Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Slackware 12.2 SSA:2009-219-03 Critical: apr-util Overflow Threat

slackware
Calendar Grey August 7, 2009
Dist Slackware Esm H88
Enhance apr-util software for Slackware to address a severe vulnerability and uphold system integrity.
New apr-util packages are available for Slackware 11.0, 12.0, 12.1, 12.2, and -current to fix a security issue

Summary

Here are the details from the Slackware 12.2 ChangeLog: patches/packages/apr-util-1.3.9-i486-1_slack12.2.tgz: Upgraded. Fix overflow in rmm, where size alignment was taking place. [Matt Lewis , Sander Striker] For more information, see: https://www.cve.org/CVERecord?id=CVE-2009-2412 (* Security fix *)

Where Find New Packages

HINT: Getting slow download speeds from ftp.slackware.com? Give slackware.osuosl.org a try. This is another primary FTP site for Slackware that can be considerably faster than downloading directly from ftp.slackware.com.
Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating additional FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 11.0:
Updated package for Slackware 12.0:
Updated package for Slackware 12.1:
Updated package for Slackware 12.2:
Updated package for Slackware -current:
Updated package for Slackware64 -current:

MD5 Signatures

Slackware 11.0 package: 9baa25b2f587ffad1d159f1fba16076c apr-util-1.3.9-i486-1_slack11.0.tgz
Slackware 12.0 package: a77d38c2aaeb33defdd21341d333aeec apr-util-1.3.9-i486-1_slack12.0.tgz
Slackware 12.1 package: 1c7e513180d33583902815b8134ea79c apr-util-1.3.9-i486-1_slack12.1.tgz
Slackware 12.2 package: 439f26a9493f12ef98ff6bc22eb61c09 apr-util-1.3.9-i486-1_slack12.2.tgz
Slackware -current package: a968abfacb66fa6959384b995af5f3bf apr-util-1.3.9-i486-1.txz
Slackware64 -current package: ab0b42a896f38d3d9309e9af1428bce9 apr-util-1.3.9-x86_64-1.txz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg apr-util-1.3.9-i486-1_slack12.2.tgz

Related News

Your message here