summaryrefslogtreecommitdiffstats
path: root/current
diff options
context:
space:
mode:
author Eric Hameleers <alien@slackware.com>2013-09-16 17:28:14 +0000
committer Eric Hameleers <alien@slackware.com>2013-09-16 17:28:14 +0000
commitc3ce204aee764cec6e24b03187c2f32942f5b6c9 (patch)
treee3ea2de07cd697702a0d1758e4ed3c9971750d83 /current
parent1965b8be8c954088c87cc7d64394fd6c370710f9 (diff)
downloadmultilib-c3ce204aee764cec6e24b03187c2f32942f5b6c9.tar.gz
multilib-c3ce204aee764cec6e24b03187c2f32942f5b6c9.tar.xz
Patch CVE-2013-4332
Diffstat (limited to 'current')
-rwxr-xr-xcurrent/glibc/glibc-multilib.SlackBuild5
1 files changed, 4 insertions, 1 deletions
diff --git a/current/glibc/glibc-multilib.SlackBuild b/current/glibc/glibc-multilib.SlackBuild
index fc807fb..a517d18 100755
--- a/current/glibc/glibc-multilib.SlackBuild
+++ b/current/glibc/glibc-multilib.SlackBuild
@@ -30,7 +30,7 @@
VERSION=${VERSION:-2.17}
CHECKOUT=${CHECKOUT:-""}
-BUILD=${BUILD:-6alien}
+BUILD=${BUILD:-7alien}
## Included in glibc now:
## glibc-libidn version
@@ -211,6 +211,9 @@ apply_patches() {
# provide the same fix, if needed. But the insecure setting for FUSE
# probably opens up many other possible exploits and should be avoided.
zcat $CWD/glibc.CVE-2013-2207.diff.gz | patch -p1 --verbose || exit 1
+ # Patch integer overflows in pvalloc, valloc, and
+ # posix_memalign/memalign/aligned_alloc (CVE-2013-4332).
+ zcat $CWD/glibc.CVE-2013-4332.diff.gz | patch -p1 --verbose || exit 1
if [ $BOOTSTRP -eq 1 ] ; then
# Multilib - Disable check for forced unwind (Patch from eglibc) since we
# do not have a multilib glibc yet to link to;