Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Slackware 15.0 Critical Advisory: Sudo Authentication Issue Fix

slackware
Calendar Grey November 5, 2022
Dist Slackware Esm H88
Urgent updates released for Fedora to tackle significant vulnerabilities in the system login framework.
New sudo packages are available for Slackware 14.0, 14.1, 14.2, 15.0, and -current to fix security issues

Summary

Here are the details from the Slackware 15.0 ChangeLog: patches/packages/sudo-1.9.12p1-i586-1_slack15.0.txz: Upgraded. Fixed a potential out-of-bounds write for passwords smaller than 8 characters when passwd authentication is enabled. This does not affect configurations that use other authentication methods such as PAM, AIX authentication or BSD authentication. For more information, see: https://www.cve.org/CVERecord?id=CVE-2022-43995 (* Security fix *)

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 14.0:
Updated package for Slackware x86_64 14.0:
Updated package for Slackware 14.1:
Updated package for Slackware x86_64 14.1:
Updated package for Slackware 14.2:
Updated package for Slackware x86_64 14.2:
Updated package for Slackware 15.0:
Updated package for Slackware x86_64 15.0:
Updated package for Slackware -current:
Updated package for Slackware x86_64 -current:

MD5 Signatures

Slackware 14.0 package: eed38becdb8346a21b5f0c33da12ed63 sudo-1.9.12p1-i486-1_slack14.0.txz
Slackware x86_64 14.0 package: e03314dcb99e08c2dbb06addfdab8141 sudo-1.9.12p1-x86_64-1_slack14.0.txz
Slackware 14.1 package: bdd03b3275855fc71cf6fd206e4ab731 sudo-1.9.12p1-i486-1_slack14.1.txz
Slackware x86_64 14.1 package: f6dc6e051470b6371272899e8f362d76 sudo-1.9.12p1-x86_64-1_slack14.1.txz
Slackware 14.2 package: 458fb8aa389dbf910a15710114203ee3 sudo-1.9.12p1-i586-1_slack14.2.txz
Slackware x86_64 14.2 package: 900cedd84afc22d51288b56c91488b83 sudo-1.9.12p1-x86_64-1_slack14.2.txz
Slackware 15.0 package: 2ec4cc5a250de5a00e114d02b47c8e20 sudo-1.9.12p1-i586-1_slack15.0.txz
Slackware x86_64 15.0 package: 0291e15b2a7a9163665b7d6cbfcb3746 sudo-1.9.12p1-x86_64-1_slack15.0.txz
Slackware -current package: 2beea3ca36b4ff96ea386c81e3c577d8 ap/sudo-1.9.12p1-i586-1.txz
Slackware x86_64 -current package: 584f8508405af1b9683f08af1bbcba1b ap/sudo-1.9.12p1-x86_64-1.txz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg sudo-1.9.12p1-i586-1_slack15.0.txz

Related News

Your message here