Bug 16120 - coreutils new security issues CVE-2015-4041 and CVE-2015-4042
Summary: coreutils new security issues CVE-2015-4041 and CVE-2015-4042
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: 4
Hardware: i586 Linux
Priority: Normal normal
Target Milestone: ---
Assignee: QA Team
QA Contact: Sec team
URL: http://lwn.net/Vulnerabilities/648190/
Whiteboard: MGA4-32-OK MGA4-64-OK has_procedure a...
Keywords: validated_update
Depends on:
Blocks:
 
Reported: 2015-06-15 22:32 CEST by David Walser
Modified: 2015-07-05 19:23 CEST (History)
3 users (show)

See Also:
Source RPM: coreutils-8.21-6.1.mga4.src.rpm
CVE:
Status comment:


Attachments

Description David Walser 2015-06-15 22:32:49 CEST
OpenSuSE has issued an advisory on June 12:
http://lists.opensuse.org/opensuse-updates/2015-06/msg00030.html

PoC information is in the SuSE bug:
https://bugzilla.suse.com/show_bug.cgi?id=928749

A simpler PoC is in this oss-security post:
http://openwall.com/lists/oss-security/2015/05/15/1

I've already verified this fixes the latter PoC on i586.

Patched package uploaded for Mageia 4 (Cauldron was fixed a month ago).

Advisory:
========================

Updated coreutils packages fix security vulnerabilities:

Buffer overflows in sort related to the usage of UTF-8 characters
(CVE-2015-4041, CVE-2015-4042).

References:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4041
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4042
http://lists.opensuse.org/opensuse-updates/2015-06/msg00030.html
========================

Updated packages in core/updates_testing:
========================
coreutils-8.21-6.2.mga4
coreutils-doc-8.21-6.2.mga4

from coreutils-8.21-6.2.mga4.src.rpm

Reproducible: 

Steps to Reproduce:
Comment 1 Shlomi Fish 2015-07-01 16:07:09 CEST
Tested on a Mageia 4 x86-64 VM. PoC failed before the updated and everything was OK after that.

CC: (none) => shlomif
Whiteboard: (none) => MGA4-64-OK has_procedure

Comment 2 David Walser 2015-07-01 16:10:50 CEST
Adding the OK from my previous test.

Whiteboard: MGA4-64-OK has_procedure => MGA4-32-OK MGA4-64-OK has_procedure

Comment 3 Shlomi Fish 2015-07-01 16:12:56 CEST
I also tested both PoCs on MGA4-32-OK and verified them to be fixed.
Comment 4 Dave Hodgins 2015-07-01 23:26:24 CEST
Advisory committed to svn.

Someone from the sysadmin team please push 16120.adv to updates for Mageia 4.

Keywords: (none) => validated_update
Whiteboard: MGA4-32-OK MGA4-64-OK has_procedure => MGA4-32-OK MGA4-64-OK has_procedure advisory
CC: (none) => davidwhodgins, sysadmin-bugs

Comment 5 Mageia Robot 2015-07-05 19:23:25 CEST
An update for this issue has been pushed to Mageia Updates repository.

http://advisories.mageia.org/MGASA-2015-0259.html

Status: NEW => RESOLVED
Resolution: (none) => FIXED


Note You need to log in before you can comment on or make changes to this bug.