Results 1 to 3 of 3

Thread: libc6 flaw worry

  1. #1
    Senior Member registered user
    Join Date
    May 2006
    Location
    Columbia, Maryland USA
    Posts
    1,631

    libc6 flaw worry

    .
    I expressed my concern about the following news item to Klaus K:
    http://www.eweek.com/security/linux-...libc-flaw.html

    His comment on this was the following:
    Me too, since all glibc >= 2.9 versions till today are affected, with
    the glibc on Knoppix being no exception.

    For exploiting the vulnerability, the attacker must own the directly
    queried DNS server (i.e. the users access point, or the ISPs DNS server)
    and send manipulated DNS replies from there, or be able to hijack TCP
    connections, and in most cases, programs will just crash on the
    getaddrinfo() library call, but code injection on the stack may be
    possible. Though an attack isn't really easy, it's a real possibility.

    The easy commandline method (for USB flash disk users) for fixing the
    problem, thanks to debian's quick reaction in the unstable branch, would be:

    sudo apt-get update ; sudo apt-get install -t unstable libc6
    which also updates libc6 dependencies.
    I did this on my Knoppix 7.6.1 LiveUSB, and it updated my libc6 to 2.21.0,
    and didn't take up much space on my reiserfs persistence.

    IMO, it may be wise to make this interim correction, since updating the
    whole 4Gb Knoppix iso might not happen right away.

  2. #2
    Senior Member registered user
    Join Date
    May 2006
    Location
    Columbia, Maryland USA
    Posts
    1,631
    Should read updated to libc6 2.21-9, not 2.21.0.
    Last edited by utu; 02-23-2016 at 01:33 AM.

  3. #3
    Senior Member registered user
    Join Date
    May 2006
    Location
    Columbia, Maryland USA
    Posts
    1,631

    A reminder, in case you are not using 7.7.0.

    Regarding libc6...

    http://www.linux-magazine.com/Issues/2016/187/Ask-Klaus

    You don't need to buy the article, just see the first post here.
    Last edited by utu; 05-13-2016 at 06:07 PM.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  


Dell OptiPlex 7050 SFF Core i7-7700 CPU 8GB DDR4 Ram 256GB M.2 SSD Win 11 Pro picture

Dell OptiPlex 7050 SFF Core i7-7700 CPU 8GB DDR4 Ram 256GB M.2 SSD Win 11 Pro

$150.00



Dell 9020 Optiplex Micro-Intel Core i5 - 1TB SSD 8GB RAM Window 11 picture

Dell 9020 Optiplex Micro-Intel Core i5 - 1TB SSD 8GB RAM Window 11

$119.49



Dell OptiPlex 5060 SFF Desktop 256GB SSD 8th Gen i5-8500 3GHz 8GB RAM picture

Dell OptiPlex 5060 SFF Desktop 256GB SSD 8th Gen i5-8500 3GHz 8GB RAM

$105.00



Dell OptiPlex 3060 MT Core i5 8th Gen 16GB Ram 480 GB SSD Windows 11 Computer picture

Dell OptiPlex 3060 MT Core i5 8th Gen 16GB Ram 480 GB SSD Windows 11 Computer

$239.00



NEW OEM Tray AMD Ryzen 7 5700X 8-Core 16-Thread 3.4GHz Socket AM4 CPU Processor picture

NEW OEM Tray AMD Ryzen 7 5700X 8-Core 16-Thread 3.4GHz Socket AM4 CPU Processor

$149.00



Intel Xeon E5-2667 v2 SR19W 3.30GHz 25M 8GT/s 8-Core LGA2011 CPU Processor picture

Intel Xeon E5-2667 v2 SR19W 3.30GHz 25M 8GT/s 8-Core LGA2011 CPU Processor

$24.99



Intel Core i5-7500 3.4 GHz 8 GT/s LGA 1151 Desktop CPU Processor SR335 picture

Intel Core i5-7500 3.4 GHz 8 GT/s LGA 1151 Desktop CPU Processor SR335

$34.99



Intel - Core i9-13900K 13th Gen 24 cores 8 P-cores + 16 E-cores 36M Cache, 3 ... picture

Intel - Core i9-13900K 13th Gen 24 cores 8 P-cores + 16 E-cores 36M Cache, 3 ...

$536.99



Dell 14

Dell 14" TOUCHSCREN Laptop 8th Gen Core i5 16GB RAM 512GB SSD/256 Bluetooth W11

$235.00



HP Desktop i5 OR I7 Computer Mini PC Up To 32GB RAM 2TB SSD Windows 10 Pro WiFi picture

HP Desktop i5 OR I7 Computer Mini PC Up To 32GB RAM 2TB SSD Windows 10 Pro WiFi

$324.00