From 33dd836e5141064180d377f39344090735772cde Mon Sep 17 00:00:00 2001 From: Patrick J Volkerding Date: Mon, 11 Jan 2021 19:51:04 +0000 Subject: Mon Jan 11 19:51:04 UTC 2021 a/ed-1.17-x86_64-1.txz: Upgraded. ap/htop-3.0.5-x86_64-1.txz: Upgraded. ap/ispell-3.4.02-x86_64-1.txz: Upgraded. ap/sudo-1.9.5-x86_64-1.txz: Upgraded. This update fixes security issues: Potential information leak in sudoedit that could be used to test for the existence of directories not normally accessible to the user. Flaw in the temporary file handling of sudoedit's SELinux RBAC support. For more information, see: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-23239 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-23240 (* Security fix *) d/vala-0.50.3-x86_64-1.txz: Upgraded. --- ChangeLog.txt | 15 +++++++++++++++ 1 file changed, 15 insertions(+) (limited to 'ChangeLog.txt') diff --git a/ChangeLog.txt b/ChangeLog.txt index 98e3e669..2973cc07 100644 --- a/ChangeLog.txt +++ b/ChangeLog.txt @@ -1,3 +1,18 @@ +Mon Jan 11 19:51:04 UTC 2021 +a/ed-1.17-x86_64-1.txz: Upgraded. +ap/htop-3.0.5-x86_64-1.txz: Upgraded. +ap/ispell-3.4.02-x86_64-1.txz: Upgraded. +ap/sudo-1.9.5-x86_64-1.txz: Upgraded. + This update fixes security issues: + Potential information leak in sudoedit that could be used to test for + the existence of directories not normally accessible to the user. + Flaw in the temporary file handling of sudoedit's SELinux RBAC support. + For more information, see: + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-23239 + https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-23240 + (* Security fix *) +d/vala-0.50.3-x86_64-1.txz: Upgraded. ++--------------------------+ Sun Jan 10 19:35:56 UTC 2021 a/findutils-4.8.0-x86_64-1.txz: Upgraded. a/lzip-1.22-x86_64-1.txz: Upgraded. -- cgit v1.2.3