SUSE-SU-2019:1958-1

Advisory lineage Upstream: 2 Downstream: 0
Published: 23 Jul 2019, 11:18
Last modified:02 May 2025, 04:03

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

23 Jul 2019, 11:18
Published
Vulnerability first disclosed
02 May 2025, 04:03
Last Modified
Vulnerability information updated

Description

Security update for glibc This update for glibc fixes the following issues: Security issues fixed: - CVE-2019-9169: Fixed a heap-based buffer over-read via an attempted case-insensitive regular-expression match (bsc#1127308). - CVE-2009-5155: Fixed a denial of service in parse_reg_exp() (bsc#1127223). Non-security issues fixed: - Added cfi information for start routines in order to stop unwinding on S390 (bsc#1128574).

Affected Systems

  • suseglibc&distro=SUSE Enterprise Storage 4

    < 2.22-62.22.5

  • suseglibc&distro=SUSE Enterprise Storage 5

    < 2.22-62.22.5

  • suseglibc&distro=SUSE Linux Enterprise Server 12 SP2-BCL

    < 2.22-62.22.5

  • suseglibc&distro=SUSE Linux Enterprise Server 12 SP2-LTSS

    < 2.22-62.22.5

  • suseglibc&distro=SUSE Linux Enterprise Server 12 SP3-LTSS

    < 2.22-62.22.5

  • suseglibc&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP2

    < 2.22-62.22.5

  • suseglibc&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP3

    < 2.22-62.22.5

  • suseglibc&distro=SUSE OpenStack Cloud 7

    < 2.22-62.22.5

  • suseglibc&distro=SUSE OpenStack Cloud 8

    < 2.22-62.22.5

References (6)