[A-1280] New on Slackware-current

View previous topic View next topic Go down

[A-1280] New on Slackware-current

Post  Oncle Jean on Thu Oct 21, 2010 4:38 am

32 bits

Wed Oct 20 23:14:23 UTC 2010
a/glibc-solibs-2.12.1-i486-2.txz: Rebuilt.
Patched "dynamic linker expands $ORIGIN in setuid library search path".
This security issue allows a local attacker to gain root if they can create
a hard link to a setuid root binary. Thanks to Tavis Ormandy.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3847
http://seclists.org/fulldisclosure/2010/Oct/257
(* Security fix *)
a/glibc-zoneinfo-2.12.1-noarch-2.txz: Rebuilt.
a/sysklogd-1.5-i486-1.txz: Upgraded.
l/glibc-2.12.1-i486-2.txz: Rebuilt.
l/glibc-i18n-2.12.1-i486-2.txz: Rebuilt.
l/glibc-profile-2.12.1-i486-2.txz: Rebuilt.
xap/mozilla-firefox-3.6.11-i686-1.txz: Upgraded.
This fixes some security issues.
For more information, see:
http://www.mozilla.org/security/known-vulnerabilities/firefox36.html
(* Security fix *)
xap/mozilla-thunderbird-3.1.5-i686-1.txz: Upgraded.
This upgrade fixes some more security bugs.
For more information, see:
http://www.mozilla.org/security/known-vulnerabilities/thunderbird31.html
(* Security fix *)

ftp://ftp.osuosl.org/pub/slackware/slackware-current/ChangeLog.txt


64 bits

Wed Oct 20 23:14:23 UTC 2010
a/glibc-solibs-2.12.1-x86_64-2.txz: Rebuilt.
Patched "dynamic linker expands $ORIGIN in setuid library search path".
This security issue allows a local attacker to gain root if they can create
a hard link to a setuid root binary. Thanks to Tavis Ormandy.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3847
http://seclists.org/fulldisclosure/2010/Oct/257
(* Security fix *)
a/glibc-zoneinfo-2.12.1-noarch-2.txz: Rebuilt.
a/sysklogd-1.5-x86_64-1.txz: Upgraded.
l/glibc-2.12.1-x86_64-2.txz: Rebuilt.
l/glibc-i18n-2.12.1-x86_64-2.txz: Rebuilt.
l/glibc-profile-2.12.1-x86_64-2.txz: Rebuilt.
xap/mozilla-firefox-3.6.11-x86_64-1.txz: Upgraded.
This fixes some security issues.
For more information, see:
http://www.mozilla.org/security/known-vulnerabilities/firefox36.html
(* Security fix *)
xap/mozilla-thunderbird-3.1.5-x86_64-1.txz: Upgraded.
This upgrade fixes some more security bugs.
For more information, see:
http://www.mozilla.org/security/known-vulnerabilities/thunderbird31.html
(* Security fix *)

ftp://ftp.osuosl.org/pub/slackware/slackware64-current/ChangeLog.txt

_________________
Oncle Jean

- Newsletter
http://tech.groups.yahoo.com/group/slack_linux_fans/

Oncle Jean
Admin

Posts: 8322
Join date: 2009-10-24
Age: 53
Location: Québec

http://slacklinux.darkbb.com

Back to top Go down

View previous topic View next topic Back to top

- Similar topics

Permissions in this forum:
You cannot reply to topics in this forum