ELA-874-1 glibc security update

denial of service

2023-06-20
Packageglibc
Version2.19-18+deb8u12 (jessie)
Related CVEs CVE-2015-20109


This update fixes a denial of service condition in fnmatch. This is a variant of CVE-2015-8984, which has been associated with BZ#18032. This variant is reported as BZ#18036, but has not been fixed together with the original problem.



For Debian 8 jessie, these problems have been fixed in version 2.19-18+deb8u12.

We recommend that you upgrade your glibc packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.