Explications de Patrick Volkerding, mainteneur de la distribution :
The proof of concept exploit does not work on any version of Slackware unless that patch (glibc-2.10-dns-no-gethostbyname4.diff.gz) is removed and glibc is recompiled. The patch came from openSUSE long ago, and was also used by Debian at one time, but we seem to be the only ones who still apply it. I've had two requests in email to remove the patch since glibc had supposedly fixed the issue that prompted it, but left it in place anyway. Maybe luck, maybe slack.
# Slackware non vulnérable
Posté par Ellendhel (site web personnel) . En réponse au journal Faille de sécurité dans la GNU libc avec les requêtes DNS. Évalué à 8.
Curieusement, Slackware ne semble pas être vulnérable au problème, du fait d'un patch spécifique appliqué aux sources de glibc :
discussion et détails sur le forum LinuxQuestions.
Explications de Patrick Volkerding, mainteneur de la distribution :