elsa-2023-12873
oracle_linux
Description
[2.34-60.0.3.7] - CVE-2023-4527: Stack read overflow in getaddrinfo in no-aaa mode (#2234716). - CVE-2203-4806: potential use-after-free in getaddrinfo. - CVE-2023-4813: potential use-after-free in gaih_inet. Reviewed by: Jose E. Marchesi jose.marchesi@oracle.com [2.34-60.0.3] - CVE-2023-4911: tunables: Terminate immediately if end of input is reached Reviewed by: Jose E. Marchesi jose.marchesi@oracle.com
Timeline
- Published
- unknown
- Last Modified
- unknown
CVSS Details
CVSS details not available.
Affected Products
No product information available.
References
No references available.
Linked Vulnerabilities
No linked vulnerabilities found.
{
"cves": [
"CVE-2023-4806",
"CVE-2023-4911",
"CVE-2023-4527",
"CVE-2023-4813"
],
"cvss": 0.0,
"database_specific": {
"severity": "IMPORTANT"
},
"description": "[2.34-60.0.3.7]\n- CVE-2023-4527: Stack read overflow in getaddrinfo in no-aaa mode (#2234716).\n- CVE-2203-4806: potential use-after-free in getaddrinfo.\n- CVE-2023-4813: potential use-after-free in gaih_inet.\n Reviewed by: Jose E. Marchesi jose.marchesi@oracle.com\n\n[2.34-60.0.3]\n- CVE-2023-4911: tunables: Terminate immediately if end of input is reached\n Reviewed by: Jose E. Marchesi jose.marchesi@oracle.com",
"id": "ELSA-2023-12873",
"ovalId": "oval:com.oracle.elsa:def:202312873",
"source": "oracle_linux",
"title": "ELSA-2023-12873: glibc security update (IMPORTANT)",
"url": "https://linux.oracle.com/errata/ELSA-2023-12873.html"
}