The GNU C Library project provides the core libraries for the GNU system and GNU/Linux systems, as well as many other systems that use Linux as the kernel. These libraries provide critical APIs including ISO C11, POSIX.1-2008, BSD, OS-specific APIs and more. These APIs include such foundational facilities as open, read, write, malloc, printf, getaddrinfo, dlopen, pthread_create, crypt, login, exit and more.
Security Fix(es):
Calling wordexp with WRDEREUSE in conjunction with WRDEAPPEND in the GNU C Library version 2.0 to version 2.42 may cause the interface to return uninitialized memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.(CVE-2025-15281)
{
"severity": "High"
}{
"aarch64": [
"glibc-2.38-88.oe2403sp3.aarch64.rpm",
"glibc-all-langpacks-2.38-88.oe2403sp3.aarch64.rpm",
"glibc-common-2.38-88.oe2403sp3.aarch64.rpm",
"glibc-debuginfo-2.38-88.oe2403sp3.aarch64.rpm",
"glibc-debugsource-2.38-88.oe2403sp3.aarch64.rpm",
"glibc-debugutils-2.38-88.oe2403sp3.aarch64.rpm",
"glibc-devel-2.38-88.oe2403sp3.aarch64.rpm",
"glibc-locale-archive-2.38-88.oe2403sp3.aarch64.rpm",
"glibc-locale-source-2.38-88.oe2403sp3.aarch64.rpm",
"glibc-nss-devel-2.38-88.oe2403sp3.aarch64.rpm",
"libnsl-2.38-88.oe2403sp3.aarch64.rpm",
"nscd-2.38-88.oe2403sp3.aarch64.rpm",
"nss_modules-2.38-88.oe2403sp3.aarch64.rpm"
],
"src": [
"glibc-2.38-88.oe2403sp3.src.rpm"
],
"noarch": [
"glibc-help-2.38-88.oe2403sp3.noarch.rpm"
],
"x86_64": [
"glibc-2.38-88.oe2403sp3.x86_64.rpm",
"glibc-all-langpacks-2.38-88.oe2403sp3.x86_64.rpm",
"glibc-common-2.38-88.oe2403sp3.x86_64.rpm",
"glibc-debuginfo-2.38-88.oe2403sp3.x86_64.rpm",
"glibc-debugsource-2.38-88.oe2403sp3.x86_64.rpm",
"glibc-debugutils-2.38-88.oe2403sp3.x86_64.rpm",
"glibc-devel-2.38-88.oe2403sp3.x86_64.rpm",
"glibc-locale-archive-2.38-88.oe2403sp3.x86_64.rpm",
"glibc-locale-source-2.38-88.oe2403sp3.x86_64.rpm",
"glibc-nss-devel-2.38-88.oe2403sp3.x86_64.rpm",
"libnsl-2.38-88.oe2403sp3.x86_64.rpm",
"nscd-2.38-88.oe2403sp3.x86_64.rpm",
"nss_modules-2.38-88.oe2403sp3.x86_64.rpm"
]
}