Author: renodr
Date: Fri Oct 25 07:53:53 2019
New Revision: 1503
Log:
Add errata for Python2 and ProFTPD security fixes
Modified:
html/trunk/blfs/errata/9.0-systemd/index.html
html/trunk/blfs/errata/9.0/index.html
Modified: html/trunk/blfs/errata/9.0-systemd/index.html
==============================================================================
--- html/trunk/blfs/errata/9.0-systemd/index.html Tue Oct 15 20:30:42
2019 (r1502)
+++ html/trunk/blfs/errata/9.0-systemd/index.html Fri Oct 25 07:53:53
2019 (r1503)
@@ -113,6 +113,17 @@
Sudo-1.8.28 ASAP using the instructions in
<a href="../../view/systemd/postlfs/sudo.html">sudo-1.8.28</a>.</p>
+ <p>After release, five vulnerabilities were discovered in Python-2.7.16
+ as shipped with BLFS 9.0. To fix these vulnerabilities, update to
+ Python-2.7.17 using the instructions in
+ <a href="../../view/systemd/general/python2.html">Python-2.7.17</a>.</p>
+
+ <p>After release, a new vulnerability (which got media attention) was
+ revealed in ProFTPD. This classifies as a buffer overflow vulnerability.
+ To fix this vulnerability, update to ProFTPD-1.3.6b using the instructions
+ in <a
href="../../view/systemd/server/proftpd.html">ProFTPD-1.3.6b</a>.</p>
+
+
<h2>Known Security Vulnerabilities</h2>
<p>A few packages are good at reporting that a new
Modified: html/trunk/blfs/errata/9.0/index.html
==============================================================================
--- html/trunk/blfs/errata/9.0/index.html Tue Oct 15 20:30:42 2019
(r1502)
+++ html/trunk/blfs/errata/9.0/index.html Fri Oct 25 07:53:53 2019
(r1503)
@@ -118,6 +118,16 @@
Sudo-1.8.28 ASAP using the instructions in
<a href="../../view/svn/postlfs/sudo.html">sudo-1.8.28</a>.</p>
+ <p>After release, five vulnerabilities were discovered in Python-2.7.16
+ as shipped with BLFS 9.0. To fix these vulnerabilities, update to
+ Python-2.7.17 using the instructions in
+ <a href="../../view/svn/general/python2.html">Python-2.7.17</a>.</p>
+
+ <p>After release, a new vulnerability (which got media attention) was
+ revealed in ProFTPD. This classifies as a buffer overflow vulnerability.
+ To fix this vulnerability, update to ProFTPD-1.3.6b using the instructions
+ in <a href="../../view/svn/server/proftpd.html">ProFTPD-1.3.6b</a>.</p>
+
<!--
<p>A vulnerability with available exploits in all recent versions of
ghostscript has been fixed in the development book by patching gs-9.25.
--
http://lists.linuxfromscratch.org/listinfo/website
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page