Summary: | <sys-libs/glibc-2.23-r3: Missing unwind info in __startcontext causes infinite loop in _Unwind_Backtrace | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Thomas Deutschmann (RETIRED) <whissi> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | toolchain |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://sourceware.org/ml/libc-alpha/2017-02/msg00079.html | ||
See Also: | https://sourceware.org/bugzilla/show_bug.cgi?id=20435 | ||
Whiteboard: | A3 [glsa cve glsa blocked] | ||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | 622220 | ||
Bug Blocks: |
Description
Thomas Deutschmann (RETIRED)
2017-02-09 09:13:02 UTC
@ Maintainer(s): The vulnerability is fixed in >=sys-libs/glibc-2.25. Please bump the package and tell us if you plan to backport the fix. this fix i had cherry picked into the first 2.24 patchset already The fix already made it into Patchset 5 for glibc 2.23. commit aa57c4a8ee21fa208a21388c1291260c1dd8c389 Author: Matthias Maier <tamiko@gentoo.org> Date: Thu Jun 8 11:20:38 2017 -0500 profiles: Mask all glibc versions older than 2.23 This issue was resolved and addressed in GLSA 201706-19 at https://security.gentoo.org/glsa/201706-19 by GLSA coordinator Thomas Deutschmann (whissi). |