<feed xmlns='http://www.w3.org/2005/Atom'>
<title>guix.git/gnu/packages/patches/glibc-CVE-2017-15670-15671.patch, branch master</title>
<subtitle>Personal branch of https://git.savannah.gnu.org/cgit/guix.git/ for implementing 'guix deploy'.
</subtitle>
<id>https://git.jakob.space/guix.git/atom?h=master</id>
<link rel='self' href='https://git.jakob.space/guix.git/atom?h=master'/>
<link rel='alternate' type='text/html' href='https://git.jakob.space/guix.git/'/>
<updated>2018-01-02T15:55:17Z</updated>
<entry>
<title>Revert "gnu: glibc: Fix CVE-2017-15670, CVE-2017-15671."</title>
<updated>2018-01-02T15:55:17Z</updated>
<author>
<name>Marius Bakke</name>
</author>
<published>2017-11-28T17:04:36Z</published>
<link rel='alternate' type='text/html' href='https://git.jakob.space/guix.git/commit/?id=0c86790bfdf5a3e61bff6e289c1dcef16154a27b'/>
<id>urn:sha1:0c86790bfdf5a3e61bff6e289c1dcef16154a27b</id>
<content type='text'>
These issues has been classified as minor by Debian:

https://security-tracker.debian.org/tracker/CVE-2017-15670
https://security-tracker.debian.org/tracker/CVE-2017-15671

In addition, the patch only fixes one of the two CVEs it claims to fix.  We
don't backport most CVEs, especially non-critical ones, so no need to carry
this (which is in 2.26).  See discussion at &lt;https://bugs.gnu.org/29490&gt;.

This reverts commit 60e29339d8389e678bb9ca4bd3420ee9ee88bdf2.
</content>
</entry>
<entry>
<title>gnu: glibc: Fix CVE-2017-15670, CVE-2017-15671.</title>
<updated>2017-10-22T21:13:09Z</updated>
<author>
<name>Marius Bakke</name>
</author>
<published>2017-10-21T21:00:01Z</published>
<link rel='alternate' type='text/html' href='https://git.jakob.space/guix.git/commit/?id=60e29339d8389e678bb9ca4bd3420ee9ee88bdf2'/>
<id>urn:sha1:60e29339d8389e678bb9ca4bd3420ee9ee88bdf2</id>
<content type='text'>
* gnu/packages/patches/glibc-CVE-2017-15670-15671.patch: New file.
* gnu/local.mk (dist_patch_DATA): Register it.
* gnu/packages/base.scm (glibc/linux)[replacement]: New field.
(glibc/fixed): New variable.
(glibc-2.24, glibc-2.23, glibc-2.22)[source](patches): Add
'glibc-CVE-2017-15670-15671.patch'.
</content>
</entry>
</feed>
