[El-errata] ELSA-2011-0412 Important: Oracle Linux 5 glibc security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Mon Apr 4 22:05:35 PDT 2011


Oracle Linux Security Advisory ELSA-2011-0412

https://rhn.redhat.com/errata/RHSA-2011-0412.html

The following updated rpms for Oracle Linux 5 have been uploaded to the 
Unbreakable Linux Network:

i386:
glibc-2.5-58.el5_6.2.i386.rpm
glibc-2.5-58.el5_6.2.i686.rpm
glibc-common-2.5-58.el5_6.2.i386.rpm
glibc-devel-2.5-58.el5_6.2.i386.rpm
glibc-headers-2.5-58.el5_6.2.i386.rpm
glibc-utils-2.5-58.el5_6.2.i386.rpm
nscd-2.5-58.el5_6.2.i386.rpm

x86_64:
glibc-2.5-58.el5_6.2.i686.rpm
glibc-2.5-58.el5_6.2.x86_64.rpm
glibc-common-2.5-58.el5_6.2.x86_64.rpm
glibc-devel-2.5-58.el5_6.2.i386.rpm
glibc-devel-2.5-58.el5_6.2.x86_64.rpm
glibc-headers-2.5-58.el5_6.2.x86_64.rpm
glibc-utils-2.5-58.el5_6.2.x86_64.rpm
nscd-2.5-58.el5_6.2.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol5/SRPMS-updates/glibc-2.5-58.el5_6.2.src.rpm


Description of changes:


[2.5-58.el5_6.2]
- Avoid too much stack use in fnmatch (#681054, CVE-2011-1071)
- Properly quote output of locale (#625893, CVE-2011-1095)
- Don't leave empty element in rpath when skipping the first element,
  ignore rpath elements containing non-isolated use of $ORIGIN when
  privileged (#667974, CVE-2011-0536)
- Fix handling of newline in addmntent (#559579, CVE-2010-0296)

[2.5-58.el5_6.1]
- Don't ignore $ORIGIN in libraries (#682991)





More information about the El-errata mailing list