Slackware-13.0 ChangeLog (2013-08-21)
Wed Aug 21 06:11:23 UTC 2013
Packages
Rebuilt
- patches/packages/hplip-3.9.4b-i486-3_slack13.0.txz
This update fixes a stack-based buffer overflow in the hpmud_get_pml
function that can allow remote attackers to cause a denial of service
(crash) and possibly execute arbitrary code via a crafted SNMP response
with a large length value.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4267
(* Security fix *)
Upgraded
- patches/packages/xpdf-3.03-i486-1_slack13.0.txz
Sanitize error messages to remove escape sequences that could be used to
exploit vulnerable terminal emulators.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2142
Thanks to mancha.
(* Security fix *)