mirror of
git://slackware.nl/current.git
synced 2025-01-03 23:03:22 +01:00
40bf9bf864
patches/packages/ca-certificates-20220622-noarch-1_slack15.0.txz: Upgraded. This update provides the latest CA certificates to check for the authenticity of SSL connections. patches/packages/openssl-1.1.1p-x86_64-1_slack15.0.txz: Upgraded. In addition to the c_rehash shell command injection identified in CVE-2022-1292, further circumstances where the c_rehash script does not properly sanitise shell metacharacters to prevent command injection were found by code review. When the CVE-2022-1292 was fixed it was not discovered that there are other places in the script where the file names of certificates being hashed were possibly passed to a command executed through the shell. For more information, see: https://www.openssl.org/news/secadv/20220621.txt https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2068 (* Security fix *) patches/packages/openssl-solibs-1.1.1p-x86_64-1_slack15.0.txz: Upgraded. |
||
---|---|---|
.. | ||
ca-certificates.SlackBuild | ||
certdata-20220622.txt | ||
doinst.sh | ||
fixup_update-ca-certificates.diff | ||
get-certdata.txt.sh | ||
setup.11.cacerts | ||
slack-desc | ||
update-ca-certificates.c_rehash.diff |