ChangeLog for: 2017-08-09 21:23:16
a/kernel-generic-4.9.41-x86_64-1.txz: Upgraded.
a/kernel-huge-4.9.41-x86_64-1.txz: Upgraded.
a/kernel-modules-4.9.41-x86_64-1.txz: Upgraded.
ap/cups-filters-1.16.0-x86_64-2.txz: Rebuilt.
Linked against poppler-0.57.0.
ap/mpg123-1.25.5-x86_64-1.txz: Upgraded.
d/gcc-7.1.0-x86_64-3.txz: Rebuilt.
Recompiled with upstream patches for glibc-2.26 compatibility.
d/gcc-brig-7.1.0-x86_64-3.txz: Rebuilt.
d/gcc-g++-7.1.0-x86_64-3.txz: Rebuilt.
d/gcc-gfortran-7.1.0-x86_64-3.txz: Rebuilt.
d/gcc-gnat-7.1.0-x86_64-3.txz: Rebuilt.
d/gcc-go-7.1.0-x86_64-3.txz: Rebuilt.
d/gcc-objc-7.1.0-x86_64-3.txz: Rebuilt.
d/kernel-headers-4.9.41-x86-1.txz: Upgraded.
d/llvm-4.0.1-x86_64-2.txz: Rebuilt.
Fixed garbled output from lldb. Thanks to Ebben Aries.
Patched to compile with glibc-2.26.
k/kernel-source-4.9.41-noarch-1.txz: Upgraded.
kde/calligra-2.9.11-x86_64-13.txz: Rebuilt.
Linked against glew-2.1.0 and poppler-0.57.0.
l/gdk-pixbuf2-2.36.8-x86_64-1.txz: Upgraded.
l/gtk+3-3.22.18-x86_64-1.txz: Upgraded.
l/harfbuzz-1.4.8-x86_64-1.txz: Upgraded.
l/libxslt-1.1.29-x86_64-2.txz: Rebuilt.
Don't include xlocale.h in libxslt/xsltlocale.h, as it has been removed from
glibc-2.26. Thanks to Matteo Bernardini.
l/pango-1.40.9-x86_64-1.txz: Upgraded.
l/poppler-0.57.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
n/curl-7.55.0-x86_64-1.txz: Upgraded.
This update fixes three security issues:
URL globbing out of bounds read
TFTP sends more than buffer size
FILE buffer read out of bounds
For more information, see:
https://curl.haxx.se/docs/adv_20170809A.html
https://curl.haxx.se/docs/adv_20170809B.html
https://curl.haxx.se/docs/adv_20170809C.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-1000101
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-1000100
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-1000099
(* Security fix *)
n/httpd-2.4.27-x86_64-2.txz: Rebuilt.
Recompiled against glibc-2.26 to fix relocation error.
Thanks to Willy Sudiarto Raharjo.
x/glew-2.1.0-x86_64-1.txz: Upgraded.
Shared library .so-version bump.
x/libdrm-2.4.82-x86_64-1.txz: Upgraded.
x/mesa-17.1.6-x86_64-1.txz: Upgraded.
Linked against glew-2.1.0.
xap/gparted-0.29.0-x86_64-1.txz: Upgraded.
xap/mozilla-firefox-52.3.0esr-x86_64-1.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/security/known-vulnerabilities/firefoxESR.html
(* Security fix *)
xfce/tumbler-0.2.0-x86_64-1.txz: Upgraded.
Linked against poppler-0.57.0.
isolinux/initrd.img: Rebuilt.
kernels/*: Upgraded.
usb-and-pxe-installers/usbboot.img: Rebuilt.