Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Slackware 14.2: 2021-264-01 Moderate: Alpine Denial of Service

slackware
Calendar Grey September 21, 2021
Dist Slackware Esm H88
Recent updates for alpine packages fix a denial of service vulnerability affecting multiple Slackware releases. Ensure your system is secure by upgrading promptly.
New alpine packages are available for Slackware 14.0, 14.1, 14.2, and -current to fix a security issue

Summary

Here are the details from the Slackware 14.2 ChangeLog: patches/packages/alpine-2.25-i586-1_slack14.2.txz: Upgraded. Fixed a denial-of-service security issue where untagged responses from an IMAP server are accepted before STARTTLS. For more information, see: https://www.cve.org/CVERecord?id=CVE-2021-38370 (* Security fix *)

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 14.0: ftp://ftp.slackware.com/pub/slackware/slackware-14.0/patches/packages/alpine-2.25-i486-1_slack14.0.txz
Updated package for Slackware x86_64 14.0: ftp://ftp.slackware.com/pub/slackware/slackware64-14.0/patches/packages/alpine-2.25-x86_64-1_slack14.0.txz
Updated package for Slackware 14.1: ftp://ftp.slackware.com/pub/slackware/slackware-14.1/patches/packages/alpine-2.25-i486-1_slack14.1.txz
Updated package for Slackware x86_64 14.1: ftp://ftp.slackware.com/pub/slackware/slackware64-14.1/patches/packages/alpine-2.25-x86_64-1_slack14.1.txz
Updated package for Slackware 14.2: ftp://ftp.slackware.com/pub/slackware/slackware-14.2/patches/packages/alpine-2.25-i586-1_slack14.2.txz
Updated package for Slackware x86_64...

Read the Full Advisory

MD5 Signatures

Slackware 14.0 package: dc6c6e654668335fe8c5366ad22ca646 alpine-2.25-i486-1_slack14.0.txz
Slackware x86_64 14.0 package: 03e723d22b7b6e2f6014cb205582a600 alpine-2.25-x86_64-1_slack14.0.txz
Slackware 14.1 package: d5163aee83e992f3d6dbd13af5a64055 alpine-2.25-i486-1_slack14.1.txz
Slackware x86_64 14.1 package: 89339d7df6a25407268ec4123e59cb09 alpine-2.25-x86_64-1_slack14.1.txz
Slackware 14.2 package: 1131bff5cac947b879c4d000828e3f51 alpine-2.25-i586-1_slack14.2.txz
Slackware x86_64 14.2 package: e966b110aff7b5b1ba815272ba0a50e7 alpine-2.25-x86_64-1_slack14.2.txz
Slackware -current package: 9c46412f5972f758b445ffc02a1a9d4d n/alpine-2.25-i586-1.txz
Slackware x86_64 -current package: cf2973e64125079c73b21be89dc46576 n/alpine-2.25-x86_64-1.txz

Severity
important
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg alpine-2.25-i586-1_slack14.2.txz

Related News

Your message here