Security update for glibc
This update for glibc fixes the following issues:
- CVE-2021-35942: wordexp: handle overflow in positional parameter number (bsc#1187911)
- CVE-2021-33574: Use __pthread_attr_copy in mq_notify (bsc#1186489)
This update was imported from the SUSE:SLE-15:Update update project.
-
Submitted by
Andreas Schwab (Andreas_Schwab)
Fixed bugs
bnc#1186489
VUL-0: CVE-2021-33574: glibc: mq_notify() has a use-after-free
bnc#1187911
VUL-0: CVE-2021-35942: glibc: Arbitrary read in wordexp()