Slackware updates
[Posted April 27, 2005 by ris]
| From: |
| changelog-AT-mrgoblin.is-a-geek.org |
| To: |
| changelog-AT-mrgoblin.is-a-geek.org |
| Subject: |
| Slackware Changelog Notice!! |
| Date: |
| Fri, 22 Apr 2005 17:51:07 +1200 |
Slackware Current ChangeLog Notice.
The following additions have been made to The Current ChangeLog.txt
Please do not Reply to this email
-------------------------------------------------------------------
Thu Apr 21 14:26:29 PDT 2005
d/binutils-2.15.92.0.2-i486-3.tgz: Upgraded to ksymoops-2.4.11.
d/cvs-1.11.20-i486-1.tgz: Upgraded to cvs-1.11.20.
From cvshome.org: "This version fixes many minor security issues in the
CVS server executable including a potentially serious buffer overflow
vulnerability with no known exploit. We recommend this upgrade for all
CVS
servers!"
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-0753
(* Security fix *)
d/python-2.4.1-i486-1.tgz: Upgraded to python-2.4.1.
From the python.org site: "The Python development team has discovered a
flaw
in the SimpleXMLRPCServer library module which can give remote attackers
access to internals of the registered object or its module or possibly
other
modules. The flaw only affects Python XML-RPC servers that use the
register_instance() method to register an object without a _dispatch()
method. Servers using only register_function() are not affected."
For more details, see:
http://python.org/security/PSF-2005-001/
(* Security fix *)
d/python-demo-2.4.1-noarch-1.tgz: Upgraded to python-2.4.1 demos.
d/python-tools-2.4.1-noarch-1.tgz: Upgraded to python-2.4.1 tools.
kde/kdebase-3.4.0-i486-2.tgz: Recompiled to link with Cyrus SASL.
kde/kdepim-3.4.0-i486-2.tgz: Recompiled to link with Cyrus SASL.
l/glib2-2.6.4-i486-1.tgz: Upgraded to glib-2.6.4.
l/gtk+2-2.6.7-i486-1.tgz: Upgraded to gtk+-2.6.7.
l/libxml2-2.6.19-i486-1.tgz: Upgraded to libxml2-2.6.19.
l/libxslt-1.1.14-i486-1.tgz: Upgraded to libxslt-1.1.14.
n/cyrus-sasl-2.1.20-i486-1.tgz: Added Cyrus SASL library (for Kmail).
xap/gaim-1.2.1-i486-1.tgz: Upgraded to gaim-1.2.1.
According to gaim.sf.net, this fixes a few denial-of-service flaws.
(* Security fix *)
xap/gimp-2.2.6-i486-1.tgz: Upgraded to gimp-2.2.6.
xap/jre-symlink-1.0.3-noarch-1.tgz: Upgraded Java(TM) symlink for Mozilla
Firefox and added an additional link for the Mozilla Suite.
xap/mozilla-1.7.7-i486-1.tgz: Upgraded to mozilla-1.7.7.
This fixes some security issues. For complete details, see:
http://www.mozilla.org/projects/security/known-vulnerabil...
(* Security fix *)
xap/mozilla-firefox-1.0.3-i686-1.tgz: Upgraded to firefox-1.0.3.
From the mozilla.org site: "Firefox 1.0.3 is a security update that is
part of our ongoing program to provide a safe Internet experience for our
customers. We recommend that all users upgrade to this latest version."
For complete details, see:
http://www.mozilla.org/projects/security/known-vulnerabil...
(* Security fix *)
xap/xscreensaver-4.21-i486-2.tgz: Patched to fix setgid shadow.
+--------------------------+
If for some reason you no longer wish to be notified of
Entries to the ChangeLog Please send an email
To: mrgoblin@userlocal.com
Subject: "unsubscribe slacklog"
and the subscribed email address in the body of the message.
Thank you
mRgOBLIN
(
Log in to post comments)