[CLSA-2022:1666011324] Fix CVE(s): CVE-2019-1010204, CVE-2017-17122
Type:
security
Severity:
Important
Release date:
2022-10-17 12:55:24 UTC
Description:
* SECURITY UPDATE: integer overflow - debian/patches/CVE-2017-17122-pre1.patch: change bfd_get_size/bfd_get_file_size to ufile_ptr. - debian/patches/CVE-2017-17122.patch: stop objdump from attempting to allocate a huge chunk of memory when parsing relocs in a corrupt file. - CVE-2017-17122 * SECURITY UPDATE: out-of-bounds read - debian/patches/CVE-2019-1010204.patch: check start parameter before computing number of bytes to read. - CVE-2019-1010204
Updated packages:
  • binutils_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:902f1378b4ca0c819d3be09e2d39e8c37949efb3
  • binutils-aarch64-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:799020ed256d4e7c6194c1dcd55279437b3c356b
  • binutils-alpha-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:ac1b7ff9e53ddffc3a7d831efe8d2af1a604e288
  • binutils-arm-linux-gnueabi_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:3105a500707509b0a26a1504aee32aaaeb087751
  • binutils-arm-linux-gnueabihf_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:bc1eeb38efa111ce46711949919bec76d02994a1
  • binutils-dev_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:2cd5463ee5c091f4c149226ff61b47a06caf8e9d
  • binutils-doc_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_all.deb
    sha:223b8d7ce8f6a85f4ada498c87e461d553f4d44a
  • binutils-hppa-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:3a9bb53ba7817a47e99e802ee42b060537806611
  • binutils-hppa64-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:7e8efc459a7afbc0b55ebe359b02894a71f6a7a2
  • binutils-m68k-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:2f3448fd93a82df36516986595eee2c1254a72a3
  • binutils-mips-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:78ca8fc9ba62bafe3ecf38a619baa807b7c2d0a3
  • binutils-mips64-linux-gnuabi64_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:84d79b7503db62874604b30de2a9fc2480709d96
  • binutils-mips64el-linux-gnuabi64_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:f8f3e610de228c0cfac066b6b2442d0930267f74
  • binutils-mipsel-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:434f4848b712b4e17f4b5b35f904daa0ba6fdc3f
  • binutils-multiarch_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:2172382a8accbfd150dd3b320607b030ea8c510b
  • binutils-multiarch-dev_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:c044c4b198c653d84ab8f91519bd48289315322e
  • binutils-powerpc-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:0a77f53a703e99238bfe1f75d5b7c7cb4fd433a8
  • binutils-powerpc-linux-gnuspe_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:4071c4f7aff9e68ee5c06e82c28e25e05e0c9a72
  • binutils-powerpc64-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:07ab61859e44c0ddbd2768b90e20dcc930257ba9
  • binutils-powerpc64le-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:61051c4328f27721b8558e51ae86081119e7e30e
  • binutils-s390x-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:43a9e3f3e2d566890b866d893d314217a2d22c25
  • binutils-sh4-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:8483b3551c22215345dc71cbf301d1af8f01b054
  • binutils-source_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_all.deb
    sha:87d3e0b96abf20f2b0d1e151b2905b5fab73d9b2
  • binutils-sparc64-linux-gnu_2.26.1-1ubuntu1~16.04.10+tuxcare.els4_amd64.deb
    sha:a3c6213835c3f79f3b8884cbfce5cef885043b50
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.