Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
New php packages are available for Slackware 14.0, 14.1, and -current to fix security issues. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] php (SSA:2016-120-02) New php packages are available for Slackware 14.0, 14.1, and -current to fix security issues. Here are the details from the Slackware 14.1 ChangeLog: +--------------------------+ patches/packages/php-5.6.21-i486-1_slack14.1.txz: Upgraded. This release fixes bugs and security issues. For more information, see: https://www.php.net/ChangeLog-5.php https://www.cve.org/CVERecord?id=CVE-2016-3074 (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you. Updated package for Slackware 14.0: Updated package for Slackware x86_64 14.0: Updated package for Slackware 14.1: Updated package for Slackware x86_64 14.1: Updated package for Slackware -current: Updated package for Slackware x86_64 -current: MD5 signatures: +-------------+ Slackware 14.0 package: bf19a4472daa4fb81efe40f08bdd28b1 php-5.6.21-i486-1_slack14.0.txz Slackware x86_64 14.0 package: 448ab59bade7a084d392177de2514ecf php-5.6.21-x86_64-1_slack14.0.txz Slackware 14.1 package: d9e0a2107e010470676da690cd767f87 php-5.6.21-i486-1_slack14.1.txz Slackware x86_64 14.1 package: c01a13118b9803686487df2673cba58a php-5.6.21-x86_64-1_slack14.1.txz Slackware -current package: 9bd2f2fdf8512763550562ed7efcb996 n/php-5.6.21-i586-1.txz Slackware x86_64 -current package: 6d5a5d3075daffd829f4cde051a7e099 n/php-5.6.21-x86_64-1.txz Installation instructions: +------------------------+ Upgrade the package as root: # upgradepkg php-5.6.21-i486-1_slack14.1.txz Then, restart Apache httpd: # /etc/rc.d/rc.httpd stop # /etc/rc.d/rc.httpd start +-----+ . LatestPHP modules released for Slackware aimed at addressing vulnerabilities and enhancing system security. Upgrade today!. Slackware Security, PHP Update, Security Fixes. . Severity: Critical. LinuxSecurity.com Team
Updated package.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2006-369 2006-04-19 ---------------------------------------------------------------------Product : Fedora Core 5 Name : perl-XML-Dumper Version : 0.81 Release : 1.FC5 Summary : Perl module for dumping Perl objects from/to XML Description : XML::Dumper dumps Perl data to XML format. XML::Dumper can also read XML data that was previously dumped by the module and convert it back to Perl. Perl objects are blessed back to their original packaging; if the modules are installed on the system where the perl objects are reconstituted from xml, they will behave as expected. Intuitively, if the perl objects are converted and reconstituted in the same environment, all should be well. ---------------------------------------------------------------------* Wed Apr 12 2006 Jason Vas Dias - 0.81-1 - upgrade to 0.81 ---------------------------------------------------------------------This update can be downloaded from: 0dc73ddd10917b049749e8a3261ff9d5f52bc808 SRPMS/perl-XML-Dumper-0.81-1.FC5.src.rpm 8467207736f9f75fab578ead7424d1c46e83fa21 ppc/perl-XML-Dumper-0.81-1.FC5.noarch.rpm 8467207736f9f75fab578ead7424d1c46e83fa21 x86_64/perl-XML-Dumper-0.81-1.FC5.noarch.rpm 8467207736f9f75fab578ead7424d1c46e83fa21 i386/perl-XML-Dumper-0.81-1.FC5.noarch.rpm This update can be installed with the 'yum' update program. Use 'yum update package-name' at the command line. For more information, refer to 'Managing Software with yum,' available at . ----------------------------------------------------------------------- fedora-announce-list mailing list
Get the latest Linux and open source security news straight to your inbox.