UbuntuUpdates.org

Package "libnss-resolve"

Name: libnss-resolve

Description:

nss module to resolve names via systemd-resolved

Latest version: 257.4-1ubuntu3.1
Release: plucky (25.04)
Level: updates
Repository: universe
Head package: systemd
Homepage: https://systemd.io

Links


Download "libnss-resolve"


Other versions of "libnss-resolve" in Plucky

Repository Area Version
base universe 257.4-1ubuntu3
security universe 257.4-1ubuntu3.1

Changelog

Version: 257.4-1ubuntu3.1 2025-06-09 19:07:27 UTC

  systemd (257.4-1ubuntu3.1) plucky-security; urgency=medium

  * SECURITY UPDATE: race condition in systemd-coredump
    - debian/patches/CVE_2025_4598_1.patch: coredump: get rid of
      _META_MANDATORY_MAX.
    - debian/patches/CVE_2025_4598_2.patch: coredump: use %d in kernel core
      pattern.
    - debian/patches/CVE_2025_4598_3.patch: coredump: also stop forwarding
      non-dumpable processes.
    - debian/patches/CVE_2025_4598_4.patch: coredump: get rid of a bogus
      assertion.
    - debian/patches/CVE_2025_4598_5.patch: coredump: add support for new %F
      PIDFD specifier.
    - debian/patches/CVE_2025_4598_6.patch: coredump: when %F/pidfd is used,
      again allow forwarding to containers.
    - CVE-2025-4598

 -- Octavio Galland <email address hidden> Wed, 04 Jun 2025 10:00:26 -0300

CVE-2025-4598 A vulnerability was found in systemd-coredump. This flaw allows an attacker to force a SUID process to crash and replace it with a non-SUID binary to



About   -   Send Feedback to @ubuntu_updates