Säkerhetsuppdatering 23/9 -22
Skriven Av: mdkdio Den: 2022-09-24 07:19:51   

[slackware-security] vim (SSA:2022-266-01)

New vim packages are available for Slackware 15.0 and -current to fix a security issue.

Here are the details from the Slackware 15.0 ChangeLog:

+--------------------------+

patches/packages/vim-9.0.0558-i586-1_slack15.0.txz: Upgraded.
Fixed use after free.
Thanks to marav for the heads-up.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3256
(* Security fix *)
patches/packages/vim-gvim-9.0.0558-i586-1_slack15.0.txz: Upgraded.

+--------------------------+

Säkerhetsuppdatering 21/9 -22
Skriven Av: mdkdio Den: 2022-09-21 21:31:24   

[slackware-security]  bind (SSA:2022-264-01)

New bind packages are available for Slackware 15.0 and -current to

fix security issues.

Here are the details from the Slackware 15.0 ChangeLog:

+--------------------------+

patches/packages/bind-9.16.33-i586-1_slack15.0.txz:  Upgraded.

  This update fixes bugs and the following security issues:

  Fix memory leak in EdDSA verify processing.

  Fix memory leak in ECDSA verify processing.

  Fix serve-stale crash that could happen when stale-answer-client-timeout

  was set to 0 and there was a stale CNAME in the cache for an incoming query.

  Prevent excessive resource use while processing large delegations.

  For more information, see:

    https://kb.isc.org/docs/cve-2022-38178

    https://kb.isc.org/docs/cve-2022-38177

    https://kb.isc.org/docs/cve-2022-3080

    https://kb.isc.org/docs/cve-2022-2795

    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38178

    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-38177

    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3080

    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2795

  (* Security fix *)

+--------------------------+

Säkerhetsuppdatering 21/9 -22
Skriven Av: mdkdio Den: 2022-09-21 20:38:33   

[slackware-security]  expat (SSA:2022-263-01)

New expat packages are available for Slackware 14.0, 14.1, 14.2, 15.0,

and -current to fix a security issue.

Here are the details from the Slackware 15.0 ChangeLog:

+--------------------------+

patches/packages/expat-2.4.9-i586-1_slack15.0.txz:  Upgraded.

  This update fixes a security issue:

  Heap use-after-free vulnerability in function doContent. Expected impact is

  denial of service or potentially arbitrary code execution.

  For more information, see:

    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-40674

  (* Security fix *)

+--------------------------+

Säkerhetsuppdatering 21/9 -22
Skriven Av: mdkdio Den: 2022-09-21 20:36:44   

[slackware-security]  mozilla-firefox (SSA:2022-263-02)

New mozilla-firefox packages are available for Slackware 15.0 and -current to

fix security issues.

Here are the details from the Slackware 15.0 ChangeLog:

+--------------------------+

patches/packages/mozilla-firefox-102.3.0esr-i686-1_slack15.0.txz:  Upgraded.

  This update contains security fixes and improvements.

  For more information, see:

    https://www.mozilla.org/en-US/firefox/102.3.0/releasenotes/

    https://www.mozilla.org/security/advisories/mfsa2022-41/

    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-40959

    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-40960

    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-40958

    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-40956

    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-40957

    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-40962

  (* Security fix *)

+--------------------------+

Filezilla 3.61.0 - Släpptes igår...
Skriven Av: mdkdio Den: 2022-09-20 20:23:02  https://filezilla-project.org 

Och libfilezilla 0.39.1 släpptes några dagar tidigare (13/9-22).

För mer information, klicka på länken ovan...

 

Senaste artikeln är:
Fingeravtrycksläsare i Slackware Linux 15.0

Info om cookies:
Cookies


RSS resultat...

Håkans Slackware

Till minne av Håkan Nilsson
Mitt Slackware
Appendix Programhantering

Senaste Kernel Versioner
Mainline
6.9-rc5 2024-04-21
Stable
6.8.7 2024-04-17
6.7.12 [EOL] 2024-04-03
Longterm
6.6.28 2024-04-17
6.1.87 2024-04-17
5.15.156 2024-04-17
5.10.215 2024-04-13
5.4.274 2024-04-13
4.19.312 2024-04-13