[A-152] Security Updates

View previous topic View next topic Go down

[A-152] Security Updates

Post  Oncle Jean on Tue Mar 02, 2010 4:06 am

Slackware-stable ChangeLog

1. 32 bits:
Mon Mar 1 05:02:21 UTC 2010
patches/packages/openssl-0.9.8m-i486-1_slack13.0.txz: Upgraded.
This OpenSSL update contains some security related bugfixes.
For more information, see the included CHANGES and NEWS files, and:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1678
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1378
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1377
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1379
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3245
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4355
(* Security fix *)
patches/packages/openssl-solibs-0.9.8m-i486-1_slack13.0.txz: Upgraded.
patches/packages/proftpd-1.3.3-i486-1_slack13.0.txz: Upgraded.
patches/packages/seamonkey-2.0.3-i486-1_slack13.0.txz: Upgraded.
This release fixes some more security vulnerabilities.
For more information, see:
http://www.mozilla.org/security/known-vulnerabilities/seamonkey20.html
(* Security fix *)
patches/packages/seamonkey-solibs-2.0.3-i486-1_slack13.0.txz: Upgraded.

ftp://ftp.osuosl.org/pub/slackware/slackware-13.0/ChangeLog.txt


2. 64 bits:
Mon Mar 1 05:02:21 UTC 2010
patches/packages/gzip-1.4-x86_64-1_slack13.0.tgz: Upgraded.
gzip -d could segfault and/or clobber the stack, possibly leading to
arbitrary code execution. This affects x86_64 but not 32-bit systems.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0001
(* Security fix *)
patches/packages/openssl-0.9.8m-x86_64-1_slack13.0.txz: Upgraded.
This OpenSSL update contains some security related bugfixes.
For more information, see the included CHANGES and NEWS files, and:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1678
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1378
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1377
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1379
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3245
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4355
(* Security fix *)
patches/packages/openssl-solibs-0.9.8m-x86_64-1_slack13.0.txz: Upgraded.
patches/packages/proftpd-1.3.3-x86_64-1_slack13.0.txz: Upgraded.
patches/packages/seamonkey-2.0.3-x86_64-1_slack13.0.txz: Upgraded.
This release fixes some more security vulnerabilities.
For more information, see:
http://www.mozilla.org/security/known-vulnerabilities/seamonkey20.html
(* Security fix *)
patches/packages/seamonkey-solibs-2.0.3-x86_64-1_slack13.0.txz: Upgraded.

ftp://ftp.osuosl.org/pub/slackware/slackware64-13.0/ChangeLog.txt

=============================

Advisories:

- SSA:2010-060-01
http://www.slackware.com/security/viewer.php?l=slackware-security&y=2010&m=slackware-security.473276

- SSA:2010-060-02
http://www.slackware.com/security/viewer.php?l=slackware-security&y=2010&m=slackware-security.663049

- SSA:2010-060-03
http://www.slackware.com/security/viewer.php?l=slackware-security&y=2010&m=slackware-security.365880

_________________
Oncle Jean

- Newsletter
http://tech.groups.yahoo.com/group/slack_linux_fans/

Oncle Jean
Admin

Posts: 8332
Join date: 2009-10-24
Age: 53
Location: Québec

http://slacklinux.darkbb.com

Back to top Go down

View previous topic View next topic Back to top

- Similar topics

Permissions in this forum:
You cannot reply to topics in this forum