From 8712cd5e26b89d3da1afc87615d64a902101faa3 Mon Sep 17 00:00:00 2001 From: Patrick J Volkerding Date: Tue, 13 Feb 2024 19:19:24 +0000 Subject: Tue Feb 13 19:19:24 UTC 2024 ap/tmux-3.4-x86_64-1.txz: Upgraded. d/lua-5.4.6-x86_64-5.txz: Rebuilt. Search paths under /usr/local in addition to /usr. Thanks to Arch for the patch. l/gst-plugins-bad-free-1.22.10-x86_64-1.txz: Upgraded. l/gst-plugins-base-1.22.10-x86_64-1.txz: Upgraded. l/gst-plugins-good-1.22.10-x86_64-1.txz: Upgraded. l/gst-plugins-libav-1.22.10-x86_64-1.txz: Upgraded. l/gstreamer-1.22.10-x86_64-1.txz: Upgraded. l/wireplumber-0.4.17-x86_64-3.txz: Rebuilt. Build against system lua. n/bind-9.18.24-x86_64-1.txz: Upgraded. This update fixes bugs and security issues: Specific DNS answers could cause a denial-of-service condition due to DNS validation taking a long time. Restore DNS64 state when handling a serve-stale timeout. Specific queries could trigger an assertion check with nxdomain-redirect enabled. Speed up parsing of DNS messages with many different names. For more information, see: https://kb.isc.org/docs/cve-2023-50387 https://www.cve.org/CVERecord?id=CVE-2023-50387 https://kb.isc.org/docs/cve-2023-5679 https://www.cve.org/CVERecord?id=CVE-2023-5679 https://kb.isc.org/docs/cve-2023-5517 https://www.cve.org/CVERecord?id=CVE-2023-5517 https://kb.isc.org/docs/cve-2023-4408 https://www.cve.org/CVERecord?id=CVE-2023-4408 (* Security fix *) n/ipset-7.21-x86_64-1.txz: Upgraded. --- ChangeLog.txt | 32 ++++++++++++++++++++++++++++++++ 1 file changed, 32 insertions(+) (limited to 'ChangeLog.txt') diff --git a/ChangeLog.txt b/ChangeLog.txt index 5845d0261..f840c8b76 100644 --- a/ChangeLog.txt +++ b/ChangeLog.txt @@ -1,3 +1,35 @@ +Tue Feb 13 19:19:24 UTC 2024 +ap/tmux-3.4-x86_64-1.txz: Upgraded. +d/lua-5.4.6-x86_64-5.txz: Rebuilt. + Search paths under /usr/local in addition to /usr. + Thanks to Arch for the patch. +l/gst-plugins-bad-free-1.22.10-x86_64-1.txz: Upgraded. +l/gst-plugins-base-1.22.10-x86_64-1.txz: Upgraded. +l/gst-plugins-good-1.22.10-x86_64-1.txz: Upgraded. +l/gst-plugins-libav-1.22.10-x86_64-1.txz: Upgraded. +l/gstreamer-1.22.10-x86_64-1.txz: Upgraded. +l/wireplumber-0.4.17-x86_64-3.txz: Rebuilt. + Build against system lua. +n/bind-9.18.24-x86_64-1.txz: Upgraded. + This update fixes bugs and security issues: + Specific DNS answers could cause a denial-of-service condition due to DNS + validation taking a long time. + Restore DNS64 state when handling a serve-stale timeout. + Specific queries could trigger an assertion check with nxdomain-redirect + enabled. + Speed up parsing of DNS messages with many different names. + For more information, see: + https://kb.isc.org/docs/cve-2023-50387 + https://www.cve.org/CVERecord?id=CVE-2023-50387 + https://kb.isc.org/docs/cve-2023-5679 + https://www.cve.org/CVERecord?id=CVE-2023-5679 + https://kb.isc.org/docs/cve-2023-5517 + https://www.cve.org/CVERecord?id=CVE-2023-5517 + https://kb.isc.org/docs/cve-2023-4408 + https://www.cve.org/CVERecord?id=CVE-2023-4408 + (* Security fix *) +n/ipset-7.21-x86_64-1.txz: Upgraded. ++--------------------------+ Mon Feb 12 20:58:46 UTC 2024 a/procps-ng-4.0.4-x86_64-1.txz: Upgraded. a/shadow-4.14.4-x86_64-1.txz: Upgraded. -- cgit v1.2.3