Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 464
Alerts This Week
Warning Icon 1 464

SUSE: 2012:0023-1 Important: glibc Heap Overflow Vulnerability Alert

suse
Calendar Grey January 5, 2012
Scroller Suse
Ubuntu libc6 security patch: resolves memory corruption. Advisory ID: UBUNTU-SU-2023:0045-2, significant vulnerability mitigated.
An update that solves one vulnerability and has one errata An update that solves one vulnerability and has one errata An update that solves one vulnerability and has one errata is ...

Summary

The following bug has been fixed: * Specially crafted time zone files could cause a heap overflow in glibc. Security Issue reference: * CVE-2009-5029 Package List: - SUSE Linux Enterprise Server 10 SP4 (i586 i686 ia64 ppc s390x x86_64): glibc-2.4-31.97.1 glibc-devel-2.4-31.97.1 - SUSE Linux Enterprise Server 10 SP4 (i586 ia64 ppc s390x x86_64): glibc-html-2.4-31.97.1 glibc-i18ndata-2.4-31.97.1 glibc-info-2.4-31.97.1 glibc-locale-2.4-31.97.1 glibc-profile-2.4-31.97.1 nscd-2.4-31.97.1 - SUSE Linux Enterprise Server 10 SP4 (s390x x86_64): glibc-32bit-2.4-31.97.1 glibc-devel-32bit-2.4-31.97.1 glibc-locale-32bit-2.4-31.97.1 glibc-profile-32bit-2.4-31.97.1 - SUSE Linux Enterprise Server 10 SP4 (ia64):

References

#661460 #735850

Cross- CVE-2009-5029

Affected Products:

SUSE Linux Enterprise Server 10 SP4

SUSE Linux Enterprise Desktop 10 SP4

SLE SDK 10 SP4

https://www.suse.com/security/cve/CVE-2009-5029.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2012:0023-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.