From 4af705d201f28b1b12ac1ba92fb9afea3b88fe29 Mon Sep 17 00:00:00 2001 From: Patrick J Volkerding Date: Wed, 31 Jan 2024 21:19:19 +0000 Subject: Wed Jan 31 21:19:19 UTC 2024 extra/sendmail/sendmail-8.18.1-x86_64-1_slack15.0.txz: Upgraded. sendmail through 8.17.2 allows SMTP smuggling in certain configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mechanism. This occurs because sendmail supports . but some other popular e-mail servers do not. This is resolved in 8.18 and later versions with 'o' in srv_features. For more information, see: https://www.cve.org/CVERecord?id=CVE-2023-51765 (* Security fix *) extra/sendmail/sendmail-cf-8.18.1-noarch-1_slack15.0.txz: Upgraded. patches/packages/curl-8.6.0-x86_64-1_slack15.0.txz: Upgraded. This is a bugfix release. patches/packages/libmilter-8.18.1-x86_64-1_slack15.0.txz: Upgraded. This is a bugfix release. --- ChangeLog.rss | 29 +++++++++++++++++++++++++++-- 1 file changed, 27 insertions(+), 2 deletions(-) (limited to 'ChangeLog.rss') diff --git a/ChangeLog.rss b/ChangeLog.rss index 28494c62f..b0b0ff751 100644 --- a/ChangeLog.rss +++ b/ChangeLog.rss @@ -11,9 +11,34 @@ Tracking Slackware development in git. en-us urn:uuid:c964f45e-6732-11e8-bbe5-107b4450212f - Fri, 26 Jan 2024 20:59:27 GMT - Sat, 27 Jan 2024 12:30:24 GMT + Wed, 31 Jan 2024 21:19:19 GMT + Thu, 1 Feb 2024 12:30:34 GMT maintain_current_git.sh v 1.17 + + Wed, 31 Jan 2024 21:19:19 GMT + Wed, 31 Jan 2024 21:19:19 GMT + https://git.slackware.nl/current/tag/?h=20240131211919 + 20240131211919 + + +extra/sendmail/sendmail-8.18.1-x86_64-1_slack15.0.txz: Upgraded. + sendmail through 8.17.2 allows SMTP smuggling in certain configurations. + Remote attackers can use a published exploitation technique to inject e-mail + messages with a spoofed MAIL FROM address, allowing bypass of an SPF + protection mechanism. This occurs because sendmail supports . + but some other popular e-mail servers do not. This is resolved in 8.18 and + later versions with 'o' in srv_features. + For more information, see: + https://www.cve.org/CVERecord?id=CVE-2023-51765 + (* Security fix *) +extra/sendmail/sendmail-cf-8.18.1-noarch-1_slack15.0.txz: Upgraded. +patches/packages/curl-8.6.0-x86_64-1_slack15.0.txz: Upgraded. + This is a bugfix release. +patches/packages/libmilter-8.18.1-x86_64-1_slack15.0.txz: Upgraded. + This is a bugfix release. + ]]> + + Fri, 26 Jan 2024 20:59:27 GMT Fri, 26 Jan 2024 20:59:27 GMT -- cgit v1.2.3-80-g2a13