Mageia 2020-0135: glibc security update
Summary
Updated glibc packages fix security vulnerabilities:
Trigonometric functions on x86 targets suffered from stack corruption
when they were passed a pseudo-zero argument. Reported by Guido
Vranken / ForAllSecure Mayhem. [BZ 25487] (CVE-2020-10029).
Fix use-after-free in glob when expanding ~user [BZ 25414]
References
- https://bugs.mageia.org/show_bug.cgi?id=26309
- https://sourceware.org/bugzilla/show_bug.cgi?id=25487
- https://sourceware.org/bugzilla/show_bug.cgi?id=25414
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10029
Resolution
MGASA-2020-0135 - Updated glibc packages fix security vulnerabilities
SRPMS
- 7/core/glibc-2.29-20.mga7