Author: ken
Date: Tue Dec 10 20:20:26 2019
New Revision: 1511

Log:
Errata for git.

Modified:
   html/trunk/blfs/errata/9.0-systemd/index.html
   html/trunk/blfs/errata/9.0/index.html

Modified: html/trunk/blfs/errata/9.0-systemd/index.html
==============================================================================
--- html/trunk/blfs/errata/9.0-systemd/index.html       Thu Dec  5 13:47:25 
2019        (r1510)
+++ html/trunk/blfs/errata/9.0-systemd/index.html       Tue Dec 10 20:20:26 
2019        (r1511)
@@ -152,6 +152,12 @@
      XviD-1.3.6 using the instructions in
      <a href="../../view/systemd/multimedia/xvid.html">XviD-1.3.6</a>.</p>
 
+     <p>After release, a series of security flaws in all maintained versions
+     of git were disclosed. These allow an attacker to overwrite arbitrary
+     paths, remotely execute code, or overwrite files in the .git/ directory.
+     To fix these, please update to git-2.24.1 using the instructions in
+     <a href="../../view/systemd/general/prog/git.html">git-2.24.1</a>.</p>
+
      <h2>Known Security Vulnerabilities</h2>
      
      <p>A few packages are good at reporting that a new

Modified: html/trunk/blfs/errata/9.0/index.html
==============================================================================
--- html/trunk/blfs/errata/9.0/index.html       Thu Dec  5 13:47:25 2019        
(r1510)
+++ html/trunk/blfs/errata/9.0/index.html       Tue Dec 10 20:20:26 2019        
(r1511)
@@ -157,6 +157,11 @@
      XviD-1.3.6 using the instructions in
      <a href="../../view/svn/multimedia/xvid.html">XviD-1.3.6</a>.</p>
 
+     <p>After release, a series of security flaws in all maintained versions
+     of git were disclosed. These allow an attacker to overwrite arbitrary
+     paths, remotely execute code, or overwrite files in the .git/ directory.
+     To fix these, please update to git-2.24.1 using the instructions in
+     <a href="../../view/svn/general/prog/git.html">git-2.24.1</a>.</p>
 <!--
      <p>A vulnerability with available exploits in all recent versions of
      ghostscript has been fixed in the development book by patching gs-9.25.
-- 
http://lists.linuxfromscratch.org/listinfo/website
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page

Reply via email to