1
0
Fork 0
mirror of git://slackware.nl/current.git synced 2025-02-05 20:46:11 +01:00
slackware-current/patches/packages
Patrick J Volkerding f6bba8a1d2 Tue Oct 18 20:29:54 UTC 2022
patches/packages/git-2.35.5-x86_64-1_slack15.0.txz:  Upgraded.
  This release fixes two security issues:
  * CVE-2022-39253:
  When relying on the `--local` clone optimization, Git dereferences
  symbolic links in the source repository before creating hardlinks
  (or copies) of the dereferenced link in the destination repository.
  This can lead to surprising behavior where arbitrary files are
  present in a repository's `$GIT_DIR` when cloning from a malicious
  repository.
  Git will no longer dereference symbolic links via the `--local`
  clone mechanism, and will instead refuse to clone repositories that
  have symbolic links present in the `$GIT_DIR/objects` directory.
  Additionally, the value of `protocol.file.allow` is changed to be
  "user" by default.
  * CVE-2022-39260:
  An overly-long command string given to `git shell` can result in
  overflow in `split_cmdline()`, leading to arbitrary heap writes and
  remote code execution when `git shell` is exposed and the directory
  `$HOME/git-shell-commands` exists.
  `git shell` is taught to refuse interactive commands that are
  longer than 4MiB in size. `split_cmdline()` is hardened to reject
  inputs larger than 2GiB.
  For more information, see:
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-39253
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-39260
  (* Security fix *)
patches/packages/mozilla-firefox-102.4.0esr-x86_64-1_slack15.0.txz:  Upgraded.
  This update contains security fixes and improvements.
  For more information, see:
    https://www.mozilla.org/en-US/firefox/102.4.0/releasenotes/
    https://www.mozilla.org/security/advisories/mfsa2022-45/
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42927
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42928
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42929
    https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-42932
  (* Security fix *)
2022-10-19 13:30:12 +02:00
..
linux-5.15.63 Fri Aug 26 04:02:20 UTC 2022 2022-08-27 13:30:28 +02:00
aaa_base-15.0-x86_64-4_slack15.0.txt Tue Feb 15 20:00:48 UTC 2022 2022-02-16 13:29:58 +01:00
at-3.2.3-x86_64-1_slack15.0.txt Thu Feb 10 01:46:55 UTC 2022 2022-02-10 05:00:00 +01:00
bind-9.16.33-x86_64-1_slack15.0.txt Wed Sep 21 19:19:07 UTC 2022 2022-09-22 13:30:28 +02:00
bluez-5.64-x86_64-1_slack15.0.txt Thu Mar 17 19:46:28 UTC 2022 2022-03-18 13:29:58 +01:00
boost-1.78.0-x86_64-2_slack15.0.txt Tue Mar 8 04:39:53 UTC 2022 2022-03-09 13:29:58 +01:00
ca-certificates-20220922-noarch-1_slack15.0.txt Thu Sep 22 19:50:20 UTC 2022 2022-09-23 13:30:28 +02:00
cups-2.4.2-x86_64-3_slack15.0.txt Wed Sep 21 19:19:07 UTC 2022 2022-09-22 13:30:28 +02:00
curl-7.85.0-x86_64-1_slack15.0.txt Thu Sep 1 20:01:13 UTC 2022 2022-09-02 13:30:06 +02:00
cyrus-sasl-2.1.28-x86_64-1_slack15.0.txt Fri Feb 25 00:03:28 UTC 2022 2022-02-25 13:29:56 +01:00
dhcp-4.4.3_P1-x86_64-1_slack15.0.txt Wed Oct 5 18:55:36 UTC 2022 2022-10-06 13:30:32 +02:00
dnsmasq-2.87-x86_64-1_slack15.0.txt Mon Sep 26 19:43:54 UTC 2022 2022-09-27 13:30:30 +02:00
expat-2.4.9-x86_64-1_slack15.0.txt Tue Sep 20 22:50:28 UTC 2022 2022-09-21 13:30:31 +02:00
flac-1.3.4-x86_64-1_slack15.0.txt Mon Feb 21 20:21:38 UTC 2022 2022-02-22 13:29:56 +01:00
freerdp-2.7.0-x86_64-1_slack15.0.txt Mon Apr 25 20:55:17 UTC 2022 2022-04-26 13:30:04 +02:00
git-2.35.5-x86_64-1_slack15.0.txt Tue Oct 18 20:29:54 UTC 2022 2022-10-19 13:30:12 +02:00
glibc-zoneinfo-2022e-noarch-1_slack15.0.txt Mon Oct 17 00:42:43 UTC 2022 2022-10-17 13:30:32 +02:00
gnupg2-2.2.36-x86_64-1_slack15.0.txt Thu Jul 7 23:03:01 UTC 2022 2022-07-08 13:30:29 +02:00
gnutls-3.7.7-x86_64-1_slack15.0.txt Fri Jul 29 19:59:03 UTC 2022 2022-07-30 13:30:32 +02:00
gzip-1.12-x86_64-1_slack15.0.txt Thu Apr 14 21:14:21 UTC 2022 2022-04-15 13:29:52 +02:00
httpd-2.4.54-x86_64-1_slack15.0.txt Wed Jun 8 19:15:34 UTC 2022 2022-06-09 13:30:28 +02:00
hunspell-1.7.1-x86_64-1_slack15.0.txt Tue Aug 23 19:27:56 UTC 2022 2022-08-24 13:30:27 +02:00
libarchive-3.6.1-x86_64-1_slack15.0.txt Fri Apr 8 20:03:36 UTC 2022 2022-04-09 13:29:59 +02:00
libksba-1.6.2-x86_64-1_slack15.0.txt Sat Oct 8 19:23:31 UTC 2022 2022-10-09 13:31:06 +02:00
libxml2-2.9.14-x86_64-1_slack15.0.txt Mon May 2 20:02:49 UTC 2022 2022-05-03 13:29:53 +02:00
libxslt-1.1.35-x86_64-1_slack15.0.txt Tue Mar 1 05:05:48 UTC 2022 2022-03-02 13:30:01 +01:00
mariadb-10.5.17-x86_64-1_slack15.0.txt Tue Aug 16 18:51:34 UTC 2022 2022-08-17 13:30:28 +02:00
mozilla-firefox-102.4.0esr-x86_64-1_slack15.0.txt Tue Oct 18 20:29:54 UTC 2022 2022-10-19 13:30:12 +02:00
mozilla-thunderbird-102.3.3-x86_64-1_slack15.0.txt Fri Oct 14 01:39:37 UTC 2022 2022-10-14 13:30:41 +02:00
net-snmp-5.9.3-x86_64-1_slack15.0.txt Thu Jul 21 18:13:18 UTC 2022 2022-07-22 13:30:29 +02:00
openssl-1.1.1q-x86_64-1_slack15.0.txt Tue Jul 5 20:17:00 UTC 2022 2022-07-06 13:30:42 +02:00
openssl-solibs-1.1.1q-x86_64-1_slack15.0.txt Tue Jul 5 20:17:00 UTC 2022 2022-07-06 13:30:42 +02:00
perl-5.34.0-x86_64-2_slack15.0.txt Mon Jul 25 20:53:49 UTC 2022 2022-07-26 13:30:29 +02:00
php-7.4.32-x86_64-1_slack15.0.txt Fri Sep 30 17:52:21 UTC 2022 2022-10-01 13:30:35 +02:00
pidgin-2.14.10-x86_64-1_slack15.0.txt Sat Jun 4 18:43:17 UTC 2022 2022-06-05 13:30:26 +02:00
polkit-0.120-x86_64-3_slack15.0.txt Sat Mar 12 20:57:35 UTC 2022 2022-03-13 13:29:55 +01:00
poppler-21.12.0-x86_64-2_slack15.0.txt Thu Sep 1 20:01:13 UTC 2022 2022-09-02 13:30:06 +02:00
python3-3.9.15-x86_64-1_slack15.0.txt Fri Oct 14 01:39:37 UTC 2022 2022-10-14 13:30:41 +02:00
qt5-5.15.3_20220318_e507d3e5-x86_64-1_slack15.0.txt Mon Mar 21 20:24:16 UTC 2022 2022-03-22 13:30:01 +01:00
rsync-3.2.5-x86_64-1_slack15.0.txt Mon Aug 15 20:23:47 UTC 2022 2022-08-16 13:30:28 +02:00
ruby-3.0.4-x86_64-1_slack15.0.txt Wed Apr 13 20:51:01 UTC 2022 2022-04-14 13:30:03 +02:00
samba-4.15.9-x86_64-1_slack15.0.txt Wed Jul 27 19:17:38 UTC 2022 2022-07-28 13:30:29 +02:00
seamonkey-2.53.14-x86_64-1_slack15.0.txt Fri Sep 30 17:52:21 UTC 2022 2022-10-01 13:30:35 +02:00
util-linux-2.37.4-x86_64-1_slack15.0.txt Tue Feb 15 20:00:48 UTC 2022 2022-02-16 13:29:58 +01:00
vim-9.0.0623-x86_64-1_slack15.0.txt Fri Sep 30 17:52:21 UTC 2022 2022-10-01 13:30:35 +02:00
vim-gvim-9.0.0623-x86_64-1_slack15.0.txt Fri Sep 30 17:52:21 UTC 2022 2022-10-01 13:30:35 +02:00
wavpack-5.5.0-x86_64-1_slack15.0.txt Sun Jul 10 18:49:34 UTC 2022 2022-07-11 13:30:28 +02:00
whois-5.5.13-x86_64-1_slack15.0.txt Tue Apr 12 21:56:14 UTC 2022 2022-04-13 13:29:47 +02:00
xorg-server-1.20.14-x86_64-4_slack15.0.txt Mon Oct 17 19:31:45 UTC 2022 2022-10-18 13:30:33 +02:00
xorg-server-xephyr-1.20.14-x86_64-4_slack15.0.txt Mon Oct 17 19:31:45 UTC 2022 2022-10-18 13:30:33 +02:00
xorg-server-xnest-1.20.14-x86_64-4_slack15.0.txt Mon Oct 17 19:31:45 UTC 2022 2022-10-18 13:30:33 +02:00
xorg-server-xvfb-1.20.14-x86_64-4_slack15.0.txt Mon Oct 17 19:31:45 UTC 2022 2022-10-18 13:30:33 +02:00
xorg-server-xwayland-21.1.4-x86_64-3_slack15.0.txt Mon Oct 17 19:31:45 UTC 2022 2022-10-18 13:30:33 +02:00
xz-5.2.5-x86_64-4_slack15.0.txt Thu Apr 14 21:14:21 UTC 2022 2022-04-15 13:29:52 +02:00
zlib-1.2.13-x86_64-1_slack15.0.txt Sat Oct 15 20:28:34 UTC 2022 2022-10-16 13:30:55 +02:00