Release date:
2026-08-14 05:06:04 UTC
Description:
- CVE-2024-33599: stack-based buffer overflow in nscd's addinnetgrX() when the
netgroup cache mempool is exhausted and the response is built in a
fixed-size on-stack struct instead of one sized for the request key
- Treat 32-bit x86 as an auxiliary (multilib) arch, matching the i686 package
set AWS publishes for this SRPM: runtime libraries only, no locale data
- Skip the langpack sub-package generation on an auxiliary arch: it builds no
packages there, and the oversized macro expansion is truncated by the rpm in
the i686 chroot, which breaks the SRPM build
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.