|
楼主 |
发表于 2006-7-26 18:10:08
|
显示全部楼层
晕能行不了--大神还在更新。Wed Jul 26 01:55:38 CDT 2006
a/lilo-22.7.2.1-i486-1.tgz: Upgraded to lilo-22.7.2.1.
Thanks to James W. Laferriere for pointing out the patch.
a/kernel-ide-2.4.32-i486-4.tgz: Fixed gzipped System.map.
a/udev-071-i486-2.tgz: Applied pty patch from Ken Milmore.
Fixed world writable documentation permissions reported by John Jenkins after
a discussion about whether that was really the right course of action. ;-)
Merged IEEE1394 RAW device handling changes from Christian Casteyde.
ap/joe-3.5-i486-1.tgz: Upgraded to joe-3.5.
ap/vim-7.0.042-i486-1.tgz: Upgraded to the latest patchlevel.
Added many extra features.
Thanks to Ricardo García for requesting omni completion for
vim, which got me thinking about all kinds of ways to improve
this and the (renamed) vim-gvim package. :-)
d/clisp-2.39-i486-1.tgz: Upgraded to clisp-2.39 and libsigsegv-2.4.
d/git-1.4.1.1-i486-1.tgz: Upgraded to git-1.4.1.1.
d/m4-1.4.5-i486-1.tgz: Upgraded to m4-1.4.5.
d/mercurial-0.9.1-i486-1.tgz: Upgraded to mercurial-0.9.1.
d/python-2.4.3-i486-3.tgz: Merged the python, python-demo, and python-tools
packages, bloating the python package by a whopping 2%!
d/ruby-1.8.4-i486-1.tgz: Added Ruby since Amarok needs it...
kde/amarok-1.4.1-i486-1.tgz: Upgraded to amarok-1.4.1.
kde/kdeaccessibility-3.5.3-i486-3.tgz: Recompiled to use libpng.so.3.
kde/kdeaddons-3.5.3-i486-3.tgz: Recompiled to use libpng.so.3.
kde/kdeadmin-3.5.3-i486-3.tgz: Recompiled.
kde/kdeartwork-3.5.3-i486-3.tgz: Recompiled to use libpng.so.3.
kde/kdebase-3.5.3-i486-3.tgz: Recompiled to use libpng.so.3.
kde/kdebindings-3.5.3-i486-3.tgz: Recompiled.
I wasn't able to get the Ruby binding to compile... sorry.
kde/kdeedu-3.5.3-i486-3.tgz: Recompiled.
kde/kdegames-3.5.3-i486-3.tgz: Recompiled.
kde/kdegraphics-3.5.3-i486-3.tgz: Recompiled to use libpng.so.3.
kde/kdelibs-3.5.3-i486-3.tgz: Recompiled to use libpng.so.3.
kde/kdemultimedia-3.5.3-i486-3.tgz: Recompiled to use libpng.so.3.
kde/kdenetwork-3.5.3-i486-3.tgz: Recompiled.
kde/kdepim-3.5.3-i486-3.tgz: Recompiled to use libpng.so.3.
kde/kdesdk-3.5.3-i486-3.tgz: Recompiled.
kde/kdetoys-3.5.3-i486-3.tgz: Recompiled.
kde/kdeutils-3.5.3-i486-3.tgz: Recompiled.
kde/kdevelop-3.3.3-i486-2.tgz: Recompiled.
kde/kdewebdev-3.5.3-i486-3.tgz: Recompiled.
kde/koffice-1.5.2-i486-2.tgz: Recompiled to use libpng.so.3.
kde/qt-3.3.6-i486-2.tgz: Recompiled with a patch by Lars Knoll to fix
Arabic scripts.
l/arts-1.5.3-i486-3.tgz: Recompiled to use libpng.so.3.
l/aspell-0.60.4-i486-1.tgz: Upgraded to aspell-0.60.4.
l/libpng-1.2.12-i486-1.tgz: Upgraded to libpng-1.2.12.
The libpng.so has gone .3 -> .0 -> .3. I'll see what I can do about getting
everything that's linked to .0 relinked with .3, as that's the major library
number Slackware 10.2's libpng.so is using. There is a .0 symlink to keep
any code that was compiled while that was the number working just fine, but
I will recompile a bunch of things mostly for the sake not using this link.
It works either way, but I have an OCD about silly things like this. ;-)
l/libwmf-0.2.8.4-i486-2.tgz: Recompiled to use libpng.so.3.
l/libwmf-docs-0.2.8.4-noarch-2.tgz: Rebuilt.
l/libmusicbrainz-2.1.3-i486-1.tgz: Upgraded to libmusicbrainz-2.1.3.
l/sdl-1.2.11-i486-1.tgz: Upgraded to sdl-1.2.11.
Thanks to Jesper Juhl for the heads-up.
l/libtunepimp-0.4.2-i486-2.tgz: Patched an overflow (CVE-2006-3600).
Yes, there is libtunepimp-0.5.0. Probably less supported by the existing
codebase, and certainly not tested for as long. We will wait for the next
cycle on that, especially as it requires a couple of new dependencies.
(* Security fix *)
(-current only)
n/dhcpcd-2.0.4-i486-2.tgz: Patched to move the pid/config directory back to
/etc/dhcpc, since /var may not yet be mounted when dhcpcd is started.
Issue noted by John Jenkins.
n/links-2.1pre22-i486-2.tgz: Recompiled to use libpng.so.3.
n/mutt-1.4.2.2i-i486-1.tgz: Upgraded to mutt-1.4.2.2i.
This release fixes CVE-2006-3242, a buffer overflow that could be triggered
by a malicious IMAP server.
[Connecting to malicious IMAP servers must be common, right? -- Ed.]
For more details, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3242
(* Security fix *)
n/nfs-utils-1.0.9-i486-1.tgz: Upgraded to nfs-utils-1.0.9.
n/php-4.4.2-i486-5.tgz: Recompiled to use libpng.so.3.
n/samba-3.0.23a-i486-1.tgz: Upgraded to samba-3.0.23a.
Removed /sbin/umount.smbfs symlink which was causing problems at shutdown.
Thanks to Robby Workman for the bug report.
t/tetex-3.0-i486-3.tgz: Recompiled against libpng-1.2.12.
t/tetex-doc-3.0-i486-3.tgz: Rebuilt.
x/fontconfig-2.2.3-i486-1.tgz: Split fontconfig into a separate package.
Look, we're modularizing for ease of maintainance! :-)
x/freetype-2.1.9-i486-1.tgz: Split freetype into a separate package.
Patched CVE-2006-1861 linux 2.6.x setuid() related bugs.
(* Security fix *)
x/x11-6.9.0-i486-5.tgz: Rebuilt. Removed fontconfig/freetype files.
Patched some more possible linux 2.6.x setuid() related bugs:
http://lists.freedesktop.org/arc ... 06-June/000100.html
(* Security fix *)
x/x11-devel-6.9.0-i486-5.tgz: Rebuilt. Removed fontconfig/freetype files.
Patched with setuid() usage fixes as described above. Again, this issue
is only vulnerable on certain 2.6 kernels.
(* Security fix *)
x/x11-docs-6.9.0-noarch-5.tgz: Rebuilt. Removed fontconfig/freetype files.
x/x11-docs-html-6.9.0-noarch-5.tgz: Rebuilt.
x/x11-fonts-100dpi-6.9.0-noarch-5.tgz: Rebuilt.
x/x11-fonts-cyrillic-6.9.0-noarch-5.tgz: Rebuilt.
x/x11-fonts-misc-6.9.0-noarch-5.tgz: Rebuilt.
x/x11-fonts-scale-6.9.0-noarch-5.tgz: Rebuilt.
x/x11-xdmx-6.9.0-i486-5.tgz: Rebuilt.
x/x11-xnest-6.9.0-i486-5.tgz: Rebuilt.
x/x11-xvfb-6.9.0-i486-5.tgz: Rebuilt.
xap/gimp-2.2.12-i486-1.tgz: Upgraded to gimp-2.2.12.
This release fixes a security hole in the XCF parser.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3404
(* Security fix *)
xap/imagemagick-6.2.8_4-i486-1.tgz: Upgraded to ImageMagick-6.2.8-4.
xap/seamonkey-1.0.2-i486-2.tgz: Recompiled to use libpng.so.3.
xap/vim-gvim-7.0.042-i486-1.tgz: Renamed from "xvim", now requires the
vim package from the AP series. Shared files have been eliminated.
xap/xine-lib-1.1.2-i686-1.tgz: Upgraded to xine-lib-1.1.2.
According to xinehq.de's announcement:
There are three security fixes:
- CVE-2005-4048: possible buffer overflow in libavcodec (crafted PNGs);
- CVE-2006-2802: possible buffer overflow in the HTTP plugin;
- possible buffer overflow via bad indexes in specially-crafted AVI files.
(* Security fix *)
xap/xsane-0.991-i486-2.tgz: Recompiled to use libpng.so.3.
extra/aspell-word-lists/aspell-*tgz: Rebuilt, with several packages upgraded.
extra/dejavu-ttf/dejavu-ttf-20060720_995-noarch-1.tgz: Added DejaVu fonts.
Thanks to Lukasz Stelmach for the initial build script.
extra/k3b/k3b-0.12.16-i486-2.tgz: Recompiled to use libpng.so.3.
extra/linux-2.6.16.27/kernel-modules-2.6.16.27-i486-2.tgz:
Made a slight adjustment to rc.modules-2.6.16.27 to attempt to silence it
when used on a machine running a 2.4.x kernel and without an activated
parallel port. I don't think it helped (or hurt) though...
kernels/test26.s/*: Upgraded test26.s kernel to 2.6.17.7.
testing/packages/linux-2.6.17.7/kernel-generic-2.6.17.7-i486-1.tgz:
Upgraded to Linux 2.6.17.7 generic kernel.
testing/packages/linux-2.6.17.7/kernel-headers-2.6.17.7-i386-1.tgz:
Upgraded to Linux 2.6.17.7 kernel headers.
testing/packages/linux-2.6.17.7/kernel-modules-2.6.17.7-i486-1.tgz
Upgraded to Linux 2.6.17.7 kernel modules.
testing/packages/linux-2.6.17.7/kernel-source-2.6.17.7-noarch-1.tgz
Upgraded to Linux 2.6.17.7 kernel source. |
|