[blfs-support] Critical security updates to glib2 and JasPer

2021-02-04 Thread Douglas R. Reno via blfs-support
Hello everyone, Today, a critical 0day security vulnerability was discovered in glib2. This vulnerability has to do with the g_bytes_new and g_memdup functions, which are very commonly used in applications that use GLib. The vulnerability is an integer-overflow in the g_bytes_new function.

[blfs-support] Security Advisories

2021-02-04 Thread Ken Moffat via blfs-support
I'm posting this to both lfs-support and blfs-support. When I started here, things were a lot simpler - far fewer packages, a much more limited desktop, and not many security vulnerabilities were getting disclosed. In those days we had the lfs-security list for mentioning new vulnerabilities,