Release Info

Advisory: CLSA-2024:1720027216

OS: CentOS 7 ELS

Public date: 2024-07-03 13:20:18

Project: glibc

Version: 2.17-326.el7_9.3.tuxcare.els1

Errata link: https://errata.tuxcare.com/els_os/centos7els/CLSA-2024-1720027216.html

Changelog

- CVE-2021-3999: getcwd - Set errno to ERANGE for size == 1 - CVE-2021-35942: wordexp - handle overflow in positional parameter number - CVE-2022-23218: Buffer overflow in sunrpc svcunix_create - CVE-2022-23219: Buffer overflow in sunrpc clnt_create for "unix"

Update

Update command: yum update glibc*

Packages list

glibc-2.17-326.el7_9.3.tuxcare.els1.i686.rpm glibc-2.17-326.el7_9.3.tuxcare.els1.x86_64.rpm glibc-common-2.17-326.el7_9.3.tuxcare.els1.x86_64.rpm glibc-devel-2.17-326.el7_9.3.tuxcare.els1.i686.rpm glibc-devel-2.17-326.el7_9.3.tuxcare.els1.x86_64.rpm glibc-headers-2.17-326.el7_9.3.tuxcare.els1.x86_64.rpm glibc-static-2.17-326.el7_9.3.tuxcare.els1.i686.rpm glibc-static-2.17-326.el7_9.3.tuxcare.els1.x86_64.rpm glibc-utils-2.17-326.el7_9.3.tuxcare.els1.x86_64.rpm nscd-2.17-326.el7_9.3.tuxcare.els1.x86_64.rpm

CVEs

CVE-2021-35942
CVE-2024-33602
CVE-2024-2961
CVE-2024-33599
CVE-2021-27645
CVE-2024-33600
CVE-2024-33601
CVE-2022-23218
CVE-2022-23219