Bug 828878 (CVE-2012-2673)
Summary: | CVE-2012-2673 gc: malloc() and calloc() overflows | ||
---|---|---|---|
Product: | [Other] Security Response | Reporter: | Jan Lieskovsky <jlieskov> |
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> |
Status: | CLOSED ERRATA | QA Contact: | Miloš Prchlík <mprchlik> |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | unspecified | CC: | cperry, fweimer, ggainey, jkurik, jpazdziora, mmcallis, mmraka, mprchlik, msuchy, paulo.cesar.pereira.de.andrade, praiskup, rdieter, sochotni, taw, tlestach |
Target Milestone: | --- | Keywords: | Security |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2014-03-04 06:25:04 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 828881, 828882, 1012436, 1012437, 1022688, 1053200 | ||
Bug Blocks: | 828887, 1011743 |
Description
Jan Lieskovsky
2012-06-05 14:17:00 UTC
This issue affects the version of the gc package, as shipped with Red Hat Enterprise Linux 6. -- This issue affects the versions of the gc package, as shipped with Fedora release of 15, 16, and 17. Please schedule an update. -- This issue affects the version of the gc package, as shipped with Fedora EPEL 5. Please schedule an update. Created gc tracking bugs for this issue Affects: fedora-all [bug 828881] Affects: epel-5 [bug 828882] The CVE identifier of CVE-2012-2673 has been assigned to this issue: http://www.openwall.com/lists/oss-security/2012/06/07/13 gc-7.2b-2.fc17 has been pushed to the Fedora 17 stable repository. If problems still persist, please make note of it in this bug report. gc-7.2b-2.fc16 has been pushed to the Fedora 16 stable repository. If problems still persist, please make note of it in this bug report. This issue has been addressed in following products: Red Hat Enterprise Linux 6 Via RHSA-2013:1500 https://rhn.redhat.com/errata/RHSA-2013-1500.html This issue has been addressed in following products: Red Hat Satellite Proxy v 5.6 Via RHSA-2014:0150 https://rhn.redhat.com/errata/RHSA-2014-0150.html This issue has been addressed in following products: Red Hat Satellite Server v 5.6 Via RHSA-2014:0149 https://rhn.redhat.com/errata/RHSA-2014-0149.html |