Author: ken
Date: Tue Dec 10 20:20:26 2019
New Revision: 1511
Log:
Errata for git.
Modified:
html/trunk/blfs/errata/9.0-systemd/index.html
html/trunk/blfs/errata/9.0/index.html
Modified: html/trunk/blfs/errata/9.0-systemd/index.html
==============================================================================
--- html/trunk/blfs/errata/9.0-systemd/index.html Thu Dec 5 13:47:25
2019 (r1510)
+++ html/trunk/blfs/errata/9.0-systemd/index.html Tue Dec 10 20:20:26
2019 (r1511)
@@ -152,6 +152,12 @@
XviD-1.3.6 using the instructions in
<a href="../../view/systemd/multimedia/xvid.html">XviD-1.3.6</a>.</p>
+ <p>After release, a series of security flaws in all maintained versions
+ of git were disclosed. These allow an attacker to overwrite arbitrary
+ paths, remotely execute code, or overwrite files in the .git/ directory.
+ To fix these, please update to git-2.24.1 using the instructions in
+ <a href="../../view/systemd/general/prog/git.html">git-2.24.1</a>.</p>
+
<h2>Known Security Vulnerabilities</h2>
<p>A few packages are good at reporting that a new
Modified: html/trunk/blfs/errata/9.0/index.html
==============================================================================
--- html/trunk/blfs/errata/9.0/index.html Thu Dec 5 13:47:25 2019
(r1510)
+++ html/trunk/blfs/errata/9.0/index.html Tue Dec 10 20:20:26 2019
(r1511)
@@ -157,6 +157,11 @@
XviD-1.3.6 using the instructions in
<a href="../../view/svn/multimedia/xvid.html">XviD-1.3.6</a>.</p>
+ <p>After release, a series of security flaws in all maintained versions
+ of git were disclosed. These allow an attacker to overwrite arbitrary
+ paths, remotely execute code, or overwrite files in the .git/ directory.
+ To fix these, please update to git-2.24.1 using the instructions in
+ <a href="../../view/svn/general/prog/git.html">git-2.24.1</a>.</p>
<!--
<p>A vulnerability with available exploits in all recent versions of
ghostscript has been fixed in the development book by patching gs-9.25.
--
http://lists.linuxfromscratch.org/listinfo/website
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page