r6522 - in glibc-package/trunk/debian: . patches patches/hurd-i386

2015-09-07 Thread Samuel Thibault
Author: sthibault Date: 2015-09-07 23:30:57 + (Mon, 07 Sep 2015) New Revision: 6522 Added: glibc-package/trunk/debian/patches/hurd-i386/cvs-bootstrap.diff glibc-package/trunk/debian/patches/hurd-i386/local-bootstrap.diff Removed: glibc-package/trunk/debian/patches/hurd-i386/submitted-

r6523 - in glibc-package/branches/glibc-2.21/debian: . patches patches/hurd-i386

2015-09-07 Thread Samuel Thibault
Author: sthibault Date: 2015-09-07 23:32:09 + (Mon, 07 Sep 2015) New Revision: 6523 Added: glibc-package/branches/glibc-2.21/debian/patches/hurd-i386/cvs-bootstrap.diff glibc-package/branches/glibc-2.21/debian/patches/hurd-i386/local-bootstrap.diff Removed: glibc-package/branches/gl

Bug#798316: libc6: Pointer guarding bypass in dynamic Setuid binaries

2015-09-07 Thread Hideki Yamane
Package: libc6 Severity: important Tags: security Hi, Just FYI. security vulnerablity was found in glibc. http://hmarco.org/bugs/glibc_ptr_mangle_weakness.html Probably no CVE is not assigned yet. http://seclists.org/oss-sec/2015/q3/504 One of my friend confirmed it works with stretch, s