This is the mail archive of the glibc-bugs@sourceware.org mailing list for the glibc project.


Index Nav: [Date Index] [Subject Index] [Author Index] [Thread Index]
Message Nav: [Date Prev] [Date Next] [Thread Prev] [Thread Next]
Other format: [Raw text]

[Bug libc/17905] catopen() Multiple unbounded stack allocations (CVE-2015-8779)


https://sourceware.org/bugzilla/show_bug.cgi?id=17905

--- Comment #4 from cvs-commit at gcc dot gnu.org <cvs-commit at gcc dot gnu.org> ---
This is an automated email from the git hooks/post-receive script. It was
generated because a ref change was pushed to the repository containing
the project "GNU C Library master sources".

The branch, release/2.22/master has been updated
       via  7a5d3129638db8a832e2c3090d263bbc1b1b919b (commit)
       via  795b5d3658c0fc782cf0511ce15490e5f905393c (commit)
       via  0c5f5b233964aa97d1aa470488a1731c022ff615 (commit)
      from  3b54d911809643fb6a293807333b7f2cf15a3b50 (commit)

Those revisions listed above that are new to this repository have
not appeared on any other notification email; so we list those
revisions in full, below.

- Log -----------------------------------------------------------------
https://sourceware.org/git/gitweb.cgi?p=glibc.git;h=7a5d3129638db8a832e2c3090d263bbc1b1b919b

commit 7a5d3129638db8a832e2c3090d263bbc1b1b919b
Author: Paul Pluzhnikov <ppluzhnikov@google.com>
Date:   Sat Sep 26 13:27:48 2015 -0700

    Fix BZ #18985 -- out of range data to strftime() causes a segfault

    (cherry picked from commit d36c75fc0d44deec29635dd239b0fbd206ca49b7)

https://sourceware.org/git/gitweb.cgi?p=glibc.git;h=795b5d3658c0fc782cf0511ce15490e5f905393c

commit 795b5d3658c0fc782cf0511ce15490e5f905393c
Author: Paul Pluzhnikov <ppluzhnikov@google.com>
Date:   Sat Aug 8 15:54:40 2015 -0700

    Fix trailing space.

    (cherry picked from commit 7565d2a862683a3c26ffb1f32351b8c5ab9f7b31)

https://sourceware.org/git/gitweb.cgi?p=glibc.git;h=0c5f5b233964aa97d1aa470488a1731c022ff615

commit 0c5f5b233964aa97d1aa470488a1731c022ff615
Author: Paul Pluzhnikov <ppluzhnikov@google.com>
Date:   Sat Aug 8 15:53:03 2015 -0700

    Fix BZ #17905

    (cherry picked from commit 0f58539030e436449f79189b6edab17d7479796e)

-----------------------------------------------------------------------

Summary of changes:
 ChangeLog              |   16 ++++++++++++++
 NEWS                   |    4 +-
 catgets/Makefile       |    9 +++++++-
 catgets/catgets.c      |   19 +++++++++++------
 catgets/open_catalog.c |   23 ++++++++++++--------
 catgets/tst-catgets.c  |   31 ++++++++++++++++++++++++++++
 time/strftime_l.c      |   20 ++++++++++++------
 time/tst-strftime.c    |   52 +++++++++++++++++++++++++++++++++++++++++++++++-
 8 files changed, 147 insertions(+), 27 deletions(-)

-- 
You are receiving this mail because:
You are on the CC list for the bug.

Index Nav: [Date Index] [Subject Index] [Author Index] [Thread Index]
Message Nav: [Date Prev] [Date Next] [Thread Prev] [Thread Next]