Comments

94 Comments
BZ#1123369 Running vim inside screen pressing ctrl+arrow_key deletes several lines of text
BZ#1321954 CVE-2016-3075 glibc: Stack overflow in nss_dns_getnetbyname_r [fedora-all]
BZ#1316972 glibc: NULL pointer dereference in stub resolver with unconnectable name server addresses
BZ#1313404 Test suite failure: elf/tst-audit10 and elf/tst-audit4
BZ#1332914 glibc: Backport nss_dns hardening patches
BZ#1332912 glibc: nss_hesiod: Heap overflow in get_txt_records
BZ#1288740 glibc: tst-makecontext fails on armhfp

See https://bugzilla.redhat.com/show_bug.cgi?id=1252570#c6 for the issue reported by cks. If we say reboot required, we actually mean it. ☺

BZ#1252570 glibc-2.21.90-21.fc23 segfaults in hesiod getgrouplist()
BZ#1308943 CVE-2015-7547 glibc: getaddrinfo stack-based buffer overflow [fedora-all]
BZ#1293532 CVE-2015-7547 glibc: getaddrinfo stack-based buffer overflow

The expected bugs are fixed, build logs did not show any regression, general system behavior appears to be fine.

BZ#1276112 glibc: malloc arena free list can become cyclic
BZ#970866 Test suite failure: tst-audit2.out
BZ#1214152 CVE-2015-1781 glibc: buffer overflow in gethostbyname_r() and related functions with misaligned buffer [fedora-all]
BZ#1276761 CVE-2015-8777 glibc: apply additional pointer guard hardening
BZ#1184168 locale -a output is binary according to grep because of bokmal
BZ#1199525 CVE-2015-1781 glibc: buffer overflow in gethostbyname_r() and related functions with misaligned buffer
BZ#1260581 CVE-2015-8777 glibc: LD_POINTER_GUARD in the environment is not sanitized

I verified that the reproducer from #1295189 no longer works, and tested Firefox and Eclipse with the new glibc.

BZ#1295189 fork hangs after mallocs in multithreaded processes

Basic postgresql-server and mariadb-server usage still works. Login via OpenSSH works as well. Disassembly of libc.so.6 shows the presence of the tls_dtor_list change. Test case from #1288662 now passes.

BZ#1276761 CVE-2015-8777 glibc: apply additional pointer guard hardening
BZ#1288662 openat() && write() broken on i386 with _FILE_OFFSET_BITS 64

With this update, “yum upgrade” works again for me: Installing: git-remote-hg noarch 0.2-4.fc21 updates-testing 26 k replacing git-hg.noarch 2.1.0-2.fc21