From af3a1b13c3fc7185876bb746f520dcae15c94c8e Mon Sep 17 00:00:00 2001 From: Patrick J Volkerding Date: Tue, 1 Aug 2023 19:50:53 +0000 Subject: Tue Aug 1 19:50:53 UTC 2023 patches/packages/openssl-1.1.1v-x86_64-1_slack15.0.txz: Upgraded. This update fixes bugs and security issues: Fix excessive time spent checking DH q parameter value. Fix DH_check() excessive time with over sized modulus. For more information, see: https://www.openssl.org/news/secadv/20230731.txt https://www.openssl.org/news/secadv/20230719.txt https://www.cve.org/CVERecord?id=CVE-2023-3817 https://www.cve.org/CVERecord?id=CVE-2023-3446 (* Security fix *) patches/packages/openssl-solibs-1.1.1v-x86_64-1_slack15.0.txz: Upgraded. --- ChangeLog.rss | 25 +++++++++++- ChangeLog.txt | 13 ++++++ FILELIST.TXT | 46 +++++++++++----------- .../packages/openssl-1.1.1u-x86_64-1_slack15.0.txt | 11 ------ .../packages/openssl-1.1.1v-x86_64-1_slack15.0.txt | 11 ++++++ .../openssl-solibs-1.1.1u-x86_64-1_slack15.0.txt | 11 ------ .../openssl-solibs-1.1.1v-x86_64-1_slack15.0.txt | 11 ++++++ 7 files changed, 81 insertions(+), 47 deletions(-) delete mode 100644 patches/packages/openssl-1.1.1u-x86_64-1_slack15.0.txt create mode 100644 patches/packages/openssl-1.1.1v-x86_64-1_slack15.0.txt delete mode 100644 patches/packages/openssl-solibs-1.1.1u-x86_64-1_slack15.0.txt create mode 100644 patches/packages/openssl-solibs-1.1.1v-x86_64-1_slack15.0.txt diff --git a/ChangeLog.rss b/ChangeLog.rss index b6b6bca5c..5f5508f6c 100644 --- a/ChangeLog.rss +++ b/ChangeLog.rss @@ -11,9 +11,30 @@ Tracking Slackware development in git. en-us urn:uuid:c964f45e-6732-11e8-bbe5-107b4450212f - Mon, 31 Jul 2023 21:52:46 GMT - Tue, 1 Aug 2023 11:30:19 GMT + Tue, 1 Aug 2023 19:50:53 GMT + Wed, 2 Aug 2023 11:30:21 GMT maintain_current_git.sh v 1.17 + + Tue, 1 Aug 2023 19:50:53 GMT + Tue, 1 Aug 2023 19:50:53 GMT + https://git.slackware.nl/current/tag/?h=20230801195053 + 20230801195053 + + +patches/packages/openssl-1.1.1v-x86_64-1_slack15.0.txz: Upgraded. + This update fixes bugs and security issues: + Fix excessive time spent checking DH q parameter value. + Fix DH_check() excessive time with over sized modulus. + For more information, see: + https://www.openssl.org/news/secadv/20230731.txt + https://www.openssl.org/news/secadv/20230719.txt + https://www.cve.org/CVERecord?id=CVE-2023-3817 + https://www.cve.org/CVERecord?id=CVE-2023-3446 + (* Security fix *) +patches/packages/openssl-solibs-1.1.1v-x86_64-1_slack15.0.txz: Upgraded. + ]]> + + Mon, 31 Jul 2023 21:52:46 GMT Mon, 31 Jul 2023 21:52:46 GMT diff --git a/ChangeLog.txt b/ChangeLog.txt index 22120d899..bae9e4622 100644 --- a/ChangeLog.txt +++ b/ChangeLog.txt @@ -1,3 +1,16 @@ +Tue Aug 1 19:50:53 UTC 2023 +patches/packages/openssl-1.1.1v-x86_64-1_slack15.0.txz: Upgraded. + This update fixes bugs and security issues: + Fix excessive time spent checking DH q parameter value. + Fix DH_check() excessive time with over sized modulus. + For more information, see: + https://www.openssl.org/news/secadv/20230731.txt + https://www.openssl.org/news/secadv/20230719.txt + https://www.cve.org/CVERecord?id=CVE-2023-3817 + https://www.cve.org/CVERecord?id=CVE-2023-3446 + (* Security fix *) +patches/packages/openssl-solibs-1.1.1v-x86_64-1_slack15.0.txz: Upgraded. ++--------------------------+ Mon Jul 31 21:52:46 UTC 2023 patches/packages/mozilla-thunderbird-102.13.1-x86_64-1_slack15.0.txz: Upgraded. This release contains security fixes and improvements. diff --git a/FILELIST.TXT b/FILELIST.TXT index e7f49cdd1..77c68267a 100644 --- a/FILELIST.TXT +++ b/FILELIST.TXT @@ -1,20 +1,20 @@ -Mon Jul 31 21:56:37 UTC 2023 +Tue Aug 1 19:53:45 UTC 2023 Here is the file list for this directory. If you are using a mirror site and find missing or extra files in the disk subdirectories, please have the archive administrator refresh the mirror. -drwxr-xr-x 12 root root 4096 2023-07-31 21:52 . +drwxr-xr-x 12 root root 4096 2023-08-01 19:50 . -rw-r--r-- 1 root root 5767 2022-02-02 22:44 ./ANNOUNCE.15.0 -rw-r--r-- 1 root root 16609 2022-03-30 19:03 ./CHANGES_AND_HINTS.TXT --rw-r--r-- 1 root root 1192263 2023-07-28 19:50 ./CHECKSUMS.md5 --rw-r--r-- 1 root root 163 2023-07-28 19:50 ./CHECKSUMS.md5.asc +-rw-r--r-- 1 root root 1192345 2023-07-31 21:56 ./CHECKSUMS.md5 +-rw-r--r-- 1 root root 163 2023-07-31 21:56 ./CHECKSUMS.md5.asc -rw-r--r-- 1 root root 17976 1994-06-10 02:28 ./COPYING -rw-r--r-- 1 root root 35147 2007-06-30 04:21 ./COPYING3 -rw-r--r-- 1 root root 19573 2016-06-23 20:08 ./COPYRIGHT.TXT -rw-r--r-- 1 root root 616 2006-10-02 04:37 ./CRYPTO_NOTICE.TXT --rw-r--r-- 1 root root 2031266 2023-07-31 21:52 ./ChangeLog.txt +-rw-r--r-- 1 root root 2031884 2023-08-01 19:50 ./ChangeLog.txt drwxr-xr-x 3 root root 4096 2013-03-20 22:17 ./EFI drwxr-xr-x 2 root root 4096 2022-02-02 08:21 ./EFI/BOOT -rw-r--r-- 1 root root 1187840 2021-06-15 19:16 ./EFI/BOOT/bootx64.efi @@ -25,7 +25,7 @@ drwxr-xr-x 2 root root 4096 2022-02-02 08:21 ./EFI/BOOT -rwxr-xr-x 1 root root 2504 2019-07-05 18:54 ./EFI/BOOT/make-grub.sh -rw-r--r-- 1 root root 10722 2013-09-21 19:02 ./EFI/BOOT/osdetect.cfg -rw-r--r-- 1 root root 1273 2013-08-12 21:08 ./EFI/BOOT/tools.cfg --rw-r--r-- 1 root root 1558854 2023-07-28 19:50 ./FILELIST.TXT +-rw-r--r-- 1 root root 1558954 2023-07-31 21:56 ./FILELIST.TXT -rw-r--r-- 1 root root 1572 2012-08-29 18:27 ./GPG-KEY -rw-r--r-- 1 root root 864745 2022-02-02 08:25 ./PACKAGES.TXT -rw-r--r-- 1 root root 8034 2022-02-02 03:36 ./README.TXT @@ -737,13 +737,13 @@ drwxr-xr-x 2 root root 4096 2008-05-07 05:21 ./pasture/source/php/pear -rwxr-xr-x 1 root root 9448 2018-05-16 22:38 ./pasture/source/php/php.SlackBuild -rw-r--r-- 1 root root 775 2017-07-07 19:25 ./pasture/source/php/php.ini-development.diff.gz -rw-r--r-- 1 root root 830 2005-12-09 05:18 ./pasture/source/php/slack-desc -drwxr-xr-x 4 root root 4096 2023-07-31 21:56 ./patches --rw-r--r-- 1 root root 79532 2023-07-31 21:56 ./patches/CHECKSUMS.md5 --rw-r--r-- 1 root root 163 2023-07-31 21:56 ./patches/CHECKSUMS.md5.asc --rw-r--r-- 1 root root 108192 2023-07-31 21:56 ./patches/FILE_LIST --rw-r--r-- 1 root root 12645360 2023-07-31 21:56 ./patches/MANIFEST.bz2 --rw-r--r-- 1 root root 56668 2023-07-31 21:56 ./patches/PACKAGES.TXT -drwxr-xr-x 3 root root 20480 2023-07-31 21:56 ./patches/packages +drwxr-xr-x 4 root root 4096 2023-08-01 19:53 ./patches +-rw-r--r-- 1 root root 79532 2023-08-01 19:53 ./patches/CHECKSUMS.md5 +-rw-r--r-- 1 root root 163 2023-08-01 19:53 ./patches/CHECKSUMS.md5.asc +-rw-r--r-- 1 root root 108192 2023-08-01 19:53 ./patches/FILE_LIST +-rw-r--r-- 1 root root 12636632 2023-08-01 19:53 ./patches/MANIFEST.bz2 +-rw-r--r-- 1 root root 56668 2023-08-01 19:53 ./patches/PACKAGES.TXT +drwxr-xr-x 3 root root 20480 2023-08-01 19:53 ./patches/packages -rw-r--r-- 1 root root 327 2022-02-15 05:07 ./patches/packages/aaa_base-15.0-x86_64-4_slack15.0.txt -rw-r--r-- 1 root root 10716 2022-02-15 05:07 ./patches/packages/aaa_base-15.0-x86_64-4_slack15.0.txz -rw-r--r-- 1 root root 163 2022-02-15 05:07 ./patches/packages/aaa_base-15.0-x86_64-4_slack15.0.txz.asc @@ -913,12 +913,12 @@ drwxr-xr-x 2 root root 4096 2023-06-23 18:50 ./patches/packages/linux-5.15 -rw-r--r-- 1 root root 672 2023-07-19 19:50 ./patches/packages/openssh-9.3p2-x86_64-1_slack15.0.txt -rw-r--r-- 1 root root 1062080 2023-07-19 19:50 ./patches/packages/openssh-9.3p2-x86_64-1_slack15.0.txz -rw-r--r-- 1 root root 163 2023-07-19 19:50 ./patches/packages/openssh-9.3p2-x86_64-1_slack15.0.txz.asc --rw-r--r-- 1 root root 559 2023-05-30 17:46 ./patches/packages/openssl-1.1.1u-x86_64-1_slack15.0.txt --rw-r--r-- 1 root root 3605164 2023-05-30 17:46 ./patches/packages/openssl-1.1.1u-x86_64-1_slack15.0.txz --rw-r--r-- 1 root root 163 2023-05-30 17:46 ./patches/packages/openssl-1.1.1u-x86_64-1_slack15.0.txz.asc --rw-r--r-- 1 root root 623 2023-05-30 17:46 ./patches/packages/openssl-solibs-1.1.1u-x86_64-1_slack15.0.txt --rw-r--r-- 1 root root 1369444 2023-05-30 17:46 ./patches/packages/openssl-solibs-1.1.1u-x86_64-1_slack15.0.txz --rw-r--r-- 1 root root 163 2023-05-30 17:46 ./patches/packages/openssl-solibs-1.1.1u-x86_64-1_slack15.0.txz.asc +-rw-r--r-- 1 root root 559 2023-08-01 18:55 ./patches/packages/openssl-1.1.1v-x86_64-1_slack15.0.txt +-rw-r--r-- 1 root root 3602760 2023-08-01 18:55 ./patches/packages/openssl-1.1.1v-x86_64-1_slack15.0.txz +-rw-r--r-- 1 root root 163 2023-08-01 18:55 ./patches/packages/openssl-1.1.1v-x86_64-1_slack15.0.txz.asc +-rw-r--r-- 1 root root 623 2023-08-01 18:55 ./patches/packages/openssl-solibs-1.1.1v-x86_64-1_slack15.0.txt +-rw-r--r-- 1 root root 1369816 2023-08-01 18:55 ./patches/packages/openssl-solibs-1.1.1v-x86_64-1_slack15.0.txz +-rw-r--r-- 1 root root 163 2023-08-01 18:55 ./patches/packages/openssl-solibs-1.1.1v-x86_64-1_slack15.0.txz.asc -rw-r--r-- 1 root root 544 2022-07-25 18:03 ./patches/packages/perl-5.34.0-x86_64-2_slack15.0.txt -rw-r--r-- 1 root root 17057236 2022-07-25 18:03 ./patches/packages/perl-5.34.0-x86_64-2_slack15.0.txz -rw-r--r-- 1 root root 163 2022-07-25 18:03 ./patches/packages/perl-5.34.0-x86_64-2_slack15.0.txz.asc @@ -1015,7 +1015,7 @@ drwxr-xr-x 2 root root 4096 2023-06-23 18:50 ./patches/packages/linux-5.15 -rw-r--r-- 1 root root 463 2023-04-05 18:16 ./patches/packages/zstd-1.5.5-x86_64-1_slack15.0.txt -rw-r--r-- 1 root root 459652 2023-04-05 18:16 ./patches/packages/zstd-1.5.5-x86_64-1_slack15.0.txz -rw-r--r-- 1 root root 163 2023-04-05 18:16 ./patches/packages/zstd-1.5.5-x86_64-1_slack15.0.txz.asc -drwxr-xr-x 83 root root 4096 2023-07-31 20:52 ./patches/source +drwxr-xr-x 83 root root 4096 2023-08-01 19:43 ./patches/source drwxr-xr-x 2 root root 4096 2022-01-16 05:07 ./patches/source/aaa_base -rw-r--r-- 1 root root 11041 2022-02-15 04:49 ./patches/source/aaa_base/_aaa_base.tar.gz -rwxr-xr-x 1 root root 3894 2022-02-15 05:07 ./patches/source/aaa_base/aaa_base.SlackBuild @@ -1555,12 +1555,12 @@ drwxr-xr-x 2 root root 4096 2023-07-19 19:39 ./patches/source/openssh -rw-r--r-- 1 root root 318 2017-07-18 18:45 ./patches/source/openssh/sshd.default -rw-r--r-- 1 root root 1228 2021-09-29 19:00 ./patches/source/openssh/sshd.pam -rw-r--r-- 1 root root 271 2021-08-21 03:23 ./patches/source/openssh/sshd_config-pam.diff.gz -drwxr-xr-x 2 root root 4096 2023-05-30 17:41 ./patches/source/openssl +drwxr-xr-x 2 root root 4096 2023-08-01 18:52 ./patches/source/openssl -rw-r--r-- 1 root root 1758 2012-08-08 22:46 ./patches/source/openssl/certwatch.gz -rw-r--r-- 1 root root 281 2007-06-13 17:20 ./patches/source/openssl/doinst.sh-openssl-solibs.gz -rw-r--r-- 1 root root 501 2012-07-12 16:21 ./patches/source/openssl/doinst.sh-openssl.gz --rw-r--r-- 1 root root 9892176 2023-05-30 13:16 ./patches/source/openssl/openssl-1.1.1u.tar.gz --rw-r--r-- 1 root root 833 2023-05-30 13:16 ./patches/source/openssl/openssl-1.1.1u.tar.gz.asc +-rw-r--r-- 1 root root 9893443 2023-08-01 14:09 ./patches/source/openssl/openssl-1.1.1v.tar.gz +-rw-r--r-- 1 root root 833 2023-08-01 14:09 ./patches/source/openssl/openssl-1.1.1v.tar.gz.asc -rwxr-xr-x 1 root root 9269 2022-11-29 19:48 ./patches/source/openssl/openssl.SlackBuild -rw-r--r-- 1 root root 1014 2018-02-27 06:13 ./patches/source/openssl/slack-desc.openssl -rw-r--r-- 1 root root 1085 2018-02-27 06:13 ./patches/source/openssl/slack-desc.openssl-solibs diff --git a/patches/packages/openssl-1.1.1u-x86_64-1_slack15.0.txt b/patches/packages/openssl-1.1.1u-x86_64-1_slack15.0.txt deleted file mode 100644 index f6169bb30..000000000 --- a/patches/packages/openssl-1.1.1u-x86_64-1_slack15.0.txt +++ /dev/null @@ -1,11 +0,0 @@ -openssl: openssl (Secure Sockets Layer toolkit) -openssl: -openssl: The OpenSSL certificate management tool and the shared libraries that -openssl: provide various encryption and decryption algorithms and protocols. -openssl: -openssl: This product includes software developed by the OpenSSL Project for -openssl: use in the OpenSSL Toolkit (http://www.openssl.org). This product -openssl: includes cryptographic software written by Eric Young -openssl: (eay@cryptsoft.com). This product includes software written by Tim -openssl: Hudson (tjh@cryptsoft.com). -openssl: diff --git a/patches/packages/openssl-1.1.1v-x86_64-1_slack15.0.txt b/patches/packages/openssl-1.1.1v-x86_64-1_slack15.0.txt new file mode 100644 index 000000000..f6169bb30 --- /dev/null +++ b/patches/packages/openssl-1.1.1v-x86_64-1_slack15.0.txt @@ -0,0 +1,11 @@ +openssl: openssl (Secure Sockets Layer toolkit) +openssl: +openssl: The OpenSSL certificate management tool and the shared libraries that +openssl: provide various encryption and decryption algorithms and protocols. +openssl: +openssl: This product includes software developed by the OpenSSL Project for +openssl: use in the OpenSSL Toolkit (http://www.openssl.org). This product +openssl: includes cryptographic software written by Eric Young +openssl: (eay@cryptsoft.com). This product includes software written by Tim +openssl: Hudson (tjh@cryptsoft.com). +openssl: diff --git a/patches/packages/openssl-solibs-1.1.1u-x86_64-1_slack15.0.txt b/patches/packages/openssl-solibs-1.1.1u-x86_64-1_slack15.0.txt deleted file mode 100644 index 65fe3aa52..000000000 --- a/patches/packages/openssl-solibs-1.1.1u-x86_64-1_slack15.0.txt +++ /dev/null @@ -1,11 +0,0 @@ -openssl-solibs: openssl-solibs (OpenSSL shared libraries) -openssl-solibs: -openssl-solibs: These shared libraries provide encryption routines required by -openssl-solibs: programs such as openssh, bind, sendmail, and many others. -openssl-solibs: -openssl-solibs: This product includes software developed by the OpenSSL Project for -openssl-solibs: use in the OpenSSL Toolkit (http://www.openssl.org). This product -openssl-solibs: includes cryptographic software written by Eric Young -openssl-solibs: (eay@cryptsoft.com). This product includes software written by Tim -openssl-solibs: Hudson (tjh@cryptsoft.com). -openssl-solibs: diff --git a/patches/packages/openssl-solibs-1.1.1v-x86_64-1_slack15.0.txt b/patches/packages/openssl-solibs-1.1.1v-x86_64-1_slack15.0.txt new file mode 100644 index 000000000..65fe3aa52 --- /dev/null +++ b/patches/packages/openssl-solibs-1.1.1v-x86_64-1_slack15.0.txt @@ -0,0 +1,11 @@ +openssl-solibs: openssl-solibs (OpenSSL shared libraries) +openssl-solibs: +openssl-solibs: These shared libraries provide encryption routines required by +openssl-solibs: programs such as openssh, bind, sendmail, and many others. +openssl-solibs: +openssl-solibs: This product includes software developed by the OpenSSL Project for +openssl-solibs: use in the OpenSSL Toolkit (http://www.openssl.org). This product +openssl-solibs: includes cryptographic software written by Eric Young +openssl-solibs: (eay@cryptsoft.com). This product includes software written by Tim +openssl-solibs: Hudson (tjh@cryptsoft.com). +openssl-solibs: -- cgit v1.2.3-65-gdbad