Synopsis:          Moderate: glibc security and bug fix update
Advisory ID:       SLSA-2018:1879-1
Issue Date:        2018-06-19
CVE Numbers:       CVE-2017-15670
                   CVE-2017-15804
--

Security Fix(es):

* glibc: Buffer overflow in glob with GLOB_TILDE (CVE-2017-15670)

* glibc: Buffer overflow during unescaping of user names with the ~
operator (CVE-2017-15804)
--

SL6
  x86_64
    glibc-2.12-1.212.el6.i686.rpm
    glibc-2.12-1.212.el6.x86_64.rpm
    glibc-common-2.12-1.212.el6.x86_64.rpm
    glibc-debuginfo-2.12-1.212.el6.i686.rpm
    glibc-debuginfo-2.12-1.212.el6.x86_64.rpm
    glibc-debuginfo-common-2.12-1.212.el6.i686.rpm
    glibc-debuginfo-common-2.12-1.212.el6.x86_64.rpm
    glibc-devel-2.12-1.212.el6.i686.rpm
    glibc-devel-2.12-1.212.el6.x86_64.rpm
    glibc-headers-2.12-1.212.el6.x86_64.rpm
    glibc-utils-2.12-1.212.el6.x86_64.rpm
    nscd-2.12-1.212.el6.x86_64.rpm
    glibc-static-2.12-1.212.el6.i686.rpm
    glibc-static-2.12-1.212.el6.x86_64.rpm
  i386
    glibc-2.12-1.212.el6.i686.rpm
    glibc-common-2.12-1.212.el6.i686.rpm
    glibc-debuginfo-2.12-1.212.el6.i686.rpm
    glibc-debuginfo-common-2.12-1.212.el6.i686.rpm
    glibc-devel-2.12-1.212.el6.i686.rpm
    glibc-headers-2.12-1.212.el6.i686.rpm
    glibc-utils-2.12-1.212.el6.i686.rpm
    nscd-2.12-1.212.el6.i686.rpm
    glibc-static-2.12-1.212.el6.i686.rpm

- Scientific Linux Development Team

SciLinux: SLSA-2018-1879-1 Moderate: glibc on SL6.x i386/x86_64

glibc: Buffer overflow in glob with GLOB_TILDE (CVE-2017-15670) * glibc: Buffer overflow during unescaping of user names with the ~ operator (CVE-2017-15804) SL6 x86_64 glibc-2.12-...

Summary

Moderate: glibc security and bug fix update



Security Fixes

* glibc: Buffer overflow in glob with GLOB_TILDE (CVE-2017-15670)
* glibc: Buffer overflow during unescaping of user names with the ~ operator (CVE-2017-15804)
SL6 x86_64 glibc-2.12-1.212.el6.i686.rpm glibc-2.12-1.212.el6.x86_64.rpm glibc-common-2.12-1.212.el6.x86_64.rpm glibc-debuginfo-2.12-1.212.el6.i686.rpm glibc-debuginfo-2.12-1.212.el6.x86_64.rpm glibc-debuginfo-common-2.12-1.212.el6.i686.rpm glibc-debuginfo-common-2.12-1.212.el6.x86_64.rpm glibc-devel-2.12-1.212.el6.i686.rpm glibc-devel-2.12-1.212.el6.x86_64.rpm glibc-headers-2.12-1.212.el6.x86_64.rpm glibc-utils-2.12-1.212.el6.x86_64.rpm nscd-2.12-1.212.el6.x86_64.rpm glibc-static-2.12-1.212.el6.i686.rpm glibc-static-2.12-1.212.el6.x86_64.rpm i386 glibc-2.12-1.212.el6.i686.rpm glibc-common-2.12-1.212.el6.i686.rpm glibc-debuginfo-2.12-1.212.el6.i686.rpm glibc-debuginfo-common-2.12-1.212.el6.i686.rpm glibc-devel-2.12-1.212.el6.i686.rpm glibc-headers-2.12-1.212.el6.i686.rpm glibc-utils-2.12-1.212.el6.i686.rpm nscd-2.12-1.212.el6.i686.rpm glibc-static-2.12-1.212.el6.i686.rpm
- Scientific Linux Development Team

Severity
Advisory ID: SLSA-2018:1879-1
Issued Date: : 2018-06-19
CVE Numbers: CVE-2017-15670
CVE-2017-15804