Author: renodr
Date: Sun Oct 27 14:07:30 2019
New Revision: 1505

Log:
Add errata for Thunderbird security flaws and bump PHP version for SysV

Modified:
   html/trunk/blfs/errata/9.0-systemd/index.html
   html/trunk/blfs/errata/9.0/index.html

Modified: html/trunk/blfs/errata/9.0-systemd/index.html
==============================================================================
--- html/trunk/blfs/errata/9.0-systemd/index.html       Fri Oct 25 17:14:20 
2019        (r1504)
+++ html/trunk/blfs/errata/9.0-systemd/index.html       Sun Oct 27 14:07:30 
2019        (r1505)
@@ -123,6 +123,11 @@
      To fix this vulnerability, update to ProFTPD-1.3.6b using the instructions
      in <a 
href="../../view/systemd/server/proftpd.html">ProFTPD-1.3.6b</a>.</p>
 
+     <p>After release, several vulnerabilities were discovered in Thunderbird.
+     These include memory safety bugs, restriction bypasses, and a
+     remote code execution bug in the iCal parser. To fix these, update to
+     Thunderbird-68.2.0 or later using the instructions in
+     <a 
href="../../view/svn/xsoft/thunderbird.html">Thunderbird-68.2.0</a>.</p>
 
      <h2>Known Security Vulnerabilities</h2>
      

Modified: html/trunk/blfs/errata/9.0/index.html
==============================================================================
--- html/trunk/blfs/errata/9.0/index.html       Fri Oct 25 17:14:20 2019        
(r1504)
+++ html/trunk/blfs/errata/9.0/index.html       Sun Oct 27 14:07:30 2019        
(r1505)
@@ -38,7 +38,7 @@
      <p>After release, a vulnerability was discovered in the version of PHP
      shipped with BLFS 9.0. The BLFS team recommends updating to the latest 
version
      of PHP in the instructions here:
-     <a href="../../view/svn/general/php.html">PHP-7.3.9</a>.</p>
+     <a href="../../view/svn/general/php.html">PHP-7.3.11</a>.</p>
 
      <p>After release, several high and critical severity vulnerabilities were
      patched in Seamonkey-2.49.5. The BLFS team highly recommends updating to
@@ -128,6 +128,12 @@
      To fix this vulnerability, update to ProFTPD-1.3.6b using the instructions
      in <a href="../../view/svn/server/proftpd.html">ProFTPD-1.3.6b</a>.</p>
 
+     <p>After release, several vulnerabilities were discovered in Thunderbird.
+     These include memory safety bugs, restriction bypasses, and a
+     remote code execution bug in the iCal parser. To fix these, update to
+     Thunderbird-68.2.0 or later using the instructions in
+     <a 
href="../../view/svn/xsoft/thunderbird.html">Thunderbird-68.2.0</a>.</p>
+
 <!--
      <p>A vulnerability with available exploits in all recent versions of
      ghostscript has been fixed in the development book by patching gs-9.25.
-- 
http://lists.linuxfromscratch.org/listinfo/website
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page

Reply via email to