Slackwarearm-14.0 ChangeLog (2013-08-23)
Fri Aug 23 07:38:05 UTC 2013
Packages
Rebuilt
- patches/packages/hplip-3.12.9-arm-2_slack14.0.tgz
This update fixes a stack-based buffer overflow in the hpmud_get_pml
function that can allow remote attackers to cause a denial of service
(crash) and possibly execute arbitrary code via a crafted SNMP response
with a large length value.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4267
(* Security fix *) - patches/packages/poppler-0.20.2-arm-2_slack14.0.tgz
Sanitize error messages to remove escape sequences that could be used to
exploit vulnerable terminal emulators.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2142
(* Security fix *)
Upgraded
- patches/packages/xpdf-3.03-arm-1_slack14.0.tgz
Sanitize error messages to remove escape sequences that could be used to
exploit vulnerable terminal emulators.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2142
Thanks to mancha.
(* Security fix *)