From 8f855c794a744f8be6007b31b47d492ecffd777a Mon Sep 17 00:00:00 2001 From: Patrick J Volkerding Date: Wed, 8 Dec 2021 20:42:30 +0000 Subject: Wed Dec 8 20:42:30 UTC 2021 a/kernel-generic-5.15.7-x86_64-1.txz: Upgraded. a/kernel-huge-5.15.7-x86_64-1.txz: Upgraded. a/kernel-modules-5.15.7-x86_64-1.txz: Upgraded. d/kernel-headers-5.15.7-x86-1.txz: Upgraded. k/kernel-source-5.15.7-noarch-1.txz: Upgraded. n/samba-4.15.3-x86_64-1.txz: Upgraded. This release fixes bugs and these regressions in the 4.15.2 release: CVE-2020-25717: A user on the domain can become root on domain members. https://www.samba.org/samba/security/CVE-2020-25717.html PLEASE [RE-]READ! The instructions have been updated and some workarounds initially advised for 4.15.2 are no longer required and should be reverted in most cases. BUG-14902: User with multiple spaces (eg FredNurk) become un-deletable. While this release should fix this bug, it is advised to have a look at the bug report for more detailed information, see: https://bugzilla.samba.org/show_bug.cgi?id=14902 For more information, see: https://www.samba.org/samba/security/CVE-2020-25717.html https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-25717 (* Security fix *) x/libX11-1.7.3-x86_64-1.txz: Upgraded. x/xscope-1.4.2-x86_64-1.txz: Upgraded. xap/mozilla-thunderbird-91.4.0-x86_64-1.txz: Upgraded. This release contains security fixes and improvements. For more information, see: https://www.mozilla.org/en-US/thunderbird/91.4.0/releasenotes/ https://www.mozilla.org/en-US/security/advisories/mfsa2021-54/ https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43536 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43537 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43538 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43539 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43541 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43542 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43543 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43545 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43546 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43528 (* Security fix *) xfce/exo-4.16.3-x86_64-1.txz: Upgraded. isolinux/initrd.img: Rebuilt. kernels/*: Upgraded. usb-and-pxe-installers/usbboot.img: Rebuilt. --- ChangeLog.txt | 44 ++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 44 insertions(+) (limited to 'ChangeLog.txt') diff --git a/ChangeLog.txt b/ChangeLog.txt index c36ee5145..90a7b71d7 100644 --- a/ChangeLog.txt +++ b/ChangeLog.txt @@ -1,3 +1,47 @@ +Wed Dec 8 20:42:30 UTC 2021 +a/kernel-generic-5.15.7-x86_64-1.txz: Upgraded. +a/kernel-huge-5.15.7-x86_64-1.txz: Upgraded. +a/kernel-modules-5.15.7-x86_64-1.txz: Upgraded. +d/kernel-headers-5.15.7-x86-1.txz: Upgraded. +k/kernel-source-5.15.7-noarch-1.txz: Upgraded. +n/samba-4.15.3-x86_64-1.txz: Upgraded. + This release fixes bugs and these regressions in the 4.15.2 release: + CVE-2020-25717: A user on the domain can become root on domain members. + https://www.samba.org/samba/security/CVE-2020-25717.html + PLEASE [RE-]READ! + The instructions have been updated and some workarounds initially advised + for 4.15.2 are no longer required and should be reverted in most cases. + BUG-14902: User with multiple spaces (eg FredNurk) become + un-deletable. While this release should fix this bug, it is advised to have + a look at the bug report for more detailed information, see: + https://bugzilla.samba.org/show_bug.cgi?id=14902 + For more information, see: + https://www.samba.org/samba/security/CVE-2020-25717.html + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-25717 + (* Security fix *) +x/libX11-1.7.3-x86_64-1.txz: Upgraded. +x/xscope-1.4.2-x86_64-1.txz: Upgraded. +xap/mozilla-thunderbird-91.4.0-x86_64-1.txz: Upgraded. + This release contains security fixes and improvements. + For more information, see: + https://www.mozilla.org/en-US/thunderbird/91.4.0/releasenotes/ + https://www.mozilla.org/en-US/security/advisories/mfsa2021-54/ + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43536 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43537 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43538 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43539 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43541 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43542 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43543 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43545 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43546 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-43528 + (* Security fix *) +xfce/exo-4.16.3-x86_64-1.txz: Upgraded. +isolinux/initrd.img: Rebuilt. +kernels/*: Upgraded. +usb-and-pxe-installers/usbboot.img: Rebuilt. ++--------------------------+ Tue Dec 7 21:02:41 UTC 2021 ap/vim-8.2.3754-x86_64-1.txz: Upgraded. d/Cython-0.29.25-x86_64-1.txz: Upgraded. -- cgit v1.2.3-65-gdbad