Archive for the Category: Slackware-Security

vsftpd (SSA:2012-041-05)

Descargar artículo en formato PDF [slackware-security] vsftpd (SSA:2012-041-05) New vsftpd packages are available for Slackware 11.0, 12.0, 12.1, 12.2, 13.0, 13.1, 13.37, and -current to work around a vulnerability in glibc. Here are the details from the Slackware 13.37 ChangeLog: +————————–+ patches/packages/vsftpd-2.3.5-i486-1_slack13.37.txz: Upgraded. Minor version bump, this also works around a hard to trigger heap [...]

Tagged , , , , , , , Leave a comment

proftpd (SSA:2012-041-04)

Descargar artículo en formato PDF [slackware-security] proftpd (SSA:2012-041-04) New proftpd packages are available for Slackware 11.0, 12.0, 12.1, 12.2, 13.0, 13.1, 13.37, and -current to fix security issues. Here are the details from the Slackware 13.37 ChangeLog: +————————–+ patches/packages/proftpd-1.3.4a-i486-1_slack13.37.txz: Upgraded. This update fixes a use-after-free() memory corruption error, and possibly other unspecified issues. For more [...]

Tagged , , , , , , , Leave a comment

glibc (SSA:2012-041-03)

Descargar artículo en formato PDF [slackware-security] glibc (SSA:2012-041-03) New glibc packages are available for Slackware 13.1, 13.37, and -current to fix a security issue. Here are the details from the Slackware 13.37 ChangeLog: +————————–+ patches/packages/glibc-2.13-i486-5_slack13.37.txz: Rebuilt. Patched an overflow in tzfile. This was evidently first reported in 2009, but is only now getting around to [...]

Tagged , , , , , , , Leave a comment

php (SSA:2012-041-02)

Descargar artículo en formato PDF [slackware-security] php (SSA:2012-041-02) New php packages are available for Slackware 12.0, 12.1, 12.2, 13.0, 13.1, 13.37, and -current to fix security issues. Here are the details from the Slackware 13.37 ChangeLog: +————————–+ patches/packages/php-5.3.10-i486-1_slack13.37.txz: Upgraded. Fixed arbitrary remote code execution vulnerability reported by Stefan Esser, CVE-2012-0830. (Stas, Dmitry) For more information, [...]

Tagged , , , , , , , Leave a comment

httpd (SSA:2012-041-01)

Descargar artículo en formato PDF [slackware-security] httpd (SSA:2012-041-01) New httpd packages are available for Slackware 12.0, 12.1, 12.2, 13.0, 13.1, 13.37, and -current to fix security issues. The apr-util package has also been updated to the latest version. Here are the details from the Slackware 13.37 ChangeLog: +————————–+ patches/packages/apr-util-1.4.1-i486-1_slack13.37.txz: Upgraded. Version bump for httpd upgrade. [...]

Tagged , , , Leave a comment

httpd (SSA:2011-252-01)

Descargar artículo en formato PDF [slackware-security] httpd (SSA:2011-252-01) Not long ago, httpd package updates were issued to clamp down on a denial of service bug that’s seen some action in the wild. New packages are available for Slackware 12.0, 12.1, 12.2, 13.0, 13.1, 13.37, and -current. Here are the details from the Slackware 13.37 ChangeLog: [...]

Tagged , , , , , , , Leave a comment

php (SSA:2011-237-01)

Descargar artículo en formato PDF [slackware-security] php (SSA:2011-237-01) New php packages are available for Slackware 11.0, 12.0, 12.1, 12.2, 13.0, 13.1, 13.37, and -current to fix security issues. Here are the details from the Slackware 13.37 ChangeLog: +————————–+ patches/packages/php-5.3.8-i486-1_slack13.37.txz: Upgraded. Security fixes vs. 5.3.6 (5.3.7 was not usable): Updated crypt_blowfish to 1.2. (CVE-2011-2483) Fixed crash [...]

Tagged , , , , , , , Leave a comment

bind (SSA:2011-224-01)

Descargar artículo en formato PDF [slackware-security] bind (SSA:2011-224-01) New bind packages are available for Slackware 8.1, 9.0, 9.1, 10.0, 10.1, 10.2, 11.0, 12.0, 12.1, 12.2, 13.0, 13.1, 13.37, and -current to fix security issues. Here are the details from the Slackware 13.37 ChangeLog: +————————–+ patches/packages/bind-9.7.4-i486-1_slack13.37.txz: Upgraded. This BIND update addresses a couple of security issues: [...]

Tagged , , , , , , , 1 Comment

samba (SSA:2011-210-03)

Descargar artículo en formato PDF [slackware-security] samba (SSA:2011-210-03) New samba packages are available for Slackware 13.1, 13.37, and -current to fix security issues. Here are the details from the Slackware 13.37 ChangeLog: +————————–+ patches/packages/samba-3.5.10-i486-1_slack13.37.txz: Upgraded. Fixed cross-site request forgery and cross-site scripting vulnerability in SWAT (the Samba Web Administration Tool). For more information, see: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-2522 [...]

Tagged , , , , , , , Leave a comment

dhcpcd (SSA:2011-210-02)

Descargar artículo en formato PDF [slackware-security] dhcpcd (SSA:2011-210-02) New dhcpcd packages are available for Slackware 13.0, 13.1, 13.37, and -current to fix security issues. Here are the details from the Slackware 13.37 ChangeLog: +————————–+ patches/packages/dhcpcd-5.2.12-i486-1_slack13.37.txz: Upgraded. Sanitize the host name provided by the DHCP server to insure that it does not contain any shell metacharacters. [...]

Tagged , , , , , , , Leave a comment