out-of-bounds read via signed integer overflow in array index - CVE-2021-38604: considered. No NULL pointer dereference is possible
Updated packages:
  • glibc-devel-2.12-2.213.el6.cloudlinux.els.i686.rpm
    sha:6335446580a152deb9772aa6c69ed173ceb0cb54
  • glibc-utils-2.12-2.213.el6.cloudlinux.els.x86_64.rpm
    sha:fb64f34fe0dea2cce58fd27d8a87b272bb94e931
  • glibc-static-2.12-2.213.el6.cloudlinux.els.x86_64.rpm
    sha:eca1ab23cfbdc2e735c6bc1d3876bdf9fa4b0c4e
  • glibc-common-2.12-2.213.el6.cloudlinux.els.x86_64.rpm
    sha:4d418beb950e23526eabb6a012ca91096fd65656
  • nscd-2.12-2.213.el6.cloudlinux.els.x86_64.rpm
    sha:9f008811ec8ab9f441fe9d0cee3079c270050358
  • glibc-static-2.12-2.213.el6.cloudlinux.els.i686.rpm
    sha:a3c5dc3b7a425b6720621f876bd7429c3efb3974
  • glibc-devel-2.12-2.213.el6.cloudlinux.els.x86_64.rpm
    sha:1a33b24b1cbf03cf5e198835a38544947f65671a
  • glibc-2.12-2.213.el6.cloudlinux.els.i686.rpm
    sha:17c14274acc2b9299864f16dddd37f769b37cd4e
  • glibc-headers-2.12-2.213.el6.cloudlinux.els.x86_64.rpm
    sha:a9af03b229b56f5ed739700a1282494f914d082d
  • glibc-2.12-2.213.el6.cloudlinux.els.x86_64.rpm
    sha:9e88a04af76db3912d0d7c1f63900c0298fdad8e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.