diff options
author | Patrick J Volkerding <volkerdi@slackware.com> | 2022-08-17 20:41:53 +0000 |
---|---|---|
committer | Eric Hameleers <alien@slackware.com> | 2022-08-18 07:00:13 +0200 |
commit | 353496a7b2d983d3facb95253b0b22dd7ae224e6 (patch) | |
tree | 9a12695b4e7d71b11ad84218bdedf7214ad116d0 /ChangeLog.rss | |
parent | acedcf0daaa711f242744ca6577aeb42717a44d5 (diff) | |
download | current-353496a7b2d983d3facb95253b0b22dd7ae224e6.tar.gz current-353496a7b2d983d3facb95253b0b22dd7ae224e6.tar.xz |
Wed Aug 17 20:41:53 UTC 202220220817204153
a/aaa_glibc-solibs-2.36-x86_64-2.txz: Rebuilt.
a/kernel-generic-5.19.2-x86_64-1.txz: Upgraded.
a/kernel-huge-5.19.2-x86_64-1.txz: Upgraded.
a/kernel-modules-5.19.2-x86_64-1.txz: Upgraded.
ap/vim-9.0.0223-x86_64-1.txz: Upgraded.
Fix use after free, out-of-bounds read, and heap based buffer overflow.
Thanks to marav for the heads-up.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2816
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2817
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2819
(* Security fix *)
d/kernel-headers-5.19.2-x86-1.txz: Upgraded.
k/kernel-source-5.19.2-noarch-1.txz: Upgraded.
l/glibc-2.36-x86_64-2.txz: Rebuilt.
Rebuilt with a patch from Arch to reenable DT_HASH in shared objects since
the change broke Steam games that use EPIC's EAC. I'm not exactly 100% on
board with this approach, but since DT_GNU_HASH remains and is still used,
I guess I'll go along with it for now. Hopefully EAC will be patched and we
can back this out.
Thanks to Swaggajackin for the notice and for providing links to the glibc
bug discussion as well as the patch.
If anything else needs a rebuild after this, let me know in the LQ thread.
l/glibc-i18n-2.36-x86_64-2.txz: Rebuilt.
l/glibc-profile-2.36-x86_64-2.txz: Rebuilt.
xap/vim-gvim-9.0.0223-x86_64-1.txz: Upgraded.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.
Diffstat (limited to 'ChangeLog.rss')
-rw-r--r-- | ChangeLog.rss | 43 |
1 files changed, 41 insertions, 2 deletions
diff --git a/ChangeLog.rss b/ChangeLog.rss index 79abab107..bfd66e5b3 100644 --- a/ChangeLog.rss +++ b/ChangeLog.rss @@ -11,10 +11,49 @@ <description>Tracking Slackware development in git.</description> <language>en-us</language> <id xmlns="http://www.w3.org/2005/Atom">urn:uuid:c964f45e-6732-11e8-bbe5-107b4450212f</id> - <pubDate>Tue, 16 Aug 2022 18:51:34 GMT</pubDate> - <lastBuildDate>Wed, 17 Aug 2022 05:00:10 GMT</lastBuildDate> + <pubDate>Wed, 17 Aug 2022 20:41:53 GMT</pubDate> + <lastBuildDate>Thu, 18 Aug 2022 05:00:11 GMT</lastBuildDate> <generator>maintain_current_git.sh v 1.17</generator> <item> + <title>Wed, 17 Aug 2022 20:41:53 GMT</title> + <pubDate>Wed, 17 Aug 2022 20:41:53 GMT</pubDate> + <link>https://git.slackware.nl/current/tag/?h=20220817204153</link> + <guid isPermaLink="false">20220817204153</guid> + <description> + <![CDATA[<pre> +a/aaa_glibc-solibs-2.36-x86_64-2.txz: Rebuilt. +a/kernel-generic-5.19.2-x86_64-1.txz: Upgraded. +a/kernel-huge-5.19.2-x86_64-1.txz: Upgraded. +a/kernel-modules-5.19.2-x86_64-1.txz: Upgraded. +ap/vim-9.0.0223-x86_64-1.txz: Upgraded. + Fix use after free, out-of-bounds read, and heap based buffer overflow. + Thanks to marav for the heads-up. + For more information, see: + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2816 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2817 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-2819 + (* Security fix *) +d/kernel-headers-5.19.2-x86-1.txz: Upgraded. +k/kernel-source-5.19.2-noarch-1.txz: Upgraded. +l/glibc-2.36-x86_64-2.txz: Rebuilt. + Rebuilt with a patch from Arch to reenable DT_HASH in shared objects since + the change broke Steam games that use EPIC's EAC. I'm not exactly 100% on + board with this approach, but since DT_GNU_HASH remains and is still used, + I guess I'll go along with it for now. Hopefully EAC will be patched and we + can back this out. + Thanks to Swaggajackin for the notice and for providing links to the glibc + bug discussion as well as the patch. + If anything else needs a rebuild after this, let me know in the LQ thread. +l/glibc-i18n-2.36-x86_64-2.txz: Rebuilt. +l/glibc-profile-2.36-x86_64-2.txz: Rebuilt. +xap/vim-gvim-9.0.0223-x86_64-1.txz: Upgraded. +isolinux/initrd.img: Rebuilt. +kernels/*: Upgraded. +usb-and-pxe-installers/usbboot.img: Rebuilt. + </pre>]]> + </description> + </item> + <item> <title>Tue, 16 Aug 2022 18:51:34 GMT</title> <pubDate>Tue, 16 Aug 2022 18:51:34 GMT</pubDate> <link>https://git.slackware.nl/current/tag/?h=20220816185134</link> |