From 30bd499ae1f62e9d2fad4282d42057083709e0eb Mon Sep 17 00:00:00 2001 From: Rich Felker Date: Fri, 6 Jun 2014 18:45:24 -0400 Subject: release 1.0.3 --- WHATSNEW | 16 ++++++++++++++++ 1 file changed, 16 insertions(+) (limited to 'WHATSNEW') diff --git a/WHATSNEW b/WHATSNEW index 89ab5c0..c071bb3 100644 --- a/WHATSNEW +++ b/WHATSNEW @@ -1221,3 +1221,19 @@ compatibility: arch-specific bugs fixed: - misdetection of superh ABI variant by configure on gcc 3.x - missing SO_RCVBUFFORCE and SO_SNDBUFFORCE in mips socket.h + + + +1.0.3 release notes + +bugs fixed: +- buffer overflow in dns response parsing (CVE-2014-3484) +- possible infinite loop in dns response parsing +- fix multiple validation issues in dns response label parsing +- sendfile off_t 32/64-bit size mismatch +- incorrect end pointer in some cases when wcsrtombs stops early +- incorrect if_nametoindex return value when interface does not exist +- dummy "ent" function aliases that possibly shadowed real ones + +arch-specific bugs fixed: +- broken kernel side RLIM_INFINITY on mips -- cgit v1.1