[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249982

 
 

909

 
 

195748

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2021:0348 -- centos 7 glibc, nscd

ID: oval:org.secpod.oval:def:205836Date: (C)2021-02-24   (M)2023-11-16
Class: PATCHFamily: unix




The glibc packages provide the standard C libraries , POSIX thread libraries , standard math libraries , and the name service cache daemon used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly. Security Fix: * glibc: buffer over-read in iconv when processing invalid multi-byte input sequences in the EUC-KR encoding * glibc: stack corruption from crafted input in cosl, sinl, sincosl, and tanl functions * glibc: stack-based buffer overflow if the input to any of the printf family of functions is an 80-bit long double with a non-canonical bit pattern For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Bug Fix: * glibc: 64bit_strstr_via_64bit_strstr_sse2_unaligned detection fails with large device and inode numbers * glibc: Performance regression in ebizzy benchmark

Platform:
CentOS 7
Product:
glibc
nscd
Reference:
CESA-2021:0348
CVE-2019-25013
CVE-2020-10029
CVE-2020-29573
CVE    3
CVE-2020-10029
CVE-2020-29573
CVE-2019-25013
CPE    3
cpe:/a:glibc:glibc
cpe:/o:centos:centos:7
cpe:/a:nscd:nscd

© SecPod Technologies