Bug 6732 - [Anolis OS 23] Bugfix for CVE-2023-4911
Summary: [Anolis OS 23] Bugfix for CVE-2023-4911
Status: RESOLVED FIXED
Alias: None
Product: Anolis OS 23
Classification: Anolis OS
Component: BaseOS Packages (show other bugs) BaseOS Packages
Version: unspecified
Hardware: All Linux
: P2-High S2-major
Target Milestone: ---
Assignee: happy_orange
QA Contact: bolong_tbl
URL:
Whiteboard:
Keywords: CVE
Depends on:
Blocks:
 
Reported: 2023-10-09 10:10 UTC by 小龙
Modified: 2023-10-09 11:39 UTC (History)
0 users

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description 小龙 admin 2023-10-09 10:10:24 UTC
Description:
linux上的glibc存在溢出漏洞,可导致提权,影响版本2.34<=版本<=2.38,我们的5.10上的glibc受影响

Broken commit info:

Bugfix commit info:
https://sourceware.org/git?p=glibc.git;a=commit;h=2ed18c5b534d9e92fc006202a5af0df6b72e7aca
https://sourceware.org/git/?p=glibc.git;a=commit;h=1056e5b4c3f2d90ed2b4a55f96add28da2f4c8fa
Comment 1 小龙 admin 2023-10-09 11:39:08 UTC
PR: 
https://gitee.com/src-anolis-os/glibc/pulls/44