[A-184] New on Slackware-current

View previous topic View next topic Go down

[A-184] New on Slackware-current

Post  Oncle Jean on Mon Mar 08, 2010 6:26 pm

32 bits:

Mon Mar 8 20:49:02 UTC 2010
ap/cupsddk-1.2.3-i486-2.txz: Removed.
The CUPS Driver Development Kit (DDK) is part of the main CUPS package now.
ap/hplip-3.10.2-i486-1.txz: Upgraded.
n/httpd-2.2.15-i486-1.txz: Upgraded.
This update addresses a few security issues.
mod_ssl: A partial fix for the TLS renegotiation prefix injection attack
by rejecting any client-initiated renegotiations.
mod_proxy_ajp: Respond with HTTP_BAD_REQUEST when the body is not sent
when request headers indicate a request body is incoming; not a case of
HTTP_INTERNAL_SERVER_ERROR.
mod_isapi: Do not unload an isapi .dll module until the request processing
is completed, avoiding orphaned callback pointers.
[This is the most serious flaw, but does not affect Linux systems]
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3555
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0408
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0425
(* Security fix *)
n/openssh-5.4p1-i486-1.txz: Upgraded.



64 bits:

Mon Mar 8 20:49:02 UTC 2010
ap/cupsddk-1.2.3-x86_64-2.txz: Removed.
The CUPS Driver Development Kit (DDK) is part of the main CUPS package now.
ap/hplip-3.10.2-x86_64-1.txz: Upgraded.
n/httpd-2.2.15-x86_64-1.txz: Upgraded.
This update addresses a few security issues.
mod_ssl: A partial fix for the TLS renegotiation prefix injection attack
by rejecting any client-initiated renegotiations.
mod_proxy_ajp: Respond with HTTP_BAD_REQUEST when the body is not sent
when request headers indicate a request body is incoming; not a case of
HTTP_INTERNAL_SERVER_ERROR.
mod_isapi: Do not unload an isapi .dll module until the request processing
is completed, avoiding orphaned callback pointers.
[This is the most serious flaw, but does not affect Linux systems]
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3555
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0408
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0425
(* Security fix *)
n/openssh-5.4p1-x86_64-1.txz: Upgraded.

ftp://ftp.osuosl.org/pub/slackware/slackware64-current/ChangeLog.txt

_________________
Oncle Jean

- Newsletter
http://tech.groups.yahoo.com/group/slack_linux_fans/

Oncle Jean
Admin

Posts: 8330
Join date: 2009-10-24
Age: 53
Location: Québec

http://slacklinux.darkbb.com

Back to top Go down

View previous topic View next topic Back to top

- Similar topics

Permissions in this forum:
You cannot reply to topics in this forum