Bug 1215714 (CVE-2023-5156) - VUL-0: CVE-2023-5156: glibc: DoS due to memory leak in getaddrinfo.c
Summary: VUL-0: CVE-2023-5156: glibc: DoS due to memory leak in getaddrinfo.c
Status: RESOLVED FIXED
Alias: CVE-2023-5156
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other Other
: P3 - Medium : Minor
Target Milestone: ---
Assignee: Andreas Schwab
QA Contact: Security Team bot
URL: https://smash.suse.de/issue/379740/
Whiteboard: CVSSv3.1:SUSE:CVE-2023-5156:3.7:(AV:N...
Keywords:
Depends on:
Blocks: CVE-2023-4806
  Show dependency treegraph
 
Reported: 2023-09-26 08:37 UTC by SMASH SMASH
Modified: 2023-12-04 12:21 UTC (History)
2 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Comment 1 Cathy Hu 2023-09-26 08:40:44 UTC
Tracking as affected (since the memory leak and CVE-2023-4806 need to be fixed):
- SUSE:ALP:Source:Standard:1.0/glibc  2.37  
- openSUSE:Factory/glibc              2.38

Tracking as not affected:
- SUSE:Carwos:1/glibc                 2.26  
- SUSE:SLE-11-SP3:Update/glibc        2.11.3
- SUSE:SLE-12-SP2:Update/glibc        2.22  
- SUSE:SLE-12-SP4:Update/glibc        2.22  
- SUSE:SLE-15-SP3:Update/glibc        2.31  
- SUSE:SLE-15:Update/glibc            2.26