stable

glibc-2.39-30.fc40

FEDORA-2024-d135dd8f39 created by fweimer 4 months ago for Fedora 40

This update addresses various issues, mostly by incorporating bug fixes from the upstream glibc 2.39 release branch.

  • A security vulnerability in the getrandom and arc4random implementation (CVE-2024-12455) on POWER systems (pcpc64le). On Fedora 40, only the unreleased build glibc-2.39-28.fc40.ppc64le is affected by this issue. The most notable changes are:
  • Performance of the arc4random family function is significantly improved and now comparable to that of alternative userspace implementations from libbsd and oher sources.
  • The glibc-headers-* packages have been eliminated. The multi-arch glibc-devel packages still exist and replace them.
  • The UsrMove/UsrMerge/MoveToUsr transition is applied to the paths in the RPM packages, to fix debuginfo generation. (#1063607)
  • Running ldconfig after upgrading from older Fedora releases no longer produces errors. (swbz#32231)
  • Recursive dlopen function now avoids reinitializing already-initialized TLS. (#2279885)
  • Support recursive use of dynamic TLS in an interposed malloc.

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2024-d135dd8f39

This update has been submitted for testing by fweimer.

4 months ago

This update's test gating status has been changed to 'waiting'.

4 months ago

This update's test gating status has been changed to 'waiting'.

4 months ago

fweimer edited this update.

4 months ago

This update's test gating status has been changed to 'passed'.

4 months ago

This update has been pushed to testing.

4 months ago
User Icon vtrefny provided feedback 4 months ago
karma
User Icon filiperosset commented & provided feedback 4 months ago
karma

no regressios noted

This update can be pushed to stable now if the maintainer wishes

4 months ago
User Icon nixuser commented & provided feedback 4 months ago
karma

Looks fine to me.

This update has been submitted for stable by bodhi.

4 months ago

This update has been pushed to stable.

4 months ago

Please login to add feedback.

Metadata
Type
unspecified
Karma
3
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Dates
submitted
4 months ago
in testing
4 months ago
in stable
4 months ago
modified
4 months ago
approved
4 months ago
BZ#1063607 glibc: Complete Features/UsrMove (aka UsrMerge, MoveToUsr) transition
0
0
BZ#2279885 TLS for a library gets inappropriately marked unallocated when a library is loaded in two contexts
0
0

Automated Test Results