Slackwarearm-14.0 ChangeLog (2013-11-20)
Wed Nov 20 23:49:20 UTC 2013
Packages
Upgraded
- patches/packages/php-5.4.22-arm-1_slack14.0.tgz
This is a bugfix release. - patches/packages/samba-3.6.20-arm-1_slack14.0.tgz
This update fixes two security issues:
* Samba versions 3.2.0 and above do not check the underlying file or
directory ACL when opening an alternate data stream.
* In setups which provide ldap(s) and/or https services, the private key
for SSL/TLS encryption might be world readable. This typically happens
in active directory domain controller setups.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4475
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4476
(* Security fix *)