diff options
author | Patrick J Volkerding <volkerdi@slackware.com> | 2022-04-14 21:14:21 +0000 |
---|---|---|
committer | Eric Hameleers <alien@slackware.com> | 2022-04-15 13:29:52 +0200 |
commit | 9e2efe650cfe5bf9113679ba90646e15e551b0e1 (patch) | |
tree | 14b7b4ee19badea19ce3f3a1299c26f402025325 /patches/source/xz/slack-desc | |
parent | 799fadd35209d233e88b64218e1f755367bf234b (diff) | |
download | current-9e2efe650cfe5bf9113679ba90646e15e551b0e1.tar.gz current-9e2efe650cfe5bf9113679ba90646e15e551b0e1.tar.xz |
Thu Apr 14 21:14:21 UTC 202220220414211421_15.0
patches/packages/git-2.35.3-x86_64-1_slack15.0.txz: Upgraded.
This update fixes a security issue where a Git worktree created by another
user might be able to execute arbitrary code.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-24765
(* Security fix *)
patches/packages/gzip-1.12-x86_64-1_slack15.0.txz: Upgraded.
This update fixes a security issue:
zgrep applied to a crafted file name with two or more newlines can no
longer overwrite an arbitrary, attacker-selected file.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1271
(* Security fix *)
patches/packages/xz-5.2.5-x86_64-4_slack15.0.txz: Rebuilt.
This update fixes a security issue:
xzgrep applied to a crafted file name with two or more newlines can no
longer overwrite an arbitrary, attacker-selected file.
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1271
(* Security fix *)
Diffstat (limited to 'patches/source/xz/slack-desc')
-rw-r--r-- | patches/source/xz/slack-desc | 19 |
1 files changed, 19 insertions, 0 deletions
diff --git a/patches/source/xz/slack-desc b/patches/source/xz/slack-desc new file mode 100644 index 000000000..30a6bb342 --- /dev/null +++ b/patches/source/xz/slack-desc @@ -0,0 +1,19 @@ +# HOW TO EDIT THIS FILE: +# The "handy ruler" below makes it easier to edit a package description. Line +# up the first '|' above the ':' following the base package name, and the '|' on +# the right side marks the last column you can put a character in. You must make +# exactly 11 lines for the formatting to be correct. It's also customary to +# leave one space after the ':'. + + |-----handy-ruler------------------------------------------------------| +xz: xz (compression utility based on the LZMA algorithm) +xz: +xz: LZMA is a general purpose compression algorithm designed by Igor +xz: Pavlov as part of 7-Zip. It provides high compression ratio while +xz: keeping the decompression speed fast. XZ Utils are an attempt to make +xz: LZMA compression easy to use on free (as in freedom) operating +xz: systems. +xz: +xz: The people most responsible for xz are Igor Pavlov, Ville Koskinen, +xz: and Lasse Collin. Homepage: http://tukaani.org/xz/ +xz: |