New kdelibs and kdebase packages are available for Slack/390 9.1, and
-current to fix security issues.

More details about this issues may be found in the Common Vulnerabilities
and Exposures (CVE) database:

  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0689
  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0690
  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0721
  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0746


Here are the details from the Slack/390 -current ChangeLog:
+--------------------------+
Tue Sep  7 23:47:15 EDT 2004
patches/packages/kdebase-3.2.1-s390-3.tgz: Patched frame injection
  vulnerability in Konqueror.  For more details, see:
    http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0721
  (* Security fix *)
patches/packages/kdelibs-3.2.1-s390-2.tgz: Patched unsafe temporary
directory
  usage, cross-domain cookie injection vulnerability for certain country
  specific domains, and frame injection vulnerability in Konqueror.
  For more details, see:
    http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0689
    http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0690
    http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0721
    http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0746
  (* Security fix *)
+--------------------------+


Where to find the new packages:
+-----------------------------+

Updated packages for Slack/390 9.1:
ftp://ftp.ibiblio.org/pub/linux/distributions/slack390/slack390-9.1/patches/
packages/kdebase-3.1.4-s390-2.tgz
ftp://ftp.ibiblio.org/pub/linux/distributions/slack390/slack390-9.1/patches/
packages/kdelibs-3.1.4-s390-2.tgz

Updated packages for Slack/390 -current:
ftp://ftp.ibiblio.org/pub/linux/distributions/slack390/slack390-current/patc
hes/packages/kdebase-3.2.1-s390-3.tgz
ftp://ftp.ibiblio.org/pub/linux/distributions/slack390/slack390-current/patc
hes/packages/kdelibs-3.2.1-s390-2.tgz


MD5 signatures:
+-------------+

Slack/390 9.1 packages:
b0c1c96fb3b037f78d8406726c0ea659  kdebase-3.1.4-s390-2.tgz
894a86aafdb84484f7d69433c05661b8  kdelibs-3.1.4-s390-2.tgz

Slack/390 -current packages:
1d80a5521d9cde80f3e347aa5d02c3a5  kdebase-3.2.1-s390-3.tgz
e48f57b8e71172446d2a2e12479a5a19  kdelibs-3.2.1-s390-2.tgz


Installation instructions:
+------------------------+

Upgrade the packages as root:
# upgradepkg kdebase-3.2.1-s390-3.tgz kdelibs-3.2.1-s390-2.tgz


+-----+

Mark Post

----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions,
send email to [EMAIL PROTECTED] with the message: INFO LINUX-390 or visit
http://www.marist.edu/htbin/wlvindex?LINUX-390

Reply via email to