This is an old revision of the document!
Slackware64-14.2 ChangeLog (2018-09-06)
Thu Sep 6 23:22:45 UTC 2018
Packages
Rebuilt
- patches/packages/ghostscript-9.24-x86_64-2_slack14.2.txz
Applied upstream patch to fix “Filter failed”. Thanks to th_r and bamunds.
Thu Sep 6 05:28:05 UTC 2018
Hey folks, in light of Firefox 52.x ESR reaching EOL a few hours ago, I'm
providing some updates. This required adding Rust and a newer version of
LLVM as optional updates for Slackware 14.2. And in case it doesn't work
for you (perhaps there's an extension you need that's not supported by 60.x
ESR), the last Firefox and Thunderbird 52.x EST have been moved to /pasture
as a fallback. If there are any more updates to those (but I don't think
there will be), I'll make those updates in /pasture as well.
Packages
Added
- pasture/mozilla-firefox-52.9.0esr-x86_64-1_slack14.2.txz
Moved here from patches/packages/. - pasture/mozilla-thunderbird-52.9.1-x86_64-1_slack14.2.txz
Moved here from patches/packages/. - patches/packages/rust-1.28.0-x86_64-1_slack14.2.txz
Since Rust is now a requirement to compile Firefox and Thunderbird we
are adding it here. Unless you will need to recompile those (or need to
compile other code written in Rust), it is an optional addition.
Upgraded
- patches/packages/curl-7.61.1-x86_64-1_slack14.2.txz
This update fixes an NTLM password overflow via integer overflow.
For more information, see:
https://curl.haxx.se/docs/CVE-2018-14618.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-14618
(* Security fix *) - patches/packages/ghostscript-9.24-x86_64-1_slack14.2.txz
Patched multiple -dSAFER sandbox bypass vulnerabilities.
Thanks to Tavis Ormandy.
For more information, see:
https://www.ghostscript.com/doc/9.24/News.htm
https://www.kb.cert.org/vuls/id/332928
(* Security fix *) - patches/packages/llvm-6.0.1-x86_64-1_slack14.2.txz
This upgrade to LLVM is provided because Firefox and Thunderbird require
a newer version than what was shipped with Slackware 14.2. The libLLVM
shared library from llvm-3.8.0 is also included in this package, so it
should be safe to upgrade on Slackware 14.2 systems without breaking
anything, but unless you are planning to recompile Firefox or Thunderbird,
or you need a newer version of LLVM for some reason, it is optional. - patches/packages/mozilla-firefox-60.2.0esr-x86_64-1_slack14.2.txz
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/security/known-vulnerabilities/firefoxESR.html
(* Security fix *) - patches/packages/mozilla-thunderbird-60.0-x86_64-1_slack14.2.txz
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/60.0/releasenotes/
https://www.mozilla.org/security/known-vulnerabilities/thunderbird.html
https://www.mozilla.org/en-US/security/advisories/mfsa2018-19/
(* Security fix *)