Slackwarearm-14.2 ChangeLog (2016-11-02)
Wed Nov 2 06:07:08 UTC 2016
Packages
Upgraded
- patches/packages/libX11-2.6.4-arm-1_slack14.2.txz
Insufficient validation of data from the X server can cause out of boundary
memory read in XGetImage() or write in XListFonts().
Affected versions libX11 ⇐ 1.6.3.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7942
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7943
(* Security fix *) - patches/packages/libXfixes-5.0.3-arm-1_slack14.2.txz
Insufficient validation of data from the X server can cause an integer
overflow on 32 bit architectures.
Affected versions : libXfixes ⇐ 5.0.2.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7944
(* Security fix *) - patches/packages/libXi-1.7.8-arm-1_slack14.2.txz
Insufficient validation of data from the X server can cause out of boundary
memory access or endless loops (Denial of Service).
Affected versions libXi ⇐ 1.7.6.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7945
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7946
(* Security fix *) - patches/packages/libXrandr-1.5.1-arm-1_slack14.2.txz
Insufficient validation of data from the X server can cause out of boundary
memory writes.
Affected versions: libXrandr ⇐ 1.5.0.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7947
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7948
(* Security fix *) - patches/packages/libXrender-0.9.10-arm-1_slack14.2.txz
Insufficient validation of data from the X server can cause out of boundary
memory writes.
Affected version: libXrender ⇐ 0.9.9.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7949
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7950
(* Security fix *) - patches/packages/libXtst-1.2.3-arm-1_slack14.2.txz
Insufficient validation of data from the X server can cause out of boundary
memory access or endless loops (Denial of Service).
Affected version libXtst ⇐ 1.2.2.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7951
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7952
(* Security fix *) - patches/packages/libXv-1.0.11-arm-1_slack14.2.txz
Insufficient validation of data from the X server can cause out of boundary
memory and memory corruption.
Affected version libXv ⇐ 1.0.10.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5407
(* Security fix *) - patches/packages/libXvMC-1.0.10-arm-1_slack14.2.txz
Insufficient validation of data from the X server can cause a one byte buffer
read underrun.
Affected version: libXvMC ⇐ 1.0.9.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7953
(* Security fix *) - patches/packages/mariadb-10.0.28-arm-1_slack14.2.txz
This update fixes several security issues.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5616
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5624
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5626
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3492
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5629
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-8283
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7440
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5584
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6663
(* Security fix *) - patches/packages/php-5.6.27-arm-1_slack14.2.txz
This release fixes bugs and security issues.
For more information, see:
https://php.net/ChangeLog-5.php#5.6.27
(* Security fix *) - patches/packages/xscreensaver-5.36-arm-1_slack14.2.txz
Here's an upgrade to the latest xscreensaver.