Fixed
Details
Details
Assignee
Adhemerval Zanella
Adhemerval ZanellaReporter
TCWG JIRA
TCWG JIRAStart date
Jan 30, 2024
Components
Priority
Checklist
Checklist
Sentry
Sentry
Created January 31, 2024 at 2:41 AM
Updated March 14, 2024 at 1:18 PM
Resolved March 14, 2024 at 1:18 PM
Commit: https://sourceware.org/git/?p=glibc.git;a=commitdiff;h=6bd0e4efcc78f3c0115e5ea9739a1642807450da
commit glibc-2.38.9000-528-g6bd0e4efcc
Author: Arjun Shankar <arjun@redhat.com>
Date: Mon Jan 15 17:44:43 2024 +0100
syslog: Fix heap buffer overflow in __vsyslog_internal (CVE-2023-6246)
__vsyslog_internal did not handle a case where printing a SYSLOG_HEADER
containing a long program name failed to update the required buffer
size, leading to the allocation and overflow of a too-small buffer on
the heap. This commit fixes that. It also adds a new regression test
that uses glibc.malloc.check.
... 4 lines of the commit log omitted.
tcwg_glibc_check
master-arm
FAIL: 1 regressions
https://git-us.linaro.org/toolchain/ci/interesting-commits.git/plain/glibc/sha1/6bd0e4efcc78f3c0115e5ea9739a1642807450da/tcwg_glibc_check/master-arm/details.txt
https://ci.linaro.org/job/tcwg_glibc_check--master-arm-build/892/artifact/artifacts
tcwg_gnu_native_check_glibc
master-arm
FAIL: 1 regressions
https://git-us.linaro.org/toolchain/ci/interesting-commits.git/plain/glibc/sha1/6bd0e4efcc78f3c0115e5ea9739a1642807450da/tcwg_gnu_native_check_glibc/master-arm/details.txt
https://ci.linaro.org/job/tcwg_gnu_native_check_glibc--master-arm-build/577/artifact/artifacts
Latest data: https://git-us.linaro.org/toolchain/ci/interesting-commits.git/plain/glibc/sha1/6bd0e4efcc78f3c0115e5ea9739a1642807450da/jira/yaml