Slackware-current ChangeLog (2018-05-23)
Wed May 23 04:42:29 UTC 2018
Packages
Upgraded
- a/procps-ng-3.3.15-i586-1.txz
Shared library .so-version bump.
This update fixes bugs and security issues:
library: Fix integer overflow and LPE in file2strvec
library: Use size_t for alloc functions
pgrep: Fix stack-based buffer overflow
ps: Fix buffer overflow in output buffer, causing DOS
top: Don't use cwd for location of config
For more information, see:
https://www.qualys.com/2018/05/17/procps-ng-audit-report-advisory.txt
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1124
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1126
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1125
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1123
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1122
(* Security fix *) - ap/mariadb-10.2.15-i586-1.txz
This update fixes bugs and security issues.
For more information, see:
https://mariadb.com/kb/en/mariadb-10215-release-notes/
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2786
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2759
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2777
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2810
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2782
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2784
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2787
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2766
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2755
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2819
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2817
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2761
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2781
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2771
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-2813
(* Security fix *) - k/kernel-source-4.14.43_smp-noarch-1.txz
Changes to .config (thanks to tumble):
TCP_CONG_ADVANCED n → y
+DEFAULT_CUBIC y
+DEFAULT_RENO n
+TCP_CONG_BBR m
+TCP_CONG_BIC m
+TCP_CONG_CDG m
+TCP_CONG_DCTCP m
+TCP_CONG_HSTCP m
+TCP_CONG_HTCP m
+TCP_CONG_HYBLA m
+TCP_CONG_ILLINOIS m
+TCP_CONG_LP m
+TCP_CONG_NV m
+TCP_CONG_SCALABLE m
+TCP_CONG_VEGAS m
+TCP_CONG_VENO m
+TCP_CONG_WESTWOOD m
+TCP_CONG_YEAH m - l/poppler-0.65.0-i586-1.txz
Shared library .so-version bump. - xap/mozilla-thunderbird-52.8.0-i586-1.txz
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/52.8.0/releasenotes/
https://www.mozilla.org/en-US/security/advisories/mfsa2018-13/
(* Security fix *)
Rebuilt
- a/pkgtools-15.0-noarch-11.txz
installpkg: Implement locking to prevent screen output or install script
collisions if multiple copies of installpkg are running simultaneously.
installpkg: Use $(mcookie) instead of $$. Fall back on $$ if mcookie is
not available.
makepkg: Add –compress option, usually used to change the preset
compression level or block size. Thanks to shasta. - ap/cups-filters-1.20.3-i586-2.txz
Recompiled against poppler-0.65.0. - kde/calligra-2.9.11-i586-21.txz
Recompiled against poppler-0.65.0. - n/crda-3.18-i586-7.txz
Upgraded to wireless-regdb-2018.05.09. - t/texlive-2017.171108-i586-6.txz
Recompiled against poppler-0.65.0. - x/intel-gpu-tools-1.22-i586-3.txz
Recompiled against procps-ng-3.3.15. - xfce/tumbler-0.2.1-i586-3.txz
Recompiled against poppler-0.65.0.