summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
-rwxr-xr-x14.1/glibc/glibc-multilib.SlackBuild5
-rwxr-xr-xcurrent/glibc/glibc-multilib.SlackBuild5
2 files changed, 8 insertions, 2 deletions
diff --git a/14.1/glibc/glibc-multilib.SlackBuild b/14.1/glibc/glibc-multilib.SlackBuild
index fc807fb..a517d18 100755
--- a/14.1/glibc/glibc-multilib.SlackBuild
+++ b/14.1/glibc/glibc-multilib.SlackBuild
@@ -30,7 +30,7 @@
VERSION=${VERSION:-2.17}
CHECKOUT=${CHECKOUT:-""}
-BUILD=${BUILD:-6alien}
+BUILD=${BUILD:-7alien}
## Included in glibc now:
## glibc-libidn version
@@ -211,6 +211,9 @@ apply_patches() {
# provide the same fix, if needed. But the insecure setting for FUSE
# probably opens up many other possible exploits and should be avoided.
zcat $CWD/glibc.CVE-2013-2207.diff.gz | patch -p1 --verbose || exit 1
+ # Patch integer overflows in pvalloc, valloc, and
+ # posix_memalign/memalign/aligned_alloc (CVE-2013-4332).
+ zcat $CWD/glibc.CVE-2013-4332.diff.gz | patch -p1 --verbose || exit 1
if [ $BOOTSTRP -eq 1 ] ; then
# Multilib - Disable check for forced unwind (Patch from eglibc) since we
# do not have a multilib glibc yet to link to;
diff --git a/current/glibc/glibc-multilib.SlackBuild b/current/glibc/glibc-multilib.SlackBuild
index fc807fb..a517d18 100755
--- a/current/glibc/glibc-multilib.SlackBuild
+++ b/current/glibc/glibc-multilib.SlackBuild
@@ -30,7 +30,7 @@
VERSION=${VERSION:-2.17}
CHECKOUT=${CHECKOUT:-""}
-BUILD=${BUILD:-6alien}
+BUILD=${BUILD:-7alien}
## Included in glibc now:
## glibc-libidn version
@@ -211,6 +211,9 @@ apply_patches() {
# provide the same fix, if needed. But the insecure setting for FUSE
# probably opens up many other possible exploits and should be avoided.
zcat $CWD/glibc.CVE-2013-2207.diff.gz | patch -p1 --verbose || exit 1
+ # Patch integer overflows in pvalloc, valloc, and
+ # posix_memalign/memalign/aligned_alloc (CVE-2013-4332).
+ zcat $CWD/glibc.CVE-2013-4332.diff.gz | patch -p1 --verbose || exit 1
if [ $BOOTSTRP -eq 1 ] ; then
# Multilib - Disable check for forced unwind (Patch from eglibc) since we
# do not have a multilib glibc yet to link to;