Patrick J Volkerding
e6c094d80d
Wed Dec 11 23:35:28 UTC 2024
...
patches/packages/curl-8.11.1-x86_64-1_slack15.0.txz: Upgraded.
This is a bugfix release.
patches/packages/mozilla-thunderbird-128.5.2esr-x86_64-1_slack15.0.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/128.5.2esr/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2024-69/
https://www.cve.org/CVERecord?id=CVE-2024-50336
(* Security fix *)
2024-12-12 13:30:46 +01:00
Patrick J Volkerding
34532a5a6a
Thu Nov 7 21:46:13 UTC 2024
...
patches/packages/curl-8.11.0-x86_64-2_slack15.0.txz: Rebuilt.
Adjust libcurl.pc to remove ldap from Requires.private.
This fixes building PHP. Thanks to Thom1b.
patches/packages/expat-2.6.4-x86_64-1_slack15.0.txz: Upgraded.
This update fixes bugs and a security issue:
Fix crash within function XML_ResumeParser from a NULL pointer dereference
by disallowing function XML_StopParser to (stop or) suspend an unstarted
parser. A new error code XML_ERROR_NOT_STARTED was introduced to properly
communicate this situation.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2024-50602
(* Security fix *)
patches/packages/mozilla-thunderbird-128.4.2esr-x86_64-1_slack15.0.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/128.4.2esr/releasenotes/
2024-11-08 13:30:43 +01:00
Patrick J Volkerding
6b496a06b1
Wed Sep 11 17:47:14 UTC 2024
...
patches/packages/curl-8.10.0-x86_64-1_slack15.0.txz: Upgraded.
This is a bugfix release.
2024-09-12 13:30:43 +02:00
Patrick J Volkerding
d6bbed4a7d
Wed Aug 7 04:03:09 UTC 2024
...
patches/packages/curl-8.9.1-x86_64-2_slack15.0.txz: Rebuilt.
This is a bugfix release.
[PATCH] sigpipe: init the struct so that first apply ignores.
Thanks to ponce.
patches/packages/mozilla-firefox-115.14.0esr-x86_64-1_slack15.0.txz: Upgraded.
This update contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/firefox/115.14.0/releasenotes/
https://www.mozilla.org/security/advisories/mfsa2024-34/
https://www.cve.org/CVERecord?id=CVE-2024-7519
https://www.cve.org/CVERecord?id=CVE-2024-7521
https://www.cve.org/CVERecord?id=CVE-2024-7522
https://www.cve.org/CVERecord?id=CVE-2024-7524
https://www.cve.org/CVERecord?id=CVE-2024-7525
https://www.cve.org/CVERecord?id=CVE-2024-7526
https://www.cve.org/CVERecord?id=CVE-2024-7527
https://www.cve.org/CVERecord?id=CVE-2024-7529
https://www.cve.org/CVERecord?id=CVE-2024-7531
(* Security fix *)
patches/packages/mozilla-thunderbird-115.14.0-x86_64-1_slack15.0.txz: Upgraded.
This is a bugfix release.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/115.14.0esr/releasenotes/
2024-08-08 13:30:52 +02:00
Patrick J Volkerding
cf5d757506
Wed Apr 27 21:43:51 UTC 2022
...
patches/packages/curl-7.83.0-x86_64-1_slack15.0.txz: Upgraded.
This update fixes security issues:
OAUTH2 bearer bypass in connection re-use.
Credential leak on redirect.
Bad local IPv6 connection reuse.
Auth/cookie leak on redirect.
For more information, see:
https://curl.se/docs/CVE-2022-22576.html
https://curl.se/docs/CVE-2022-27774.html
https://curl.se/docs/CVE-2022-27775.html
https://curl.se/docs/CVE-2022-27776.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-22576
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27774
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27775
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27776
(* Security fix *)
2022-04-28 13:29:49 +02:00