Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

openSUSE 11.4: 2023:0643-1 High Priority: glibc Memory Corruption Remedy

opensuse
Calendar Grey January 28, 2015
Scroller Opensuse
A vital glibc update for openSUSE 11.4 is now available for immediate upgrade to enhance system security and stability
An update that fixes one vulnerability is now available

Description

CVE-2015-0235: A vulnerability was found and fixed in the GNU C Library,

specifically in the function gethostbyname(), that could lead to a local

or remote buffer overflow. (bsc#913646)

Patch

Patch Instructions:

To install this openSUSE Security Update use YaST online_update.

Alternatively you can run the command listed for your product:

- openSUSE Evergreen 11.4:

zypper in -t patch 2015-6

To bring your system up-to-date, use "zypper patch".

Package List

- openSUSE Evergreen 11.4 (i586 x86_64):

glibc-2.11.3-12.62.1

glibc-debuginfo-2.11.3-12.62.1

glibc-debugsource-2.11.3-12.62.1

glibc-devel-2.11.3-12.62.1

glibc-devel-debuginfo-2.11.3-12.62.1

glibc-html-2.11.3-12.62.1

glibc-i18ndata-2.11.3-12.62.1

glibc-info-2.11.3-12.62.1

glibc-locale-2.11.3-12.62.1

glibc-locale-debuginfo-2.11.3-12.62.1

glibc-obsolete-2.11.3-12.62.1

glibc-profile-2.11.3-12.62.1

nscd-2.11.3-12.62.1

nscd-debuginfo-2.11.3-12.62.1

- openSUSE Evergreen 11.4 (i586):

glibc-obsolete-debuginfo-2.11.3-12.62.1

References

https://bugzilla.suse.com/show_bug.cgi?id=913646

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2015:0162-1
Rating: critical
Affected Products: openSUSE Evergreen 11.4 .

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.