[slackware-security] ruby (SSA:2024-114-01)
New ruby packages are available for Slackware 15.0 and -current to
fix security issues.
Here are the details from the Slackware 15.0 ChangeLog:
+--------------------------+
patches/packages/ruby-3.0.7-i586-1_slack15.0.txz: Upgraded.
This update fixes security issues:
Arbitrary memory address read vulnerability with Regex search.
RCE vulnerability with .rdoc_options in RDoc.
Buffer overread vulnerability in StringIO.
For more information, see:
https://www.ruby-lang.org/en/news/2024/04/23/arbitrary-memory-address-read-regexp-cve-2024-27282/
https://www.ruby-lang.org/en/news/2024/03/21/rce-rdoc-cve-2024-27281/
https://www.ruby-lang.org/en/news/2024/03/21/buffer-overread-cve-2024-27280/
https://www.cve.org/CVERecord?id=CVE-2024-27282
https://www.cve.org/CVERecord?id=CVE-2024-27281
https://www.cve.org/CVERecord?id=CVE-2024-27280
(* Security fix *)
+--------------------------+
Missade tydligen... Men den 19/4 släpptes IAF 9.7
Build system support for ARM64X.
Some restructuration of the Vulkan driver interface.
WIDL improvements for ARM support as well as SLTG typelibs.
Various bug fixes (18).
Mer info via länken ovan...
Buggfix!
Mer info via länken ovan.
Uppdatera samtidigt libfilezilla, 0.47
Missade tydligen...
Men den 5 April släpptes WINE 9.6 (utvecklingsversion).
18 fixade buggar.
Mer läsning via länken ovan.
Initial SLTG-format typelib support in widl.
Exception handling on ARM64EC.
Improvements to Minidump support.
Various bug fixes (27).
Mer info via länken ovan (den har en re-direct till changelog)
RSS resultat...
Till minne av Håkan Nilsson
Mitt Slackware
Appendix Programhantering