Slackware 13.1 Updates
Fri Aug 27 00:23:17 UTC 2010
patches/packages/gnupg2-2.0.14-i486-3_slack13.1.txz: Rebuilt.
Patched to fix "Realloc Bug with X.509 certificates in GnuPG".
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2547
(* Security fix *)
patches/packages/httpd-2.2.16-i486-1_slack13.1.txz: Upgraded.
Fix Handling of requests without a path segment.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1452
(* Security fix *)
patches/packages/kdegraphics-4.4.3-i486-3_slack13.1.txz: Rebuilt.
Patched "Okular PDB Processing Memory Corruption Vulnerability"
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2575
http://www.kde.org/info/security/advisory-20100825-1.txt
(* Security fix *)
patches/packages/php-5.2.14-i486-1_slack13.1.txz: Upgraded.
Fixed several security issues.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1917
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2225
http://www.php-security.org/2010/05/31/mops-2010-060-php-session-serializer-session-data-injection-vulnerability/index.html
http://www.php-security.org/2010/06/25/mops-2010-061-php-splobjectstorage-deserialization-use-after-free-vulnerability/index.html
(* Security fix *)
patches/packages/pidgin-2.7.3-i486-1_slack13.1.txz: Upgraded.
This fixes a crash due to malformed X-Status messages.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2528
(* Security fix *)
patches/packages/xorg-server-1.7.7-i486-2_slack13.1.txz: Rebuilt.
Patched to prevent overwriting stack memory and bypassing security mechanisms
on systems that use a 2.6 Linux kernel. Reported by Rafal Wojtczuk.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2240
(* Security fix *)
patches/packages/xorg-server-xephyr-1.7.7-i486-2_slack13.1.txz: Rebuilt.
patches/packages/xorg-server-xnest-1.7.7-i486-2_slack13.1.txz: Rebuilt.
patches/packages/xorg-server-xvfb-1.7.7-i486-2_slack13.1.txz: Rebuilt.
+--------------------------+
SLackware64 13.1 Updates
Fri Aug 27 00:23:17 UTC 2010
patches/packages/gnupg2-2.0.14-x86_64-3_slack13.1.txz: Rebuilt.
Patched to fix "Realloc Bug with X.509 certificates in GnuPG".
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2547
(* Security fix *)
patches/packages/httpd-2.2.16-x86_64-1_slack13.1.txz: Upgraded.
Fix Handling of requests without a path segment.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1452
(* Security fix *)
patches/packages/kdegraphics-4.4.3-x86_64-3_slack13.1.txz: Rebuilt.
Patched "Okular PDB Processing Memory Corruption Vulnerability"
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2575
http://www.kde.org/info/security/advisory-20100825-1.txt
(* Security fix *)
patches/packages/php-5.2.14-x86_64-1_slack13.1.txz: Upgraded.
Fixed several security issues.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1917
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2225
http://www.php-security.org/2010/05/31/mops-2010-060-php-session-serializer-session-data-injection-vulnerability/index.html
http://www.php-security.org/2010/06/25/mops-2010-061-php-splobjectstorage-deserialization-use-after-free-vulnerability/index.html
(* Security fix *)
patches/packages/pidgin-2.7.3-x86_64-1_slack13.1.txz: Upgraded.
This fixes a crash due to malformed X-Status messages.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2528
(* Security fix *)
patches/packages/xorg-server-1.7.7-x86_64-2_slack13.1.txz: Rebuilt.
Patched to prevent overwriting stack memory and bypassing security mechanisms
on systems that use a 2.6 Linux kernel. Reported by Rafal Wojtczuk.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2240
(* Security fix *)
patches/packages/xorg-server-xephyr-1.7.7-x86_64-2_slack13.1.txz: Rebuilt.
patches/packages/xorg-server-xnest-1.7.7-x86_64-2_slack13.1.txz: Rebuilt.
patches/packages/xorg-server-xvfb-1.7.7-x86_64-2_slack13.1.txz: Rebuilt.
+--------------------------+
Slackware -current Updates
Sat Aug 28 21:25:51 UTC 2010
ap/vim-7.3.003-i486-1.txz: Upgraded.
l/libxml2-2.7.7-i486-1.txz: Upgraded.
l/sdl-1.2.14-i486-3.txz: Rebuilt.
n/wpa_supplicant-0.6.10-i486-2.txz: Rebuilt.
Added a missing [D-BUS Service] file.
Thanks to Robby Workman.
x/glew-1.5.5-i486-2.txz: Rebuilt.
xap/vim-gvim-7.3.003-i486-1.txz: Upgraded.
+--------------------------+
Slackware64 -current Updates
Sat Aug 28 21:25:51 UTC 2010
ap/vim-7.3.003-x86_64-1.txz: Upgraded.
l/libxml2-2.7.7-x86_64-1.txz: Upgraded.
l/sdl-1.2.14-x86_64-3.txz: Rebuilt.
n/wpa_supplicant-0.6.10-x86_64-2.txz: Rebuilt.
Added a missing [D-BUS Service] file.
Thanks to Robby Workman.
x/glew-1.5.5-x86_64-2.txz: Rebuilt.
xap/vim-gvim-7.3.003-x86_64-1.txz: Upgraded.
+--------------------------+