elsa-2023-12873

oracle_linux
Description

[2.34-60.0.3.7] - CVE-2023-4527: Stack read overflow in getaddrinfo in no-aaa mode (#2234716). - CVE-2203-4806: potential use-after-free in getaddrinfo. - CVE-2023-4813: potential use-after-free in gaih_inet. Reviewed by: Jose E. Marchesi jose.marchesi@oracle.com [2.34-60.0.3] - CVE-2023-4911: tunables: Terminate immediately if end of input is reached Reviewed by: Jose E. Marchesi jose.marchesi@oracle.com

Timeline
Published
unknown
Last Modified
unknown
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cves": [
    "CVE-2023-4806",
    "CVE-2023-4911",
    "CVE-2023-4527",
    "CVE-2023-4813"
  ],
  "cvss": 0.0,
  "database_specific": {
    "severity": "IMPORTANT"
  },
  "description": "[2.34-60.0.3.7]\n- CVE-2023-4527: Stack read overflow in getaddrinfo in no-aaa mode (#2234716).\n- CVE-2203-4806: potential use-after-free in getaddrinfo.\n- CVE-2023-4813: potential use-after-free in gaih_inet.\n  Reviewed by: Jose E. Marchesi jose.marchesi@oracle.com\n\n[2.34-60.0.3]\n- CVE-2023-4911: tunables: Terminate immediately if end of input is reached\n  Reviewed by: Jose E. Marchesi jose.marchesi@oracle.com",
  "id": "ELSA-2023-12873",
  "ovalId": "oval:com.oracle.elsa:def:202312873",
  "source": "oracle_linux",
  "title": "ELSA-2023-12873:  glibc security update (IMPORTANT)",
  "url": "https://linux.oracle.com/errata/ELSA-2023-12873.html"
}
View JSON API Download JSON