Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 923352 (CVE-2023-6246, CVE-2023-6779, CVE-2023-6780, GLIBC-SA-2024-0001, GLIBC-SA-2024-0002, GLIBC-SA-2024-0003)

Summary: <sys-libs/glibc-2.38-r10: Multiple vulnerabilities
Product: Gentoo Security Reporter: Sam James <sam>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: blocker CC: hlein, hydrapolic, joost.ruis, kenneth.hoste, ole+gentoo, toolchain
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
URL: https://www.qualys.com/2024/01/30/cve-2023-6246/syslog.txt
See Also: https://bugs.gentoo.org/show_bug.cgi?id=867952
Whiteboard: A1 [glsa+]
Package list:
Runtime testing required: ---
Bug Depends on: 923432    
Bug Blocks:    

Comment 2 Sam James archtester Gentoo Infrastructure gentoo-dev Security 2024-01-30 19:19:41 UTC
commit 3e7a0255894955fd1cb38809c95e33b3e70f1d43 (HEAD -> master, origin/master, origin/HEAD)
Author: Andreas K. Hüttel <dilfridge@gentoo.org>
Date:   Tue Jan 30 20:15:24 2024 +0100

    sys-libs/glibc: Add 2.38 patchlevel 10 (no keywords)

    Signed-off-by: Andreas K. Hüttel <dilfridge@gentoo.org>
Comment 3 Sam James archtester Gentoo Infrastructure gentoo-dev Security 2024-01-31 09:17:41 UTC
commit e4d5c61772ca806cff2ec2f90a6a48fad376810b
Author: Andreas K. Hüttel <dilfridge@gentoo.org>
Date:   Wed Jan 31 02:35:33 2024 +0100

    sys-libs/glibc: keyword 2.38-r10

    Signed-off-by: Andreas K. Hüttel <dilfridge@gentoo.org>
Comment 4 Larry the Git Cow gentoo-dev 2024-02-02 03:03:27 UTC
The bug has been referenced in the following commit(s):

https://gitweb.gentoo.org/data/glsa.git/commit/?id=1b3d5c5b8102daf085b27905a139c5e8c4c7d591

commit 1b3d5c5b8102daf085b27905a139c5e8c4c7d591
Author:     GLSAMaker <glsamaker@gentoo.org>
AuthorDate: 2024-02-02 03:02:44 +0000
Commit:     Sam James <sam@gentoo.org>
CommitDate: 2024-02-02 03:03:23 +0000

    [ GLSA 202402-01 ] glibc: Multiple Vulnerabilities
    
    Bug: https://bugs.gentoo.org/918412
    Bug: https://bugs.gentoo.org/923352
    Signed-off-by: GLSAMaker <glsamaker@gentoo.org>
    Signed-off-by: Sam James <sam@gentoo.org>

 glsa-202402-01.xml | 49 +++++++++++++++++++++++++++++++++++++++++++++++++
 1 file changed, 49 insertions(+)
Comment 5 Larry the Git Cow gentoo-dev 2024-04-20 07:35:32 UTC
The bug has been referenced in the following commit(s):

https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=8ce687dbcbca2d023df95d78ceefabe3d592145a

commit 8ce687dbcbca2d023df95d78ceefabe3d592145a
Author:     Sam James <sam@gentoo.org>
AuthorDate: 2024-04-20 07:35:01 +0000
Commit:     Sam James <sam@gentoo.org>
CommitDate: 2024-04-20 07:35:01 +0000

    profiles: mask <sys-libs/glibc-2.38-r10
    
    Bug: https://bugs.gentoo.org/923352
    Signed-off-by: Sam James <sam@gentoo.org>

 profiles/package.mask | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)