[CLSA-2025:1758892548] glibc: Fix of CVE-2025-4802
Type:
security
Severity:
Important
Release date:
2025-09-26 13:15:56 UTC
Description:
- CVE-2025-4802: prevent untrusted LD_LIBRARY_PATH from loading dynamically shared libraries in statically compiled binaries that call dlopen
Updated packages:
  • glibc-2.17-326.0.9.el7_9.3.tuxcare.els2.i686.rpm
    sha:c901e587cc56eee2deef777869cdbcd660e9b45b050b1cbebbe1f74d44f61b60
  • glibc-2.17-326.0.9.el7_9.3.tuxcare.els2.x86_64.rpm
    sha:4660e92211d52df7489e1ac8d8707b384a49a7ff18fd155df97a5223d89f40e0
  • glibc-common-2.17-326.0.9.el7_9.3.tuxcare.els2.x86_64.rpm
    sha:e722828b7bcc9e689a9efd99709c9f9dd3b574f537072642cd74de1d6f2cfe4a
  • glibc-devel-2.17-326.0.9.el7_9.3.tuxcare.els2.i686.rpm
    sha:c3dba4a4885a96e0aebe9ef94b1d45f60d850776ffc079c69bd3620bce395afe
  • glibc-devel-2.17-326.0.9.el7_9.3.tuxcare.els2.x86_64.rpm
    sha:4288bf4afa1acd001a9e6f01690638809f8420207ee7abdaaeb56b6e44a56c45
  • glibc-headers-2.17-326.0.9.el7_9.3.tuxcare.els2.x86_64.rpm
    sha:b3f957ff7f1c730b72f3d2d1c5b5e8a16d8daf62c9885738e4de5c406996b2e3
  • glibc-static-2.17-326.0.9.el7_9.3.tuxcare.els2.i686.rpm
    sha:7f351899d3d2633f05c159595b1d1d8f268f6daf037c804e3d44c33a6ae7b1eb
  • glibc-static-2.17-326.0.9.el7_9.3.tuxcare.els2.x86_64.rpm
    sha:eb2228b44af1560855e2a5eeb788ca72512a791274b4bb1a4b7ca46217075fc8
  • glibc-utils-2.17-326.0.9.el7_9.3.tuxcare.els2.x86_64.rpm
    sha:99ec10ecb272329f4f60411ed2a940acb139d94bab8a7c993dfbdf96c97fffef
  • nscd-2.17-326.0.9.el7_9.3.tuxcare.els2.x86_64.rpm
    sha:14544beab47cc8703a17f8e7b65f5f01014883676646650827c4c149d8b7fd74
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.