[oss-security] The GNU C Library security advisories update for 2025-05-16

2025-05-16 Thread Carlos O'Donell
The following security advisories have been published: GLIBC-SA-2025-0002: === elf: static setuid binary dlopen may incorrectly search LD_LIBRARY_PATH (CVE-2025-4802) A statically linked setuid binary that calls dlopen (including internal dlopen calls after setlocale or calls to

[oss-security] The GNU C Library security advisories update for 2024-05-06

2024-05-06 Thread Carlos O'Donell
The following security advisories have been published: GLIBC-SA-2024-0005: === nscd: Stack-based buffer overflow in netgroup cache If the Name Service Cache Daemon's (nscd) fixed size cache is exhausted by client requests then a subsequent client request for netgroup data may resu