Changeset 4483a9a


Ignore:
Timestamp:
03/03/2022 07:15:04 PM (2 years ago)
Author:
Douglas R. Reno <renodr@…>
Branches:
11.2, 11.3, 12.0, 12.1, kea, ken/TL2024, ken/inkscape-core-mods, ken/tuningfonts, lazarus, lxqt, plabs/newcss, plabs/python-mods, python3.11, qt5new, rahul/power-profiles-daemon, renodr/vulkan-addition, trunk, xry111/intltool, xry111/llvm18, xry111/soup3, xry111/xf86-video-removal
Children:
6148e28, 8394677a
Parents:
1ec7ed5
Message:

Package updates and a security fix

Fix CVE-2021-4115 in Polkit
Update to cyrus-sasl-2.1.28 (Security Update)
Update to flac-1.3.4 (Security Update)
Update to seamonkey-2.53.11 (Security Update)

Files:
6 edited

Legend:

Unmodified
Added
Removed
  • introduction/welcome/changelog.xml

    r1ec7ed5 r4483a9a  
    4545      <para>March 3rd, 2022</para>
    4646      <itemizedlist>
     47        <listitem>
     48          <para>[renodr] - Update to seamonkey-2.53.11 (Security Update). Fixes
     49          <ulink url="&blfs-ticket-root;16185">#16185</ulink>.</para>
     50        </listitem>
     51        <listitem>
     52          <para>[renodr] - Update to flac-1.3.4 (Security Update). Fixes
     53          <ulink url="&blfs-ticket-root;16148">#16148</ulink>.</para>
     54        </listitem>
     55        <listitem>
     56          <para>[renodr] - Update to cyrus-sasl-2.1.28 (Security Update). Fixes
     57          <ulink url="&blfs-ticket-root;16160">#16160</ulink>.</para>
     58        </listitem>
     59        <listitem>
     60          <para>[renodr] - Fix CVE-2021-4115 in Polkit. Fixes
     61          <ulink url="&blfs-ticket-root;16151">#16151</ulink>.</para>
     62        </listitem>
    4763        <listitem>
    4864          <para>[bdubbs] - Update to icewm-2.9.6. Fixes
  • multimedia/libdriv/flac.xml

    r1ec7ed5 r4483a9a  
    77  <!ENTITY flac-download-http "https://downloads.xiph.org/releases/flac/flac-&flac-version;.tar.xz">
    88  <!ENTITY flac-download-ftp  " ">
    9   <!ENTITY flac-md5sum        "26703ed2858c1fc9ffc05136d13daa69">
     9  <!ENTITY flac-md5sum        "bfdb2dd854d334b55a3309e3cd659f2c">
    1010  <!ENTITY flac-size          "1.0 MB">
    11   <!ENTITY flac-buildsize     "21 MB (additional 95 MB to run the test suite)">
    12   <!ENTITY flac-time          "0.1 SBU (additional 0.7 SBU to run the test suite)">
     11  <!ENTITY flac-buildsize     "30 MB (additional 95 MB to run the test suite)">
     12  <!ENTITY flac-time          "0.2 SBU (additional 0.6 SBU to run the test suite)">
    1313]>
    1414
     
    7171    </itemizedlist>
    7272
     73    <!--
    7374    <bridgehead renderas="sect3">Additional Downloads</bridgehead>
    7475
     
    8182      </listitem>
    8283    </itemizedlist>
     84    -->
    8385
    8486    <bridgehead renderas="sect3">FLAC Dependencies</bridgehead>
     
    8789    <para role="optional">
    8890      <xref linkend="libogg"/>,
    89       <!-- <xref linkend="xmms"/>, -->
    9091      <xref linkend="nasm"/>,
    9192      <xref linkend="docbook-utils"/>,
    92       <xref linkend="doxygen"/> and
    93       <xref linkend="valgrind"/>
     93      <xref linkend="doxygen"/>,
     94      <xref linkend="valgrind"/>, and
     95      <ulink url="https://xmms.org">xmms</ulink>
    9496    </para>
    9597
     
    107109    </para>
    108110
    109 <screen><userinput>patch -Np1 -i ../flac-&flac-version;-security_fixes-1.patch      &amp;&amp;
    110 ./configure --prefix=/usr                                \
     111<screen><userinput>./configure --prefix=/usr                                \
    111112            --disable-thorough-tests                     \
    112113            --docdir=/usr/share/doc/flac-&flac-version;          &amp;&amp;
  • packages.ent

    r1ec7ed5 r4483a9a  
    88<!ENTITY cryptsetup-minor             "2.4">
    99<!ENTITY cryptsetup-version           "&cryptsetup-minor;.3">
    10 <!ENTITY cyrus-sasl-version           "2.1.27">
     10<!ENTITY cyrus-sasl-version           "2.1.28">
    1111<!ENTITY gnupg2-version               "2.2.34">
    1212<!ENTITY firewalld-version            "0.8.1">
     
    946946<!ENTITY flashplayer-version          "27.0.0.187">
    947947<!ENTITY qupzilla-version             "2.2.6">
    948 <!ENTITY seamonkey-version            "2.53.10.2">
     948<!ENTITY seamonkey-version            "2.53.11">
    949949
    950950<!-- Chapter 41 -->
     
    991991<!ENTITY faad2-version                "2_10_0">
    992992<!ENTITY fdk-aac-version              "2.0.2">
    993 <!ENTITY flac-version                 "1.3.3">
     993<!ENTITY flac-version                 "1.3.4">
    994994<!ENTITY frei0r-version               "1.7.0">
    995995<!ENTITY gavl-version                 "1.4.0">
  • postlfs/security/cyrus-sasl.xml

    r1ec7ed5 r4483a9a  
    77  <!ENTITY cyrus-sasl-download-http "https://github.com/cyrusimap/cyrus-sasl/releases/download/cyrus-sasl-&cyrus-sasl-version;/cyrus-sasl-&cyrus-sasl-version;.tar.gz">
    88  <!ENTITY cyrus-sasl-download-ftp  " ">
    9   <!ENTITY cyrus-sasl-md5sum        "a33820c66e0622222c5aefafa1581083">
     9  <!ENTITY cyrus-sasl-md5sum        "6f228a692516f5318a64505b46966cfa">
    1010  <!ENTITY cyrus-sasl-size          "3.9 MB">
    11   <!ENTITY cyrus-sasl-buildsize     "26 MB">
    12   <!ENTITY cyrus-sasl-time          "0.1 SBU">
     11  <!ENTITY cyrus-sasl-buildsize     "28 MB">
     12  <!ENTITY cyrus-sasl-time          "0.2 SBU">
    1313]>
    1414
     
    3131    <para>
    3232      The <application>Cyrus SASL</application> package contains a Simple
    33       Authentication and Security Layer, a method for adding authentication
    34       support to connection-based protocols. To use SASL, a protocol includes
    35       a command for identifying and authenticating a user to a server and for
    36       optionally negotiating protection of subsequent protocol interactions.
    37       If its use is negotiated, a security layer is inserted between the
    38       protocol and the connection.
     33      Authentication and Security Layer implementation, a method for adding
     34      authentication support to connection-based protocols. To use SASL, a
     35      protocol includes a command for identifying and authenticating a user to
     36      a server and for optionally negotiating protection of subsequent protocol
     37      interactions. If its use is negotiated, a security layer is inserted
     38      between the protocol and the connection.
    3939    </para>
    4040
     
    7878    </itemizedlist>
    7979
     80    <!-- Not needed anymore
    8081    <bridgehead renderas="sect3">Additional Downloads</bridgehead>
    8182    <itemizedlist spacing="compact">
     
    8687        </para>
    8788      </listitem>
    88       <!--<listitem>
     89      <!- -<listitem>
    8990        <para>
    9091          Required patch:
    9192          <ulink url="&patch-root;/cyrus-sasl-&cyrus-sasl-version;-openssl-1.1.0-1.patch"/>
    9293       </para>
    93     </listitem>-->
     94    </listitem>- ->
    9495    </itemizedlist>
     96    -->
    9597
    9698    <bridgehead renderas="sect3">Cyrus SASL Dependencies</bridgehead>
     
    133135         on the system causes an FTBFS when man pages are generated. The Sphinx
    134136         and Docutils API has changed significantly between Sphinx-{1,2} and
    135          Sphinx-3.0. -->
     137         Sphinx-3.0.
    136138
    137139    <para>
     
    141143
    142144<screen><userinput remap="pre">patch -Np1 -i ../cyrus-sasl-2.1.27-doc_fixes-1.patch</userinput></screen>
     145    -->
    143146
    144147    <para>
     
    211214    <para>
    212215      <option>--enable-ldapdb</option>: This switch enables the
    213       LDAPDB authentication backend. There is a circular dependency with this
     216      LDAPDB authentication backend. <!--There is a circular dependency with this
    214217      parameter. See <ulink url="&blfs-wiki;/cyrus-sasl"/> for a solution to
    215       this problem.
     218      this problem.-->
    216219    </para>
    217220
  • postlfs/security/polkit.xml

    r1ec7ed5 r4483a9a  
    7676        <para>
    7777          Required patch:
    78           <ulink url="&patch-root;/polkit-&polkit-version;-security_fix-1.patch"/>
     78          <ulink url="&patch-root;/polkit-&polkit-version;-security_fixes-1.patch"/>
    7979        </para>
    8080      </listitem>
     
    182182        -g polkitd -s /bin/false polkitd</userinput></screen>
    183183
    184 <!-- All of this is irrelevant with meson
    185     <note revision="systemd">
    186       <para>
    187         When building <application>Polkit</application> with
    188         <application>systemd</application> logind support, the
    189         <command>configure</command> script explicitly checks if
    190         system is booted using <application>systemd</application>.
    191         This can cause problems if building the package in chroot,
    192         where the <command>configure</command> would fail to
    193         detect <application>systemd</application>. To workaround
    194         the problem, simply run the following command:
    195       </para>
    196 
    197 <screen><userinput>sed -i "s:/sys/fs/cgroup/systemd/:/sys:g" configure</userinput></screen>
    198     </note>
    199 
    200     <para revision="sysv">
    201       Fix an issue introduced in recent <application>Polkit</application>
    202       releases with elogind:
    203     </para>
    204 
    205 <screen revision="sysv"><userinput>patch -Np1 -i ../polkit-&polkit-version;-fix_elogind_detection-1.patch &amp;&amp;
    206 autoreconf -fv</userinput></screen>
    207 -->
    208 
    209184    <para>
    210185      First, fix problems with setting permissions during installation and with
     
    217192
    218193    <para>
    219       Apply a patch to fix a security issue:
    220     </para>
    221 
    222 <screen><userinput remap="pre">patch -Np1 -i ../polkit-&polkit-version;-security_fix-1.patch</userinput></screen>
     194      Apply a patch to fix two security issues:
     195    </para>
     196
     197<screen><userinput remap="pre">patch -Np1 -i ../polkit-&polkit-version;-security_fixes-1.patch</userinput></screen>
    223198
    224199    <para>
  • xsoft/graphweb/seamonkey.xml

    r1ec7ed5 r4483a9a  
    77  <!ENTITY seamonkey-download-http "&mozilla-http;/seamonkey/releases/&seamonkey-version;/source/seamonkey-&seamonkey-version;.source.tar.xz">
    88  <!ENTITY seamonkey-download-ftp  " ">
    9   <!ENTITY seamonkey-md5sum        "b598e21300efebbb1e5d1742aa57780a">
    10   <!ENTITY seamonkey-size          "271 MB">
    11   <!ENTITY seamonkey-buildsize     "6.0 GB (161 MB installed)">
    12   <!ENTITY seamonkey-time          "19 SBU (with parallelism=4)">
     9  <!ENTITY seamonkey-md5sum        "afe1b9d56699e159dd57236d3cc56b36">
     10  <!ENTITY seamonkey-size          "274 MB">
     11  <!ENTITY seamonkey-buildsize     "6.1 GB (161 MB installed)">
     12  <!ENTITY seamonkey-time          "17 SBU (with parallelism=4)">
    1313]>
    1414
     
    422422          Numerous libraries, browser, and email/newsgroup components, plugins,
    423423          extensions, and helper modules installed in
    424           <filename class="directory">/usr/lib/seamonkey-&seamonkey-version;</filename>
     424          <filename class="directory">/usr/lib/seamonkey</filename>
    425425        </seg>
    426426        <seg>
Note: See TracChangeset for help on using the changeset viewer.