[Secure-testing-team] Bug#751774: eglibc: CVE-2014-4043: posix_spawn_file_actions_addopen fails to copy the path argument

Salvatore Bonaccorso carnil at debian.org
Mon Jun 16 14:37:40 UTC 2014


Source: eglibc
Version: 2.19-1
Severity: normal
Tags: security upstream fixed-upstream

Hi,

the following vulnerability was published for eglibc.

CVE-2014-4043[0,1]:
posix_spawn_file_actions_addopen fails to copy the path argument

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2014-4043
[1] https://bugzilla.redhat.com/show_bug.cgi?id=1109263

Regards,
Salvatore



More information about the Secure-testing-team mailing list