Your message dated Sun, 04 Sep 2016 22:17:18 +0000
with message-id <e1bgfj4-0002ks...@franck.debian.org>
and subject line Bug#834752: fixed in glibc 2.19-18+deb8u6
has caused the Debian Bug report #834752,
regarding glibc: CVE-2016-6323: Missing unwind information on ARM
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
834752: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=834752
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Source: glibc
Version: 2.23-4
Severity: normal
Tags: security upstream
Forwarded: https://sourceware.org/bugzilla/show_bug.cgi?id=20435
Hi,
the following vulnerability was published for glibc, filling to track
the issue.
CVE-2016-6323[0]:
Missing unwind information on ARM
If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.
For further information see:
[0] https://security-tracker.debian.org/tracker/CVE-2016-6323
[1] https://sourceware.org/bugzilla/show_bug.cgi?id=20435
Please adjust the affected versions in the BTS as needed.
Regards,
Salvatore
--- End Message ---
--- Begin Message ---
Source: glibc
Source-Version: 2.19-18+deb8u6
We believe that the bug you reported is fixed in the latest version of
glibc, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 834...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Aurelien Jarno <aure...@debian.org> (supplier of updated glibc package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Sat, 03 Sep 2016 22:39:43 +0200
Source: glibc
Binary: libc-bin libc-dev-bin glibc-doc glibc-source locales locales-all nscd
multiarch-support libc6 libc6-dev libc6-dbg libc6-pic libc6-udeb libc6.1
libc6.1-dev libc6.1-dbg libc6.1-pic libc6.1-udeb libc0.3 libc0.3-dev
libc0.3-dbg libc0.3-pic libc0.3-udeb libc0.1 libc0.1-dev libc0.1-dbg
libc0.1-pic libc0.1-udeb libc6-i386 libc6-dev-i386 libc6-sparc libc6-dev-sparc
libc6-sparc64 libc6-dev-sparc64 libc6-s390 libc6-dev-s390 libc6-amd64
libc6-dev-amd64 libc6-powerpc libc6-dev-powerpc libc6-ppc64 libc6-dev-ppc64
libc6-mips32 libc6-dev-mips32 libc6-mipsn32 libc6-dev-mipsn32 libc6-mips64
libc6-dev-mips64 libc0.1-i386 libc0.1-dev-i386 libc6-x32 libc6-dev-x32
libc6-i686 libc6-xen libc0.1-i686 libc0.3-i686 libc0.3-xen libc6.1-alphaev67
libc6-loongson2f libnss-dns-udeb libnss-files-udeb
Architecture: source all
Version: 2.19-18+deb8u6
Distribution: stable
Urgency: medium
Maintainer: GNU Libc Maintainers <debian-glibc@lists.debian.org>
Changed-By: Aurelien Jarno <aure...@debian.org>
Description:
glibc-doc - GNU C Library: Documentation
glibc-source - GNU C Library: sources
libc-bin - GNU C Library: Binaries
libc-dev-bin - GNU C Library: Development binaries
libc0.1 - GNU C Library: Shared libraries
libc0.1-dbg - GNU C Library: detached debugging symbols
libc0.1-dev - GNU C Library: Development Libraries and Header Files
libc0.1-dev-i386 - GNU C Library: 32bit development libraries for AMD64
libc0.1-i386 - GNU C Library: 32bit shared libraries for AMD64
libc0.1-i686 - GNU C Library: Shared libraries [i686 optimized]
libc0.1-pic - GNU C Library: PIC archive library
libc0.1-udeb - GNU C Library: Shared libraries - udeb (udeb)
libc0.3 - GNU C Library: Shared libraries
libc0.3-dbg - GNU C Library: detached debugging symbols
libc0.3-dev - GNU C Library: Development Libraries and Header Files
libc0.3-i686 - GNU C Library: Shared libraries [i686 optimized]
libc0.3-pic - GNU C Library: PIC archive library
libc0.3-udeb - GNU C Library: Shared libraries - udeb (udeb)
libc0.3-xen - GNU C Library: Shared libraries [Xen version]
libc6 - GNU C Library: Shared libraries
libc6-amd64 - GNU C Library: 64bit Shared libraries for AMD64
libc6-dbg - GNU C Library: detached debugging symbols
libc6-dev - GNU C Library: Development Libraries and Header Files
libc6-dev-amd64 - GNU C Library: 64bit Development Libraries for AMD64
libc6-dev-i386 - GNU C Library: 32-bit development libraries for AMD64
libc6-dev-mips32 - GNU C Library: o32 Development Libraries for MIPS
libc6-dev-mips64 - GNU C Library: 64bit Development Libraries for MIPS64
libc6-dev-mipsn32 - GNU C Library: n32 Development Libraries for MIPS64
libc6-dev-powerpc - GNU C Library: 32bit powerpc development libraries for
ppc64
libc6-dev-ppc64 - GNU C Library: 64bit Development Libraries for PowerPC64
libc6-dev-s390 - GNU C Library: 32bit Development Libraries for IBM zSeries
libc6-dev-sparc - GNU C Library: 32bit Development Libraries for SPARC
libc6-dev-sparc64 - GNU C Library: 64bit Development Libraries for UltraSPARC
libc6-dev-x32 - GNU C Library: X32 ABI Development Libraries for AMD64
libc6-i386 - GNU C Library: 32-bit shared libraries for AMD64
libc6-i686 - GNU C Library: Shared libraries [i686 optimized]
libc6-loongson2f - GNU C Library: Shared libraries (Loongson 2F optimized)
libc6-mips32 - GNU C Library: o32 Shared libraries for MIPS
libc6-mips64 - GNU C Library: 64bit Shared libraries for MIPS64
libc6-mipsn32 - GNU C Library: n32 Shared libraries for MIPS64
libc6-pic - GNU C Library: PIC archive library
libc6-powerpc - GNU C Library: 32bit powerpc shared libraries for ppc64
libc6-ppc64 - GNU C Library: 64bit Shared libraries for PowerPC64
libc6-s390 - GNU C Library: 32bit Shared libraries for IBM zSeries
libc6-sparc - GNU C Library: 32bit Shared libraries for SPARC
libc6-sparc64 - GNU C Library: 64bit Shared libraries for UltraSPARC
libc6-udeb - GNU C Library: Shared libraries - udeb (udeb)
libc6-x32 - GNU C Library: X32 ABI Shared libraries for AMD64
libc6-xen - GNU C Library: Shared libraries [Xen version]
libc6.1 - GNU C Library: Shared libraries
libc6.1-alphaev67 - GNU C Library: Shared libraries (EV67 optimized)
libc6.1-dbg - GNU C Library: detached debugging symbols
libc6.1-dev - GNU C Library: Development Libraries and Header Files
libc6.1-pic - GNU C Library: PIC archive library
libc6.1-udeb - GNU C Library: Shared libraries - udeb (udeb)
libnss-dns-udeb - GNU C Library: NSS helper for DNS - udeb (udeb)
libnss-files-udeb - GNU C Library: NSS helper for files - udeb (udeb)
locales - GNU C Library: National Language (locale) data [support]
locales-all - GNU C Library: Precompiled locale data
multiarch-support - Transitional package to ensure multiarch compatibility
nscd - GNU C Library: Name Service Cache Daemon
Closes: 818281 832521 834752
Changes:
glibc (2.19-18+deb8u6) stable; urgency=medium
.
* Update from upstream stable branch:
- Fix backtrace hang on armel/armhf, possibly causing a minor
denial-of-service vulnerability (CVE-2016-6323). Closes: #834752.
- Fix open and openat functions with O_TMPFILE. Closes: #832521.
- Drop debian/patches/any/cvs-ld_pointer_guard.diff (merged upstream).
- Drop debian/patches/any/cvs-mangle-tls_dtor_list.diff (merged upstream).
- Drop debian/patches/any/cvs-strxfrm-buffer-overflows.diff (merged
upstream).
* debian/patches/any/submitted-resolv-ipv6-nameservers.diff: replace by
patch cvs-resolv-ipv6-nameservers.diff taken from upstream. This fixes
mtr on systems using only IPv6 nameservers. Closes: #818281.
Checksums-Sha1:
42eba0c41da1a2b527a078d754871dee968cd032 8220 glibc_2.19-18+deb8u6.dsc
0d9eff2b72cf7c6ae4d82859d878751b64cbbcc0 1062520
glibc_2.19-18+deb8u6.debian.tar.xz
3e89b24fff50ac50cb318e5d05b2722b75f26812 2270880
glibc-doc_2.19-18+deb8u6_all.deb
a4e598ecf917102de7a336d094a11f4f30442471 14207582
glibc-source_2.19-18+deb8u6_all.deb
37e0f344107569df3d1d3027b9f73aff01ad9d0d 3945006 locales_2.19-18+deb8u6_all.deb
Checksums-Sha256:
e84bc32d28a021e1d17e41ae2b3c862efe927160525b0fdb2b2bab9151f845b2 8220
glibc_2.19-18+deb8u6.dsc
21ce25c8a325df5a0864217910c9161c0874d1d5f58a18044bf4bdb056311d06 1062520
glibc_2.19-18+deb8u6.debian.tar.xz
681e4b007405ef4b0da3dba5473f0cd0daf06563c677b1b8393e1051f3e78f78 2270880
glibc-doc_2.19-18+deb8u6_all.deb
f24fc46bcd75a5230b6dc58b7df6f050b0e232dd6c078ab397ad9ec534184e64 14207582
glibc-source_2.19-18+deb8u6_all.deb
9b08d567327ecbc922e433b590967e13b0e198e0acf0f572cec2e8a4d7bfab96 3945006
locales_2.19-18+deb8u6_all.deb
Files:
2d09ced86f62a0283db7af1b03d6beb9 8220 libs required glibc_2.19-18+deb8u6.dsc
40846bbfb8a497299533e3763d8a16d7 1062520 libs required
glibc_2.19-18+deb8u6.debian.tar.xz
fc6f49fbd9ac68b69e42c77a358dd451 2270880 doc optional
glibc-doc_2.19-18+deb8u6_all.deb
db2004713e927cc069e36701a5517da0 14207582 devel optional
glibc-source_2.19-18+deb8u6_all.deb
d8e89fa8e2e5f53a96d836eb50ab7a72 3945006 localization standard
locales_2.19-18+deb8u6_all.deb
Package-Type: udeb
-----BEGIN PGP SIGNATURE-----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=Mg5y
-----END PGP SIGNATURE-----
--- End Message ---