{"id":"SUSE-SU-2022:14923-1","summary":"Security update for glibc","details":"This update for glibc fixes the following issues:\n\n- CVE-2022-23219: Fixed buffer overflow in sunrpc clnt_create for 'unix' (bsc#1194768, BZ #22542)\n- CVE-2022-23218: Fixed buffer overflow in sunrpc svcunix_create (bsc#1194770, BZ #28768)\n- CVE-2021-3999: Fixed in getcwd to set errno to ERANGE for size == 1 (bsc#1194640, BZ #28769)\n- CVE-2015-8983: Fixed _IO_wstr_overflow integer overflow (bsc#1193615, BZ #17269)\n- CVE-2015-8982: Fixed memory handling in strxfrm_l (bsc#1193616, BZ #16009)\n","modified":"2026-03-11T07:19:41.230235Z","published":"2022-03-21T08:47:58Z","related":["CVE-2015-8982","CVE-2015-8983","CVE-2021-3999","CVE-2022-23218","CVE-2022-23219"],"upstream":["CVE-2015-8982","CVE-2015-8983","CVE-2021-3999","CVE-2022-23218","CVE-2022-23219"],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2022/suse-su-202214923-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1193615"},{"type":"REPORT","url":"https://bugzilla.suse.com/1193616"},{"type":"REPORT","url":"https://bugzilla.suse.com/1194640"},{"type":"REPORT","url":"https://bugzilla.suse.com/1194768"},{"type":"REPORT","url":"https://bugzilla.suse.com/1194770"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2015-8982"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2015-8983"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-3999"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-23218"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2022-23219"}],"affected":[{"package":{"name":"glibc","ecosystem":"SUSE:Linux Enterprise Point of Sale 11 SP3","purl":"pkg:rpm/suse/glibc&distro=SUSE%20Linux%20Enterprise%20Point%20of%20Sale%2011%20SP3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.11.3-17.110.40.1"}]}],"ecosystem_specific":{"binaries":[{"glibc-locale":"2.11.3-17.110.40.1","glibc-profile":"2.11.3-17.110.40.1","glibc":"2.11.3-17.110.40.1","nscd":"2.11.3-17.110.40.1","glibc-devel":"2.11.3-17.110.40.1","glibc-html":"2.11.3-17.110.40.1","glibc-i18ndata":"2.11.3-17.110.40.1","glibc-info":"2.11.3-17.110.40.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2022:14923-1.json"}},{"package":{"name":"glibc","ecosystem":"SUSE:Linux Enterprise Server 11 SP4-LTSS","purl":"pkg:rpm/suse/glibc&distro=SUSE%20Linux%20Enterprise%20Server%2011%20SP4-LTSS"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.11.3-17.110.40.1"}]}],"ecosystem_specific":{"binaries":[{"glibc-profile-32bit":"2.11.3-17.110.40.1","nscd":"2.11.3-17.110.40.1","glibc-devel-32bit":"2.11.3-17.110.40.1","glibc-devel":"2.11.3-17.110.40.1","glibc-locale-32bit":"2.11.3-17.110.40.1","glibc-profile":"2.11.3-17.110.40.1","glibc":"2.11.3-17.110.40.1","glibc-32bit":"2.11.3-17.110.40.1","glibc-html":"2.11.3-17.110.40.1","glibc-i18ndata":"2.11.3-17.110.40.1","glibc-info":"2.11.3-17.110.40.1","glibc-locale":"2.11.3-17.110.40.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2022:14923-1.json"}}],"schema_version":"1.7.5"}