Release Info

Advisory: CLSA-2024:1709562366

OS: Ubuntu 16.04 ELS

Public date: 2024-03-04 09:26:08

Project: glibc

Version: 2.23-0ubuntu11.5+tuxcare.els6

Errata link: https://errata.cloudlinux.com/ubuntu16-els/CLSA-2024-1709562366.html

Changelog

* SECURITY UPDATE: A flaw fixed when the getaddrinfo function may access memory that has been freed, resulting in an application crash - debian/patches/any/CVE-2023-4806.patch: fix the flaw - CVE-2023-4806 * SECURITY UPDATE: In an uncommon situation, the gaih_inet function may use memory that has been freed, resulting in an application crash - debian/patches/any/CVE-2023-4813.patch: fix the flaw - CVE-2023-4813

Update

Update command: apt-get update apt-get --only-upgrade install glibc*

Packages list

glibc-doc_2.23-0ubuntu11.5+tuxcare.els6_all.deb glibc-source_2.23-0ubuntu11.5+tuxcare.els6_all.deb libc-bin_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb libc-dev-bin_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb libc6_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb libc6-dev_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb libc6-dev-i386_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb libc6-dev-x32_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb libc6-i386_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb libc6-pic_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb libc6-x32_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb locales_2.23-0ubuntu11.5+tuxcare.els6_all.deb locales-all_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb multiarch-support_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb nscd_2.23-0ubuntu11.5+tuxcare.els6_amd64.deb

CVEs

CVE-2023-4806
CVE-2023-4813