Author: renodr
Date: Sun Oct 27 14:07:30 2019
New Revision: 1505
Log:
Add errata for Thunderbird security flaws and bump PHP version for SysV
Modified:
html/trunk/blfs/errata/9.0-systemd/index.html
html/trunk/blfs/errata/9.0/index.html
Modified: html/trunk/blfs/errata/9.0-systemd/index.html
==============================================================================
--- html/trunk/blfs/errata/9.0-systemd/index.html Fri Oct 25 17:14:20
2019 (r1504)
+++ html/trunk/blfs/errata/9.0-systemd/index.html Sun Oct 27 14:07:30
2019 (r1505)
@@ -123,6 +123,11 @@
To fix this vulnerability, update to ProFTPD-1.3.6b using the instructions
in <a
href="../../view/systemd/server/proftpd.html">ProFTPD-1.3.6b</a>.</p>
+ <p>After release, several vulnerabilities were discovered in Thunderbird.
+ These include memory safety bugs, restriction bypasses, and a
+ remote code execution bug in the iCal parser. To fix these, update to
+ Thunderbird-68.2.0 or later using the instructions in
+ <a
href="../../view/svn/xsoft/thunderbird.html">Thunderbird-68.2.0</a>.</p>
<h2>Known Security Vulnerabilities</h2>
Modified: html/trunk/blfs/errata/9.0/index.html
==============================================================================
--- html/trunk/blfs/errata/9.0/index.html Fri Oct 25 17:14:20 2019
(r1504)
+++ html/trunk/blfs/errata/9.0/index.html Sun Oct 27 14:07:30 2019
(r1505)
@@ -38,7 +38,7 @@
<p>After release, a vulnerability was discovered in the version of PHP
shipped with BLFS 9.0. The BLFS team recommends updating to the latest
version
of PHP in the instructions here:
- <a href="../../view/svn/general/php.html">PHP-7.3.9</a>.</p>
+ <a href="../../view/svn/general/php.html">PHP-7.3.11</a>.</p>
<p>After release, several high and critical severity vulnerabilities were
patched in Seamonkey-2.49.5. The BLFS team highly recommends updating to
@@ -128,6 +128,12 @@
To fix this vulnerability, update to ProFTPD-1.3.6b using the instructions
in <a href="../../view/svn/server/proftpd.html">ProFTPD-1.3.6b</a>.</p>
+ <p>After release, several vulnerabilities were discovered in Thunderbird.
+ These include memory safety bugs, restriction bypasses, and a
+ remote code execution bug in the iCal parser. To fix these, update to
+ Thunderbird-68.2.0 or later using the instructions in
+ <a
href="../../view/svn/xsoft/thunderbird.html">Thunderbird-68.2.0</a>.</p>
+
<!--
<p>A vulnerability with available exploits in all recent versions of
ghostscript has been fixed in the development book by patching gs-9.25.
--
http://lists.linuxfromscratch.org/listinfo/website
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page