From ed49432ad9d734d447d1bda6657b2d221a7fb3a8 Mon Sep 17 00:00:00 2001 From: Patrick J Volkerding Date: Thu, 25 May 2023 00:24:33 +0000 Subject: Thu May 25 00:24:33 UTC 2023 a/elilo-3.16-x86_64-16.txz: Rebuilt. eliloconfig: don't mess with mounting efivarfs. This should be handled by rc.S, or by whatever the admin put in /etc/fstab. a/kernel-firmware-20230523_1ba3519-noarch-1.txz: Upgraded. a/kernel-generic-6.1.30-x86_64-1.txz: Upgraded. a/kernel-huge-6.1.30-x86_64-1.txz: Upgraded. a/kernel-modules-6.1.30-x86_64-1.txz: Upgraded. a/sysvinit-scripts-15.1-noarch-5.txz: Rebuilt. rc.S: mount efivarfs rw, may be overridden in /etc/default/efivarfs. ap/sc-im-0.8.3-x86_64-1.txz: Upgraded. d/kernel-headers-6.1.30-x86-1.txz: Upgraded. d/parallel-20230522-noarch-1.txz: Upgraded. k/kernel-source-6.1.30-noarch-1.txz: Upgraded. l/enchant-2.4.0-x86_64-1.txz: Upgraded. l/glib2-2.76.3-x86_64-1.txz: Upgraded. l/gtk+3-3.24.38-x86_64-1.txz: Upgraded. l/qt5-5.15.9_20230523_245f369c-x86_64-1.txz: Upgraded. This update fixes a security issue. Qt-based clients may mismatch HSTS headers (Strict-Transport-Security), which would prevent the client from switching to a secure HTTPS connection as requested by a server. For more information, see: https://www.cve.org/CVERecord?id=CVE-2023-32762 (* Security fix *) n/curl-8.1.1-x86_64-1.txz: Upgraded. This is a bugfix release. t/texlive-2023.230322-x86_64-3.txz: Rebuilt. This update patches a security issue: LuaTeX before 1.17.0 allows execution of arbitrary shell commands when compiling a TeX file obtained from an untrusted source. This occurs because luatex-core.lua lets the original io.popen be accessed. This also affects TeX Live before 2023 r66984 and MiKTeX before 23.5. Thanks to Johannes Schoepfer. For more information, see: https://www.cve.org/CVERecord?id=CVE-2023-32700 (* Security fix *) xap/mozilla-firefox-113.0.2-x86_64-1.txz: Upgraded. This is a bugfix release. For more information, see: https://www.mozilla.org/en-US/firefox/113.0.2/releasenotes/ xfce/libxfce4ui-4.18.4-x86_64-1.txz: Upgraded. xfce/xfce4-panel-4.18.4-x86_64-1.txz: Upgraded. isolinux/initrd.img: Rebuilt. kernels/*: Upgraded. usb-and-pxe-installers/usbboot.img: Rebuilt. --- ChangeLog.rss | 59 +++++++++++++++++++++++++++++++++++++++++++++++++++++++++-- 1 file changed, 57 insertions(+), 2 deletions(-) (limited to 'ChangeLog.rss') diff --git a/ChangeLog.rss b/ChangeLog.rss index 7f8ae3c9f..16c6845cf 100644 --- a/ChangeLog.rss +++ b/ChangeLog.rss @@ -11,9 +11,64 @@ Tracking Slackware development in git. en-us urn:uuid:c964f45e-6732-11e8-bbe5-107b4450212f - Mon, 22 May 2023 19:05:02 GMT - Mon, 22 May 2023 19:32:39 GMT + Thu, 25 May 2023 00:24:33 GMT + Thu, 25 May 2023 01:49:54 GMT maintain_current_git.sh v 1.17 + + Thu, 25 May 2023 00:24:33 GMT + Thu, 25 May 2023 00:24:33 GMT + https://git.slackware.nl/current/tag/?h=20230525002433 + 20230525002433 + + +a/elilo-3.16-x86_64-16.txz: Rebuilt. + eliloconfig: don't mess with mounting efivarfs. This should be handled by + rc.S, or by whatever the admin put in /etc/fstab. +a/kernel-firmware-20230523_1ba3519-noarch-1.txz: Upgraded. +a/kernel-generic-6.1.30-x86_64-1.txz: Upgraded. +a/kernel-huge-6.1.30-x86_64-1.txz: Upgraded. +a/kernel-modules-6.1.30-x86_64-1.txz: Upgraded. +a/sysvinit-scripts-15.1-noarch-5.txz: Rebuilt. + rc.S: mount efivarfs rw, may be overridden in /etc/default/efivarfs. +ap/sc-im-0.8.3-x86_64-1.txz: Upgraded. +d/kernel-headers-6.1.30-x86-1.txz: Upgraded. +d/parallel-20230522-noarch-1.txz: Upgraded. +k/kernel-source-6.1.30-noarch-1.txz: Upgraded. +l/enchant-2.4.0-x86_64-1.txz: Upgraded. +l/glib2-2.76.3-x86_64-1.txz: Upgraded. +l/gtk+3-3.24.38-x86_64-1.txz: Upgraded. +l/qt5-5.15.9_20230523_245f369c-x86_64-1.txz: Upgraded. + This update fixes a security issue. + Qt-based clients may mismatch HSTS headers (Strict-Transport-Security), + which would prevent the client from switching to a secure HTTPS + connection as requested by a server. + For more information, see: + https://www.cve.org/CVERecord?id=CVE-2023-32762 + (* Security fix *) +n/curl-8.1.1-x86_64-1.txz: Upgraded. + This is a bugfix release. +t/texlive-2023.230322-x86_64-3.txz: Rebuilt. + This update patches a security issue: + LuaTeX before 1.17.0 allows execution of arbitrary shell commands when + compiling a TeX file obtained from an untrusted source. This occurs + because luatex-core.lua lets the original io.popen be accessed. This also + affects TeX Live before 2023 r66984 and MiKTeX before 23.5. + Thanks to Johannes Schoepfer. + For more information, see: + https://www.cve.org/CVERecord?id=CVE-2023-32700 + (* Security fix *) +xap/mozilla-firefox-113.0.2-x86_64-1.txz: Upgraded. + This is a bugfix release. + For more information, see: + https://www.mozilla.org/en-US/firefox/113.0.2/releasenotes/ +xfce/libxfce4ui-4.18.4-x86_64-1.txz: Upgraded. +xfce/xfce4-panel-4.18.4-x86_64-1.txz: Upgraded. +isolinux/initrd.img: Rebuilt. +kernels/*: Upgraded. +usb-and-pxe-installers/usbboot.img: Rebuilt. + ]]> + + Mon, 22 May 2023 19:05:02 GMT Mon, 22 May 2023 19:05:02 GMT -- cgit v1.2.3-79-gdb01