Author: renodr
Date: Mon Jan 25 23:15:06 2021
New Revision: 1664
Log:
Errata: Update errata for seamonkey
Errata: Add errata for vorbis-tools
Modified:
html/trunk/blfs/errata/10.0-systemd/index.html
html/trunk/blfs/errata/10.0/index.html
Modified: html/trunk/blfs/errata/10.0-systemd/index.html
==============================================================================
--- html/trunk/blfs/errata/10.0-systemd/index.html Thu Jan 14 12:29:13
2021 (r1663)
+++ html/trunk/blfs/errata/10.0-systemd/index.html Mon Jan 25 23:15:06
2021 (r1664)
@@ -120,11 +120,12 @@
update to Wireshark-3.4.2 or higher using the instructions in
<a
href="../../view/systemd/basicnet/wireshark.html">Wireshark-3.4.2</a>.</li>
<li>After release, several dozen vulnerabilities were discovered in
- Seamonkey. To fix these vulnerabilities, update to
Seamonkey-2.53.5.1
+ Seamonkey. To fix these vulnerabilities, update to Seamonkey-2.53.6
or higher. In addition, an urgent 0day vulnerability was discovered
- in the JavaScript engine that is used in Seamonkey.
- Update to Seamonkey-2.53.5.1 using the instructions in
- <a
href="../../view/systemd/xsoft/seamonkey.html">Seamonkey-2.53.5.1</a>.</li>
+ in the JavaScript engine that is used in Seamonkey. Another urgent
+ 0day was discovered in the way Seamonkey handles SMTP requests.
+ Update to Seamonkey-2.53.6 using the instructions in
+ <a
href="../../view/systemd/xsoft/seamonkey.html">Seamonkey-2.53.6</a>.</li>
<li>After release, several vulnerabilities were discovered in PHP. To
fix
these vulnerabilities, update to PHP-8.0.1 or later using the
instructions in
@@ -272,6 +273,12 @@
password-protected PDF file. To fix these vulnerabilities update to
ImageMagick-7.0.10-57 or higher using the instructions in
<a
href="../../view/systemd/general/imagemagick.html">ImageMagick-7.0.10-57</a>.</li>
+ <li>After release, several vulnerabilities were discovered in
vorbis-tools
+ as shipped in BLFS 10.0. These vulnerabilities range from memory
leaks
+ to potentially arbitrary code execution via malicious OGG files.
+ To fix these vulnerabilities, update to vorbis-tools-1.4.2
+ or later using the instructions in
+ <a
href="../../view/systemd/multimedia/vorbistools.html">vorbis-tools-1.4.2</a>.</li>
</ul>
<!--#include virtual="/common/footer.html" -->
Modified: html/trunk/blfs/errata/10.0/index.html
==============================================================================
--- html/trunk/blfs/errata/10.0/index.html Thu Jan 14 12:29:13 2021
(r1663)
+++ html/trunk/blfs/errata/10.0/index.html Mon Jan 25 23:15:06 2021
(r1664)
@@ -118,11 +118,12 @@
update to Wireshark-3.4.2 or higher using the instructions in
<a
href="../../view/svn/basicnet/wireshark.html">Wireshark-3.4.2</a>.</li>
<li>After release, several dozen vulnerabilities were discovered in
- Seamonkey. To fix these vulnerabilities, update to
Seamonkey-2.53.5.1
+ Seamonkey. To fix these vulnerabilities, update to Seamonkey-2.53.6
or higher. In addition, an urgent 0day vulnerability was discovered
- in the JavaScript engine that is used in Seamonkey.
- Update to Seamonkey-2.53.5.1 using the instructions in
- <a
href="../../view/svn/xsoft/seamonkey.html">Seamonkey-2.53.5.1</a>.</li>
+ in the JavaScript engine that is used in Seamonkey. Another urgent
+ 0day was discovered in the way Seamonkey handles SMTP requests.
+ Update to Seamonkey-2.53.6 using the instructions in
+ <a
href="../../view/svn/xsoft/seamonkey.html">Seamonkey-2.53.6</a>.</li>
<li>After release, several vulnerabilities were discovered in PHP. To
fix
these vulnerabilities, update to PHP-8.0.1 or later using the
instructions in
@@ -264,6 +265,12 @@
password-protected PDF file. To fix these vulnerabilities update to
ImageMagick-7.0.10-57 or higher using the instructions in
<a
href="../../view/svn/general/imagemagick.html">ImageMagick-7.0.10-57</a>.</li>
+ <li>After release, several vulnerabilities were discovered in
vorbis-tools
+ as shipped in BLFS 10.0. These vulnerabilities range from memory
leaks
+ to potentially arbitrary code execution via malicious OGG files.
+ To fix these vulnerabilities, update to vorbis-tools-1.4.2
+ or later using the instructions in
+ <a
href="../../view/svn/multimedia/vorbistools.html">vorbis-tools-1.4.2</a>.</li>
</ul>
<!--#include virtual="/common/footer.html" -->
--
http://lists.linuxfromscratch.org/listinfo/website
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page