about summary refs log tree commit diff
diff options
context:
space:
mode:
-rw-r--r--NEWS43
1 files changed, 41 insertions, 2 deletions
diff --git a/NEWS b/NEWS
index 105b22c682..455ba9553b 100644
--- a/NEWS
+++ b/NEWS
@@ -90,8 +90,47 @@ Security related changes:
 
 The following bugs are resolved with this release:
 
-  [The release manager will add the list generated by
-  scripts/list-fixed-bugs.py just before the release.]
+  [178] string: Please add strlcpy and strlcat (attached)
+  [14697] nptl: Behavior of exit is nonconformant with respect to
+    threads and stdio
+  [15142] stdio: Missing locking in _IO_cleanup
+  [18096] glob: null deref in wordexp/parse_dollars/parse_arith
+  [18906] stdio: fopen: ccs value may affect open mode
+  [24466] stdio: Feature request: provide special printf formats for
+    intXX_t
+  [25457] nss: hosts lookup fails for ipv4mapped ipv6 addresses
+  [28519] libc: system and popen should pass "--" between /bin/sh and
+    argument
+  [29016] stdio: popen() sets errno to ENOMEM when shell does not exist
+  [29591] string: wcsnlen length can overflow in page cross case.
+  [30053] time: strftime %s returns -1 after 2038 on 32 bits systems
+  [30068] stdio: incorrect printf output for integers with thousands
+    separator and width field (CVE-2023-25139)
+  [30111] time: support_descriptors_list fails after 2038 on 32 bits
+    systems
+  [30125] dynamic-link: [regression, bisected] glibc-2.37 creates new
+    symlink for libraries without soname
+  [30130] math: [s390] The _FPU_SETCW macro yields compile error with
+    Clang
+  [30156] time: Potential ntp_gettime abi break
+  [30235] libc: Missing fallback in getlogin if loginuid is unset
+  [30258] dynamic-link: sprof cannot read and display shared object
+    profiling data correctly
+  [30263] libc: Add test coverage for abs(), labs(), and llabs().
+  [30305] math: Incorrect asm constraint in feraiseexcept on x86-64
+  [30402] libc: FAIL: elf/tst-glibcelf
+  [30425] dynamic-link: Symbol lookup during dlclose may fail
+    unnecessarily
+  [30435] dynamic-link: Root dir wrongly marked as nonexist in open_path
+  [30477] libc: [RISCV]: time64 does not work on riscv32
+  [30515] dynamic-link: _dl_find_object incorrectly returns 1 during
+    early startup
+  [30527] network: resolv_conf lock not unlocked on allocation failure
+  [30550] math: powerpc64le: GCC-specific code for isinf() is being used
+    on clang
+  [30555] string: strerror can incorrectly return NULL
+  [30579] malloc: trim_threshold in realloc lead to high memory usage
+  [30662] nscd: Group and password cache use errno in place of errval
 
 Version 2.37