-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 27 Apr 2026 22:14:33 +0200 Source: glibc Binary: libc-bin libc-bin-dbgsym libc-dev-bin libc-dev-bin-dbgsym libc-devtools libc-devtools-dbgsym libc6 libc6-amd64 libc6-amd64-dbgsym libc6-dbg libc6-dev libc6-dev-amd64 libc6-dev-dbgsym libc6-dev-x32 libc6-udeb libc6-x32 libc6-x32-dbgsym locales-all nscd nscd-dbgsym Architecture: i386 Version: 2.36-9+deb12u14 Distribution: bookworm Urgency: medium Maintainer: i386 Build Daemon (x86-grnet-01) Changed-By: Aurelien Jarno Description: libc-bin - GNU C Library: Binaries libc-dev-bin - GNU C Library: Development binaries libc-devtools - GNU C Library: Development tools libc6 - GNU C Library: Shared libraries libc6-amd64 - GNU C Library: 64bit Shared libraries for AMD64 libc6-dbg - GNU C Library: detached debugging symbols libc6-dev - GNU C Library: Development Libraries and Header Files libc6-dev-amd64 - GNU C Library: 64bit Development Libraries for AMD64 libc6-dev-x32 - GNU C Library: X32 ABI Development Libraries for AMD64 libc6-udeb - GNU C Library: Shared libraries - udeb (udeb) libc6-x32 - GNU C Library: X32 ABI Shared libraries for AMD64 locales-all - GNU C Library: Precompiled locale data nscd - GNU C Library: Name Service Cache Daemon Closes: 1125678 1125748 1126266 1131435 1131887 1132499 Changes: glibc (2.36-9+deb12u14) bookworm; urgency=medium . * debian/patches/git-updates.diff: update from upstream stable branch: - Fix a performance bottleneck with the Address Sanitizer (ASAN) on 32-bit arm. - Fix _dl_find_object when ld.so has LOAD segment gaps, causing wrong backtrace unwinding. This affects at least arm64. - Add GLIBC_ABI_DT_X86_64_PLT symbol version on amd64. - Fix typo in wmemset ifunc selector that caused AVX2/AVX512 paths to be skipped. - Fix POWER optimized rawmemchr function on ppc64el. - Optimize trylock for high cache contention workloads. - Fix and integer overflow in _int_memalign leading to heap corruption (CVE-2026-0861). Closes: #1125678. - Fix stack contents leak in getnetbyaddr (CVE-2026-0915). Closes: #1125748. - Fix bug in wordexp, which could return uninitialized memory when using WRDE_REUSE together with WRDE_APPEND (CVE-2025-15281). Closes: #1126266. - Fix invalid pointer arithmetic in ANSI_X3.110 iconv module - Fix a typo preventing new tst-wordexp-reuse-mem to run - Fix incorrect handling of DNS responses in gethostbyaddr and gethostbyaddr_r (CVE-2026-4437). Closes: #1131435. - Fix invalid DNS hostnames returned by gethostbyaddr and gethostbyaddr_r (CVE-2026-4438). Closes: #1131887. - Fix random failure of tst-link-map-contiguous-ldso. - Fix a possible crash due to an assertion failure when converting inputs from the IBM139x character sets (CVE-2026-4046). Closes: #1132499. * d/p/amd64/local-revert-x86-64-add-GLIBC_ABI_DT_X86_64_PLT-version.diff: revert addition of the GLIBC_ABI_DT_X86_64_PLT symbol version used as ABI flag, as the dpkg-shlibdeps version in bookworm is not able to handle it (see #1122107). Checksums-Sha1: 14225921860843207599614791e7323c064f35eb 15705 glibc_2.36-9+deb12u14_i386-buildd.buildinfo f6f1366551c0482bfd4bcd57880a156c49d18da4 2243812 libc-bin-dbgsym_2.36-9+deb12u14_i386.deb ea3a4f2150e60f9a92563286c8f0b042566b374b 635312 libc-bin_2.36-9+deb12u14_i386.deb 5a886e0d8e33564dcf0b4b192489f79785ff4bc2 28576 libc-dev-bin-dbgsym_2.36-9+deb12u14_i386.deb e89f46aa10fea45ad04ea26071b92e816719913d 48188 libc-dev-bin_2.36-9+deb12u14_i386.deb 75180cdf4c3e56cc703b142d9ae8b9b387ecce70 42632 libc-devtools-dbgsym_2.36-9+deb12u14_i386.deb 9a6594d2feca2e2ac2153380027f851dc33fc1ad 57376 libc-devtools_2.36-9+deb12u14_i386.deb 4d2ab300de029caac412c85bcc516f0ef866ea6a 7337876 libc6-amd64-dbgsym_2.36-9+deb12u14_i386.deb d8ec3fb79ac26c339b92801665050949b3d0c26d 2590476 libc6-amd64_2.36-9+deb12u14_i386.deb d9adf7c079bb9bc7d098197be5c4026abfdd6ab3 7114240 libc6-dbg_2.36-9+deb12u14_i386.deb 15ece96f44b728ec43af578cf0cdf2fbab4b8400 1534940 libc6-dev-amd64_2.36-9+deb12u14_i386.deb 2c265040617a499dd9d745d75034aee841761e49 14716 libc6-dev-dbgsym_2.36-9+deb12u14_i386.deb 4a3f401f8a9e0e9b207c7f74d05381206a0506d5 1519564 libc6-dev-x32_2.36-9+deb12u14_i386.deb a9b5ad4b8ec04f69b36e002291be459a24dd710f 1724452 libc6-dev_2.36-9+deb12u14_i386.deb 103db8629a9a7168c22cb81581e8387d08f92dcd 1223400 libc6-udeb_2.36-9+deb12u14_i386.udeb 616fb942e2440171ab18ac4ad7ea6288049bfcdd 7234488 libc6-x32-dbgsym_2.36-9+deb12u14_i386.deb 2f98de5ef699e09eb82d34ccab5789473fdc8857 2587040 libc6-x32_2.36-9+deb12u14_i386.deb 44d5d3629a2d9c82d393eed374215c8d0c524483 2626392 libc6_2.36-9+deb12u14_i386.deb a7e76cb4b5931bc0318dc444f89ac8bdeef99af5 10653284 locales-all_2.36-9+deb12u14_i386.deb 67f9bbb4a6ff6d7a3d1ce44187f999dfc8e1c43e 255584 nscd-dbgsym_2.36-9+deb12u14_i386.deb f365b2914001a02874e642b132919cc61d3fa5ff 108428 nscd_2.36-9+deb12u14_i386.deb Checksums-Sha256: 0def949ab3c8c49a18558bf55437a538b6aed15aab5b93a9864c169677260717 15705 glibc_2.36-9+deb12u14_i386-buildd.buildinfo f1ad75f2a26e3d7f4d552f6f8e1f0af58ec8a0c7e86440b56ba9f4d8e82327c0 2243812 libc-bin-dbgsym_2.36-9+deb12u14_i386.deb 69b8e898575ef01752bc7f133a6404f7400d1053b3dc57dc856625371fe14482 635312 libc-bin_2.36-9+deb12u14_i386.deb d7a98afaafadced69281f160e45d334f34cf54ae411bcb7bd93ef0288a003151 28576 libc-dev-bin-dbgsym_2.36-9+deb12u14_i386.deb ecf49dc4f0c5872b8bb9773347b43b7c96785d129baa322aac1deb973d5280c4 48188 libc-dev-bin_2.36-9+deb12u14_i386.deb 26eb547b38f0aa29907cf8805cb6ade96c2fedc13b8f67731f3009a5ae100486 42632 libc-devtools-dbgsym_2.36-9+deb12u14_i386.deb 0d29daff61505137838e81c3f7addfc0ed30669cce0f6256a46c8156ae1e37b6 57376 libc-devtools_2.36-9+deb12u14_i386.deb 07d01b5e8be94ca83140492b239ae253002a7f1619bc84effccf13337b8795b5 7337876 libc6-amd64-dbgsym_2.36-9+deb12u14_i386.deb 4d025cdf267daa6a243c94f4e6b742398d3461baffac01f2504f0f5341435811 2590476 libc6-amd64_2.36-9+deb12u14_i386.deb 9c763316029ee67bdf1c1c852aabba98f20a4e3620cf991c74fdfacb5bade59b 7114240 libc6-dbg_2.36-9+deb12u14_i386.deb 0f6c1a777bdf9728f7f649169bfef4d2215d9e18f61b89d37ef7ff1779279d7c 1534940 libc6-dev-amd64_2.36-9+deb12u14_i386.deb e5d2e3c4e602bee543a050d1133ad5cc5cd7bfbd139bb5c0b8d83d24b7f0d30c 14716 libc6-dev-dbgsym_2.36-9+deb12u14_i386.deb b8181129d05a561dd977ebbc574e206880abe3fbf950e935487fd3729f0c501c 1519564 libc6-dev-x32_2.36-9+deb12u14_i386.deb c02c0adacabf53b8f34364940c7c4fe5aedaf921765e915742cc31ffc7a9d1ad 1724452 libc6-dev_2.36-9+deb12u14_i386.deb fdae016320edcd065d6daadb09a8ff197d8133bdc0faf44f69311c5f7c416ab7 1223400 libc6-udeb_2.36-9+deb12u14_i386.udeb f3781329512b56f3d344dc0f421560297261e403851d7baf855d7da882ed3777 7234488 libc6-x32-dbgsym_2.36-9+deb12u14_i386.deb 15b3a0348a11e2038c191f6d79c7d03ba296d6d916859e7f38018a2bd577eb7b 2587040 libc6-x32_2.36-9+deb12u14_i386.deb 76b12e06be66ec3fc2c1791d7d8cf34c2b828ed210e3913feeeb8edc9688f820 2626392 libc6_2.36-9+deb12u14_i386.deb 4913c214a070f7e8351d72eaf8b4e729b33e9ff42fe55e2aa598e664fe18ff57 10653284 locales-all_2.36-9+deb12u14_i386.deb 72c8937cc60e8993b14ae40e5afbf9eefd15c9110dd0e32c242b710d1e1fe152 255584 nscd-dbgsym_2.36-9+deb12u14_i386.deb b32e6fdf75364dd72fb78ead743c281ee2badf5833a28568b2ffe07f1c74fdf2 108428 nscd_2.36-9+deb12u14_i386.deb Files: 0e6cc03a967513e374c609baea703d31 15705 libs required glibc_2.36-9+deb12u14_i386-buildd.buildinfo db683e95348cf413e4cae7b40187ade3 2243812 debug optional libc-bin-dbgsym_2.36-9+deb12u14_i386.deb 43867f02a8b0d95dc1abc0806b916cfc 635312 libs required libc-bin_2.36-9+deb12u14_i386.deb 5b9909c310fd64b584c75dd358bab649 28576 debug optional libc-dev-bin-dbgsym_2.36-9+deb12u14_i386.deb 2f2da8eac48c9a7a5d58484cf3bc28f8 48188 libdevel optional libc-dev-bin_2.36-9+deb12u14_i386.deb 5620f32d21ad8f8ca56a908c629b41a1 42632 debug optional libc-devtools-dbgsym_2.36-9+deb12u14_i386.deb ff9626a36e5b8797ce9e703a9cbb63c3 57376 devel optional libc-devtools_2.36-9+deb12u14_i386.deb e8d6c47e71f308fd7d4e7f5a55a0bd55 7337876 debug optional libc6-amd64-dbgsym_2.36-9+deb12u14_i386.deb c85c5287f4014e4d5448836f887683e3 2590476 libs optional libc6-amd64_2.36-9+deb12u14_i386.deb 019e2b00bc5d13ad7d87fa01140d576e 7114240 debug optional libc6-dbg_2.36-9+deb12u14_i386.deb 78557b563368a019bd472f249c744bfc 1534940 libdevel optional libc6-dev-amd64_2.36-9+deb12u14_i386.deb 62eb1871774fb8d534fc451b2c11bd64 14716 debug optional libc6-dev-dbgsym_2.36-9+deb12u14_i386.deb 78f19d8d7d42167e25be7515c9592585 1519564 libdevel optional libc6-dev-x32_2.36-9+deb12u14_i386.deb 9b7ba38629a8911e5dccf8ab0ebd4ba3 1724452 libdevel optional libc6-dev_2.36-9+deb12u14_i386.deb 17cb267289681de4235d7733a1354b58 1223400 debian-installer optional libc6-udeb_2.36-9+deb12u14_i386.udeb aa4d7999bde10c718508d481d6bf14d3 7234488 debug optional libc6-x32-dbgsym_2.36-9+deb12u14_i386.deb ea0bbaf567c8cbbae8148a456201c7ed 2587040 libs optional libc6-x32_2.36-9+deb12u14_i386.deb d67c321c4ee4fe556e05d64bca3d44d6 2626392 libs optional libc6_2.36-9+deb12u14_i386.deb 09485b776a36784637bc7e60dfec5570 10653284 localization optional locales-all_2.36-9+deb12u14_i386.deb 310d97c9f292624aec61371a37ebe259 255584 debug optional nscd-dbgsym_2.36-9+deb12u14_i386.deb b956be3adf7c4a24ab6590efc45d3385 108428 admin optional nscd_2.36-9+deb12u14_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEPAUaMA0H0rOy6qBWf2INRiCdaWIFAmn3zUIACgkQf2INRiCd aWLzGQ//ZhfekHxf4mseAsxfbUyxMtfPUycwvjZJ1imdOheTp25o1hAX6U2Y76wx x9YzWZ/SdO1h2G47S5wj9QajBrI5WnYKTD/yNdKxi7Km8mCDl5rblXRbxkbeVqcV GLhvGHPOmMtml6a2vI2Er0Ly5ikJx9RLV4/nVtOLmsnn8MHW4Ea0QFOGgylRrsvJ OjnzQEDYaNQCnCyVoTTZO9Y2sdEzcLkcglyPjY+9TTavGSW23rHvxpF+8YDYFZle CsGPbwGH1ZMoa5dISw0mp6qyJOzlgHuXNtEMloaD/GmA+Vasmf8GbctMssiXB90H SmKVLvoK1lw1053kks9sZZMnu807Yfat2UZxQh9LY+mgbSjJYVXaq7Iq0vIdf7Zc dseSVhif7HoqOUguRUfDvAvtZWHXEo24paiUgvDli/IiWNvjEyGVrY9ShT4X7PGA t9FBOK7k0sf+VPma2H8e/vH9agsNAaePYSiPWyX3aMMYjTXFJgKnbsWpXPRfoOFW kYP/TSqB6FUflVdc5Wz6QfOc3gQbjdcHfBOWkOYwKrHL68Lp6a1YkJNPFkz+s1cQ H1DHeHs328J7a8CGkMfHKtULBdx2zWDEE0dW/MEZDS7Viz3CTLiWmICF74CSk+G5 IZzk2u4Y50q3ofgcehWLDeCZqwMhunAU4fiHWcYjiIwqhdOvMj0= =BB1m -----END PGP SIGNATURE-----