From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: by sourceware.org (Postfix, from userid 48) id 33A4C3842437; Tue, 16 Feb 2021 14:50:52 +0000 (GMT) DKIM-Filter: OpenDKIM Filter v2.11.0 sourceware.org 33A4C3842437 From: "fweimer at redhat dot com" To: glibc-bugs@sourceware.org Subject: [Bug network/27389] getaddrinfo in chroot broken by added dlopen block Date: Tue, 16 Feb 2021 14:50:52 +0000 X-Bugzilla-Reason: CC X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: glibc X-Bugzilla-Component: network X-Bugzilla-Version: 2.33 X-Bugzilla-Keywords: X-Bugzilla-Severity: normal X-Bugzilla-Who: fweimer at redhat dot com X-Bugzilla-Status: UNCONFIRMED X-Bugzilla-Resolution: X-Bugzilla-Priority: P2 X-Bugzilla-Assigned-To: unassigned at sourceware dot org X-Bugzilla-Target-Milestone: --- X-Bugzilla-Flags: security- X-Bugzilla-Changed-Fields: Message-ID: In-Reply-To: References: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: http://sourceware.org/bugzilla/ Auto-Submitted: auto-generated MIME-Version: 1.0 X-BeenThere: glibc-bugs@sourceware.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: Glibc-bugs mailing list List-Unsubscribe: , List-Archive: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 16 Feb 2021 14:50:52 -0000 https://sourceware.org/bugzilla/show_bug.cgi?id=3D27389 --- Comment #4 from Florian Weimer --- It's CVE-2019-14271: https://nvd.nist.gov/vuln/detail/CVE-2019-14271 (The Docker fix is likely incomplete depending on nsswitch.conf contents.) That issue is of no concern once the service is running, it applies to the construction of the chroot contents from the outside. --=20 You are receiving this mail because: You are on the CC list for the bug.=