Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Multiple Vendor calloc() Implementation Integer Overflow Vulnerability

Solution:
The GNU libc CVS repository contains a patch to add overflow detection to calloc.

Users of EnGarde Secure Linux are advised to upgrade vulnerable glibc libraries by installing the RPMs listed in the advisory. Further details can be found in the referenced advisory.

Conectiva has released an advisory (CLA-2002:535) which contains upgrades. See the referenced advisory for further details on obtaining fixes.

HP has released advisory HPSBUX0401-310 to address this issue in HP-UX.


diet libc diet libc 0.18

HP HP-UX 11.0 4

HP HP-UX 11.0

HP HP-UX 11.11

GNU glibc 2.1.3

GNU glibc 2.2.3

GNU glibc 2.2.4







 

Privacy Statement
Copyright 2009, SecurityFocus