File _patchinfo of Package patchinfo

<patchinfo incident="3949">
  <issue id="882600" tracker="bnc">VUL-0: CVE-2014-4043: glibc,glibc.i686: posix_spawn_file_actions_addopen fails to copy the path argument</issue>
  <issue id="CVE-2014-4043" tracker="cve" />
  <category>security</category>
  <rating>important</rating>
  <packager>Andreas_Schwab</packager>
  <description>glibc was updated to fix one security issue.

This security issue was fixed:
- CVE-2014-4043: The posix_spawn_file_actions_addopen function in glibc did not copy its path argument in accordance with the POSIX specification, which allowed context-dependent attackers to trigger use-after-free vulnerabilities (bsc#882600).
  </description>
  <summary>Security update for glibc</summary>
</patchinfo>
openSUSE Build Service is sponsored by