USN-6541-1 fixed vulnerabilities in the GNU C Library. Unfortunately, changes made to allow proper application of the fix for CVE-2023-4806 in Ubuntu 22.04 LTS introduced an issue in the NSCD service IPv6 processing functionalities. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
It was discovered that the GNU C Library was not properly handling certain memory operations. An attacker could possibly use this issue to cause a denial of service (application crash). (CVE-2023-4806, CVE-2023-4813)
It was discovered that the GNU C library was not properly implementing a fix for CVE-2023-4806 in certain cases, which could lead to a memory leak. An attacker could possibly use this issue to cause a denial of service (application crash). This issue only affected Ubuntu 22.04 LTS and Ubuntu 23.04. (CVE-2023-5156)
{ "binaries": [ { "binary_name": "glibc-doc", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "glibc-source", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc-bin", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc-bin-dbgsym", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc-dev-bin", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc-dev-bin-dbgsym", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc-devtools", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc-devtools-dbgsym", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-amd64", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-amd64-dbgsym", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-dbg", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-dev", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-dev-amd64", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-dev-i386", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-dev-s390", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-dev-x32", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-i386", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-i386-dbgsym", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-prof", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-s390", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-s390-dbgsym", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-x32", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "libc6-x32-dbgsym", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "locales", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "locales-all", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "nscd", "binary_version": "2.35-0ubuntu3.6" }, { "binary_name": "nscd-dbgsym", "binary_version": "2.35-0ubuntu3.6" } ], "availability": "No subscription required" }