An issue was discovered in klibc before 2.0.9. An integer overflow in the cpio command may result in a NULL pointer dereference on 64-bit systems.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "binaries": [ { "binary_version": "2.0.3-0ubuntu1.14.04.3+esm2", "binary_name": "klibc-utils" }, { "binary_version": "2.0.3-0ubuntu1.14.04.3+esm2", "binary_name": "libklibc" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2021/UBUNTU-CVE-2021-31871.json"
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "binaries": [ { "binary_version": "2.0.4-8ubuntu1.16.04.4+esm1", "binary_name": "klibc-utils" }, { "binary_version": "2.0.4-8ubuntu1.16.04.4+esm1", "binary_name": "libklibc" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "2.0.4-9ubuntu2.1", "binary_name": "klibc-utils" }, { "binary_version": "2.0.4-9ubuntu2.1", "binary_name": "libklibc" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "2.0.7-1ubuntu5.1", "binary_name": "klibc-utils" }, { "binary_version": "2.0.7-1ubuntu5.1", "binary_name": "libklibc" } ] }