LINUX LITE 7.2 FINAL RELEASED - SEE RELEASE ANNOUNCEMENTS SECTION FOR DETAILS


Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Glibc: Mega bug may hit thousands of devices
#1
http://www.bbc.co.uk/news/technology-35592916

Significance for LL users??
2006 - HP DC7700p ultraslim Desktop Intel 6300 cpu  4GB Ram LL3.8 64bit.
2007 - Fujitsu Siemens V3405 Laptop  2 GB Ram LL3.6 32bit. Now 32bit Debian 9 + nonfree.
2006 - Fujitsu Siemens Si1520 Laptop Intel T720 cpu 3GB Ram   LL5.6 64 Bit
2014 - Fujitsu Siemens Lifebook E754 Intel i7 4712MQ 16GB Ram LL6.6
2003 - RETIRED Toshiba Satellite Pro A10 1 GB RAM LL2.8 32bit
Reply
#2
(02-17-2016, 11:45 AM)newtusmaximus link Wrote:http://www.bbc.co.uk/news/technology-35592916

Significance for LL users??
While its generally just fine to pay attention to news in this field, it's rarely going to explain things in much detail. And be aware of  scare tactics to get more clicks/views.

But in this case, you'll want to check out https://lists.ubuntu.com/archives/ubuntu...03305.html And here for far more details on the extact issue reported in that article https://sourceware.org/ml/libc-alpha/201...00416.html


If security updates and warnings are of interest to you, I suggest checking out the related mailing lists. And never be afraid to ask or point out a new security issue of this scope. (Your favorite image viewer may not be the end of the world.)
The Truth is out there.
Be sure to check the Manual out and always report Bugs or feature requests.
[Image: psCXIcR.png]
Reply
#3
I recommend that everyone run install updates to get the fixed package shown on the link provided by  shaggytwodope.

I have, and can confirm that the package
Code:
libc6                           2.19-0ubuntu6.7
was updated.

According to the link you need to restart your system for it to complete the process.

Code:
It was discovered that the GNU C Library incorrectly handled receiving
responses while performing DNS resolution. A remote attacker could use this
issue to cause the GNU C Library to crash, resulting in a denial of
service, or possibly execute arbitrary code.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 15.10:
  libc6                           2.21-0ubuntu4.1

Ubuntu 14.04 LTS:
  libc6                           2.19-0ubuntu6.7

Ubuntu 12.04 LTS:
  libc6                           2.15-0ubuntu10.13

After a standard system update you need to reboot your computer to make
all the necessary changes.
“I have not failed. I’ve just found 10,000 ways that won’t work.” - Thomas Edison
Reply
#4
Here also updated to latest version
Life on earth is expensive but it does include a free trip around the sun.
Reply


Forum Jump:


Users browsing this thread: 4 Guest(s)