slackware-current/source/xap
Patrick J Volkerding 7b9b973e94 Tue Jan 30 22:01:28 UTC 2024
a/lzip-1.24-x86_64-1.txz:  Upgraded.
a/openssl-solibs-3.2.1-x86_64-1.txz:  Upgraded.
ap/alsa-utils-1.2.11-x86_64-1.txz:  Upgraded.
ap/sqlite-3.45.1-x86_64-1.txz:  Upgraded.
d/binutils-2.42-x86_64-1.txz:  Upgraded.
  Shared library .so-version bump.
d/cmake-3.28.2-x86_64-1.txz:  Upgraded.
d/oprofile-1.4.0-x86_64-13.txz:  Rebuilt.
  Recompiled against binutils-2.42.
d/strace-6.7-x86_64-1.txz:  Upgraded.
kde/digikam-8.2.0-x86_64-5.txz:  Rebuilt.
  Recompiled against libpng-1.6.42.
l/alsa-lib-1.2.11-x86_64-1.txz:  Upgraded.
l/libpng-1.6.42-x86_64-1.txz:  Upgraded.
  Fixed the implementation of the macro function png_check_sig().
  This was an API regression, introduced in libpng-1.6.41.
  Reported by Matthieu Darbois.
l/lmdb-0.9.32-x86_64-1.txz:  Upgraded.
l/neon-0.33.0-x86_64-1.txz:  Upgraded.
l/opencv-4.9.0-x86_64-3.txz:  Rebuilt.
  Recompiled against libpng-1.6.42.
l/qt5-5.15.12_20240103_b8fd1448-x86_64-4.txz:  Rebuilt.
  Recompiled against libpng-1.6.42.
l/talloc-2.4.2-x86_64-1.txz:  Upgraded.
l/tdb-1.4.10-x86_64-1.txz:  Upgraded.
l/tevent-0.16.1-x86_64-1.txz:  Upgraded.
n/openldap-2.6.7-x86_64-1.txz:  Upgraded.
n/openssl-3.2.1-x86_64-1.txz:  Upgraded.
  This update fixes possible denial-of-service security issues:
  A file in PKCS12 format can contain certificates and keys and may come from
  an untrusted source. The PKCS12 specification allows certain fields to be
  NULL, but OpenSSL did not correctly check for this case. A fix has been
  applied to prevent a NULL pointer dereference that results in OpenSSL
  crashing. If an application processes PKCS12 files from an untrusted source
  using the OpenSSL APIs then that application will be vulnerable to this
  issue prior to this fix.
  OpenSSL APIs that were vulnerable to this are: PKCS12_parse(),
  PKCS12_unpack_p7data(), PKCS12_unpack_p7encdata(), PKCS12_unpack_authsafes()
  and PKCS12_newpass().
  When function EVP_PKEY_public_check() is called on RSA public keys,
  a computation is done to confirm that the RSA modulus, n, is composite.
  For valid RSA keys, n is a product of two or more large primes and this
  computation completes quickly. However, if n is an overly large prime,
  then this computation would take a long time.
  An application that calls EVP_PKEY_public_check() and supplies an RSA key
  obtained from an untrusted source could be vulnerable to a Denial of Service
  attack.
  The function EVP_PKEY_public_check() is not called from other OpenSSL
  functions however it is called from the OpenSSL pkey command line
  application. For that reason that application is also vulnerable if used
  with the "-pubin" and "-check" options on untrusted data.
  To resolve this issue RSA keys larger than OPENSSL_RSA_MAX_MODULUS_BITS will
  now fail the check immediately with an RSA_R_MODULUS_TOO_LARGE error reason.
  Fix excessive time spent in DH check / generation with large Q parameter
  value.
  Applications that use the functions DH_generate_key() to generate an
  X9.42 DH key may experience long delays. Likewise, applications that use
  DH_check_pub_key(), DH_check_pub_key_ex() or EVP_PKEY_public_check()
  to check an X9.42 DH key or X9.42 DH parameters may experience long delays.
  Where the key or parameters that are being checked have been obtained from
  an untrusted source this may lead to a Denial of Service.
  For more information, see:
    https://www.cve.org/CVERecord?id=CVE-2024-0727
    https://www.cve.org/CVERecord?id=CVE-2023-6237
    https://www.cve.org/CVERecord?id=CVE-2023-5678
  (* Security fix *)
xap/MPlayer-20240130-x86_64-1.txz:  Upgraded.
  Fixed build script to exit on errors.
  Patched to build against gettext-0.22.4.
  Thanks to Matteo Bernardini.
xap/xine-lib-1.2.13-x86_64-7.txz:  Rebuilt.
  Recompiled against libpng-1.6.42.
2024-01-30 23:34:34 +01:00
..
audacious Sun Jul 10 18:49:34 UTC 2022 2022-07-11 07:00:12 +02:00
audacious-plugins Mon Jan 29 19:17:30 UTC 2024 2024-01-29 21:03:28 +01:00
blackbox Mon Oct 10 18:45:33 UTC 2022 2022-10-11 07:00:35 +02:00
blueman Fri Feb 11 01:09:45 UTC 2022 2022-02-11 07:43:07 +01:00
ddd Fri May 26 18:59:21 UTC 2023 2023-05-26 21:34:14 +02:00
easytag Sun Nov 20 00:54:24 UTC 2022 2022-11-20 07:00:14 +01:00
electricsheep Tue Nov 29 20:56:03 UTC 2022 2022-11-30 01:00:18 +01:00
ffmpegthumbnailer Mon Jan 29 19:17:30 UTC 2024 2024-01-29 21:03:28 +01:00
fluxbox Mon Jan 17 22:44:42 UTC 2022 2022-01-18 08:59:56 +01:00
freerdp Mon Jan 29 19:17:30 UTC 2024 2024-01-29 21:03:28 +01:00
fvwm Fri Nov 4 19:29:28 UTC 2022 2022-11-05 07:00:18 +01:00
geeqie Fri Jan 26 01:49:20 UTC 2024 2024-01-26 03:50:15 +01:00
gftp Wed Mar 8 20:26:54 UTC 2023 2023-03-08 22:40:50 +01:00
gimp Wed Dec 6 05:03:11 UTC 2023 2023-12-06 07:07:29 +01:00
gkrellm Wed Mar 8 20:26:54 UTC 2023 2023-03-08 22:40:50 +01:00
gnuchess Wed Jul 14 17:57:37 UTC 2021 2021-07-15 00:00:46 +02:00
gnuplot Sat Dec 30 19:53:07 UTC 2023 2023-12-30 21:30:31 +01:00
gparted Mon May 3 19:58:20 UTC 2021 2021-05-03 23:59:55 +02:00
gucharmap Mon Feb 15 19:23:44 UTC 2021 2021-02-16 08:59:54 +01:00
gv Mon Feb 15 19:23:44 UTC 2021 2021-02-16 08:59:54 +01:00
hexchat Sat Aug 19 20:17:55 UTC 2023 2023-08-19 23:00:36 +02:00
libnma Mon Jan 9 20:10:55 UTC 2023 2023-01-09 21:34:48 +01:00
mozilla-firefox Sun Nov 26 20:51:26 UTC 2023 2023-11-26 22:30:15 +01:00
mozilla-thunderbird Sun Nov 26 20:51:26 UTC 2023 2023-11-26 22:30:15 +01:00
MPlayer Tue Jan 30 22:01:28 UTC 2024 2024-01-30 23:34:34 +01:00
network-manager-applet Thu Oct 5 21:44:34 UTC 2023 2023-10-06 00:40:57 +02:00
NetworkManager-openvpn Tue Sep 6 20:21:24 UTC 2022 2022-09-07 07:00:17 +02:00
pan Sun Jun 11 19:49:28 UTC 2023 2023-06-11 22:33:50 +02:00
pavucontrol Sat Aug 21 04:38:34 UTC 2021 2021-08-21 17:59:54 +02:00
pidgin Mon Mar 6 02:21:57 UTC 2023 2023-03-06 04:41:59 +01:00
rdesktop Mon Feb 15 19:23:44 UTC 2021 2021-02-16 08:59:54 +01:00
rxvt-unicode Thu Jul 20 19:55:25 UTC 2023 2023-07-20 22:31:39 +02:00
sane Wed Dec 6 05:03:11 UTC 2023 2023-12-06 07:07:29 +01:00
seamonkey Sat Dec 9 19:55:12 UTC 2023 2023-12-09 21:35:16 +01:00
seyon Tue Sep 6 20:21:24 UTC 2022 2022-09-07 07:00:17 +02:00
ssr Mon Jan 29 19:17:30 UTC 2024 2024-01-29 21:03:28 +01:00
windowmaker Wed Dec 6 05:03:11 UTC 2023 2023-12-06 07:07:29 +01:00
x11-ssh-askpass Mon Feb 15 19:23:44 UTC 2021 2021-02-16 08:59:54 +01:00
x3270 Tue Dec 12 19:54:42 UTC 2023 2023-12-12 22:06:31 +01:00
xaos Mon Nov 21 20:23:13 UTC 2022 2022-11-22 07:00:14 +01:00
xgames Mon Feb 15 19:23:44 UTC 2021 2021-02-16 08:59:54 +01:00
xine-lib Tue Jan 30 22:01:28 UTC 2024 2024-01-30 23:34:34 +01:00
xine-ui Mon Mar 6 02:21:57 UTC 2023 2023-03-06 04:41:59 +01:00
xlockmore Sat Sep 23 20:59:44 UTC 2023 2023-09-23 23:35:53 +02:00
xmms Mon Feb 15 19:23:44 UTC 2021 2021-02-16 08:59:54 +01:00
xpaint Wed Dec 6 05:03:11 UTC 2023 2023-12-06 07:07:29 +01:00
xpdf Tue Apr 26 19:45:46 UTC 2022 2022-04-27 06:59:51 +02:00
xsane Wed Dec 6 05:03:11 UTC 2023 2023-12-06 07:07:29 +01:00
xscreensaver Mon Jan 29 19:17:30 UTC 2024 2024-01-29 21:03:28 +01:00
xsnow Tue Sep 6 20:21:24 UTC 2022 2022-09-07 07:00:17 +02:00
FTBFSlog Mon Oct 10 18:45:33 UTC 2022 2022-10-11 07:00:35 +02:00
vim-gvim Slackware 13.0 2018-05-31 22:41:17 +02:00