Issued at: 2026-05-29
Updated at: 2026-05-29
Synopsis
Moderate: glibc security update
Description
The glibc packages provide the standard C libraries (libc), POSIX thread libraries (libpthread), standard math libraries (libm), and the name service cache daemon (nscd) used by multiple programs on the system. Without these libraries, the Linux system cannot function correctly.
Security Fix(es):
* glibc: glibc: Incorrect DNS response parsing via crafted DNS server response (CVE-2026-4437)
* glibc: glibc: Invalid DNS hostname returned via gethostbyaddr functions (CVE-2026-4438)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.