Path to this page:
Subject: CVS commit: [pkgsrc-2014Q2] pkgsrc/emulators/suse131_base
From: Matthias Scheler
Date: 2014-09-11 21:16:33
Message id: 20140911191633.CDD1B98@cvs.netbsd.org
Log Message:
Pullup ticket #4497 - requested by obache
emulators/suse131_base: security update
Revisions pulled up:
- emulators/suse131_base/Makefile 1.9 via patch
- emulators/suse131_base/distinfo 1.7
---
Module Name: pkgsrc
Committed By: obache
Date: Thu Sep 11 09:28:51 UTC 2014
Modified Files:
pkgsrc/emulators/suse131_base: Makefile distinfo
Log Message:
Bump suse131_base to nb5.
openSUSE Security Update: glibc
___________________________________________________________________________
___
Announcement ID: openSUSE-SU-2014:1115-1
Rating: important
References: #887022 #892073 #894553
Cross-References: CVE-2014-0475 CVE-2014-5119 CVE-2014-6040
Affected Products:
openSUSE 13.1
openSUSE 12.3
___________________________________________________________________________
___
An update that fixes three vulnerabilities is now available.
Description:
glibc was updated to fix three security issues:
- A directory traversal in locale environment handling was fixed
(CVE-2014-0475, bnc#887022, GLIBC BZ #17137)
- Disable gconv transliteration module loading which could be used for
code execution (CVE-2014-5119, bnc#892073, GLIBC BZ #17187)
- Fix crashes on invalid input in IBM gconv modules (CVE-2014-6040,
bnc#894553, BZ #17325)
Files: