ChangeLog for: 2025-06-18 21:43:13
a/e2fsprogs-1.47.2-x86_64-2.txz: Rebuilt.
Don't package the static libraries.
a/floppy-5.6-x86_64-2.txz: Rebuilt.
Upgraded to mtools-4.0.49.
a/libblockdev-3.3.1-x86_64-1.txz: Upgraded.
Don't allow suid and dev set on filesystem resize.
For more information, see:
https://www.cve.org/CVERecord?id=CVE-2025-6019
(* Security fix *)
d/ninja-1.13.0-x86_64-1.txz: Upgraded.
l/freecell-solver-6.14.0-x86_64-1.txz: Upgraded.
l/python-markdown-3.8.1-x86_64-1.txz: Upgraded.
l/python-urllib3-2.5.0-x86_64-1.txz: Upgraded.
n/bind-9.20.10-x86_64-1.txz: Upgraded.
This is a bugfix release.
n/fetchmail-6.5.4-x86_64-1.txz: Upgraded.
x/mesa-25.1.4-x86_64-1.txz: Upgraded.
x/xorg-server-21.1.18-x86_64-1.txz: Upgraded.
Check for another possible integer overflow once we get a complete xReq
with BigRequest.
For more information, see:
https://lists.x.org/archives/xorg-announce/2025-June/003612.html
https://lists.x.org/archives/xorg/2025-June/062055.html
https://www.cve.org/CVERecord?id=CVE-2025-49176
(* Security fix *)
x/xorg-server-xephyr-21.1.18-x86_64-1.txz: Upgraded.
x/xorg-server-xnest-21.1.18-x86_64-1.txz: Upgraded.
x/xorg-server-xvfb-21.1.18-x86_64-1.txz: Upgraded.
x/xorg-server-xwayland-24.1.8-x86_64-1.txz: Upgraded.
Check for another possible integer overflow once we get a complete xReq
with BigRequest.
For more information, see:
https://lists.x.org/archives/xorg-announce/2025-June/003613.html
https://lists.x.org/archives/xorg/2025-June/062055.html
https://www.cve.org/CVERecord?id=CVE-2025-49176
(* Security fix *)