RE: [oss-security] The GNU C Library security advisories update for 2025-05-16

2025-05-16 Thread Caveney, Seamus G
> From: Solar Designer > Sent: Friday, May 16, 2025 10:59 PM > To: Carlos O'Donell > Cc: oss-security@lists.openwall.com > Subject: Re: [oss-security] The GNU C Library security advisories update for > 2025-05-16 > > [...] > > Notably, Go produces static

Re: [oss-security] The GNU C Library security advisories update for 2025-05-16

2025-05-16 Thread Solar Designer
On Fri, May 16, 2025 at 03:41:11PM -0400, Carlos O'Donell wrote: > The following security advisories have been published: > > GLIBC-SA-2025-0002: > === > elf: static setuid binary dlopen may incorrectly search LD_LIBRARY_PATH > (CVE-2025-4802) > > A statically linked setuid binar