[CLSA-2025:1757700003] glibc: Fix of CVE-2025-4802
Type:
security
Severity:
Important
Release date:
2025-09-12 18:00:07 UTC
Description:
- CVE-2025-4802: prevent untrusted LD_LIBRARY_PATH from loading dynamically shared libraries in statically compiled binaries that call dlopen
Updated packages:
  • glibc-2.17-326.el7_9.99.tuxcare.els1.i686.rpm
    sha:08af199ce6723f8ec08b724c2dbd284a86de0370f183abdcf9d37dd0528a2420
  • glibc-2.17-326.el7_9.99.tuxcare.els1.x86_64.rpm
    sha:5f4546afac11fb5256ae574f43a25195872ab9b4ba401cc0c0a5ec2fb33a56e0
  • glibc-common-2.17-326.el7_9.99.tuxcare.els1.x86_64.rpm
    sha:adecedb93b0e311b0d7e82563f90c1f904adfdd05ebcb2f21c739ab26d5c32fe
  • glibc-devel-2.17-326.el7_9.99.tuxcare.els1.i686.rpm
    sha:0efe00520e56974d81e07c72be32137614ecde2daa4ab233f3b09cea88787202
  • glibc-devel-2.17-326.el7_9.99.tuxcare.els1.x86_64.rpm
    sha:fe337d2ce1c0bd762ab5d10d271541df1274242c99cc384a716d0c819c1075a4
  • glibc-headers-2.17-326.el7_9.99.tuxcare.els1.x86_64.rpm
    sha:71ddfe8febe7192f9457731a6df57f84f0ab7097fc6dcfe93b87ad20d022943f
  • glibc-static-2.17-326.el7_9.99.tuxcare.els1.i686.rpm
    sha:543794b404957c716a5bbacfa614d1fb4d813d19311d733ac4d07cb59b26d706
  • glibc-static-2.17-326.el7_9.99.tuxcare.els1.x86_64.rpm
    sha:cbb4c72e8dd574a24970f9ed145d386335cc22b18081c1d783d1b755b57c7115
  • glibc-utils-2.17-326.el7_9.99.tuxcare.els1.x86_64.rpm
    sha:6d09a6fac4ab8d104707ad737e764b194bca3043022c171392fd743389d29e55
  • nscd-2.17-326.el7_9.99.tuxcare.els1.x86_64.rpm
    sha:bf063c2b1f727d201c9b1a35692c7ffa7c7be250242cf871566e848da0743c61
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.