Information on source package musl

Available versions

ReleaseVersion
jessie1.1.5-2+deb8u2
stretch1.1.16-3+deb9u1
buster1.1.21-2
bullseye1.2.2-1
bookworm1.2.3-1
trixie1.2.5-1
sid1.2.5-1

Open issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
CVE-2020-28928fixedfixedvulnerable (no DSA)fixedfixedfixedfixedIn musl libc through 1.2.1, wcsnrtombs mishandles particular combinati ...
CVE-2019-14697vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedmusl libc through 1.1.23 has an x87 floating-point stack adjustment im ...
CVE-2017-15650vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedfixedmusl libc before 1.1.17 has a buffer overflow via crafted DNS replies ...

Resolved issues

BugDescription
CVE-2016-8859Multiple integer overflows in the TRE library and musl libc allow atta ...
CVE-2015-1817Stack-based buffer overflow in the inet_pton function in network/inet_ ...
CVE-2014-3484Multiple stack-based buffer overflows in the __dn_expand function in n ...

Security announcements

DSA / DLADescription
DLA-2474-1musl - security update
ELA-324-1musl - security update

Search for package or bug name: Reporting problems