glibc 2.30-0ubuntu2.2 source package in Ubuntu

Changelog

glibc (2.30-0ubuntu2.2) eoan-security; urgency=medium

  * SECURITY UPDATE: ASLR bypass
    - debian/patches/any/CVE-2019-19126.patch: check __libc_enable_secure
      before honoring LD_PREFER_MAP_32BIT_EXEC in
      sysdeps/unix/sysv/linux/x86_64/64/dl-librecon.h.
    - CVE-2019-19126
  * SECURITY UPDATE: out-of-bounds write on PowerPC
    - debian/patches/any/CVE-2020-1751.patch: fix array overflow in
      backtrace on PowerPC in debug/tst-backtrace5.c,
      sysdeps/powerpc/powerpc32/backtrace.c,
      sysdeps/powerpc/powerpc64/backtrace.c.
    - CVE-2020-1751
  * SECURITY UPDATE: use-after-free via tilde expansion
    - debian/patches/any/CVE-2020-1752.patch: fix use-after-free in glob
      when expanding ~user in posix/glob.c.
    - CVE-2020-1752
  * SECURITY UPDATE: stack overflow via 80-bit long double function
    - debian/patches/any/CVE-2020-10029-1.patch: avoid ldbl-96 stack
      corruption from range reduction of pseudo-zero in
      sysdeps/ieee754/ldbl-96/Makefile,
      sysdeps/ieee754/ldbl-96/e_rem_pio2l.c,
      sysdeps/ieee754/ldbl-96/test-sinl-pseudo.c.
    - debian/patches/any/CVE-2020-10029-2.patch: use stack protector only
      if available in sysdeps/ieee754/ldbl-96/Makefile.
    - CVE-2020-10029

 -- Marc Deslauriers <email address hidden>  Thu, 04 Jun 2020 13:19:08 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Eoan
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
glibc_2.30.orig.tar.xz 16.3 MiB 88b5b39b80a4cb4d7b17bded91a2a9e99ff00190377321446f55d00a97611870
glibc_2.30-0ubuntu2.2.debian.tar.xz 834.2 KiB a8be6178a2ebc433c1c6bcc4c723c4b8d98072c6a3f5afa8f587918ecf377eb2
glibc_2.30-0ubuntu2.2.dsc 9.0 KiB 06764689f1301aea571f20d21e99bc9378cb8021c50bb529a750de919ca3bb50

View changes file

Binary packages built by this source

glibc-doc: No summary available for glibc-doc in ubuntu eoan.

No description available for glibc-doc in ubuntu eoan.

glibc-source: No summary available for glibc-source in ubuntu eoan.

No description available for glibc-source in ubuntu eoan.

libc-bin: No summary available for libc-bin in ubuntu eoan.

No description available for libc-bin in ubuntu eoan.

libc-bin-dbgsym: No summary available for libc-bin-dbgsym in ubuntu eoan.

No description available for libc-bin-dbgsym in ubuntu eoan.

libc-dev-bin: No summary available for libc-dev-bin in ubuntu eoan.

No description available for libc-dev-bin in ubuntu eoan.

libc-dev-bin-dbgsym: No summary available for libc-dev-bin-dbgsym in ubuntu eoan.

No description available for libc-dev-bin-dbgsym in ubuntu eoan.

libc6: No summary available for libc6 in ubuntu eoan.

No description available for libc6 in ubuntu eoan.

libc6-amd64: No summary available for libc6-amd64 in ubuntu eoan.

No description available for libc6-amd64 in ubuntu eoan.

libc6-amd64-dbgsym: No summary available for libc6-amd64-dbgsym in ubuntu eoan.

No description available for libc6-amd64-dbgsym in ubuntu eoan.

libc6-armel: No summary available for libc6-armel in ubuntu eoan.

No description available for libc6-armel in ubuntu eoan.

libc6-armel-dbgsym: No summary available for libc6-armel-dbgsym in ubuntu eoan.

No description available for libc6-armel-dbgsym in ubuntu eoan.

libc6-dbg: No summary available for libc6-dbg in ubuntu eoan.

No description available for libc6-dbg in ubuntu eoan.

libc6-dev: No summary available for libc6-dev in ubuntu eoan.

No description available for libc6-dev in ubuntu eoan.

libc6-dev-amd64: No summary available for libc6-dev-amd64 in ubuntu eoan.

No description available for libc6-dev-amd64 in ubuntu eoan.

libc6-dev-armel: No summary available for libc6-dev-armel in ubuntu eoan.

No description available for libc6-dev-armel in ubuntu eoan.

libc6-dev-i386: No summary available for libc6-dev-i386 in ubuntu eoan.

No description available for libc6-dev-i386 in ubuntu eoan.

libc6-dev-s390: No summary available for libc6-dev-s390 in ubuntu eoan.

No description available for libc6-dev-s390 in ubuntu eoan.

libc6-dev-x32: No summary available for libc6-dev-x32 in ubuntu eoan.

No description available for libc6-dev-x32 in ubuntu eoan.

libc6-i386: No summary available for libc6-i386 in ubuntu eoan.

No description available for libc6-i386 in ubuntu eoan.

libc6-i386-dbgsym: No summary available for libc6-i386-dbgsym in ubuntu eoan.

No description available for libc6-i386-dbgsym in ubuntu eoan.

libc6-pic: No summary available for libc6-pic in ubuntu eoan.

No description available for libc6-pic in ubuntu eoan.

libc6-s390: No summary available for libc6-s390 in ubuntu eoan.

No description available for libc6-s390 in ubuntu eoan.

libc6-s390-dbgsym: No summary available for libc6-s390-dbgsym in ubuntu eoan.

No description available for libc6-s390-dbgsym in ubuntu eoan.

libc6-udeb: No summary available for libc6-udeb in ubuntu eoan.

No description available for libc6-udeb in ubuntu eoan.

libc6-x32: No summary available for libc6-x32 in ubuntu eoan.

No description available for libc6-x32 in ubuntu eoan.

libc6-x32-dbgsym: No summary available for libc6-x32-dbgsym in ubuntu eoan.

No description available for libc6-x32-dbgsym in ubuntu eoan.

locales: No summary available for locales in ubuntu eoan.

No description available for locales in ubuntu eoan.

locales-all: No summary available for locales-all in ubuntu eoan.

No description available for locales-all in ubuntu eoan.

nscd: No summary available for nscd in ubuntu eoan.

No description available for nscd in ubuntu eoan.

nscd-dbgsym: No summary available for nscd-dbgsym in ubuntu eoan.

No description available for nscd-dbgsym in ubuntu eoan.