Several memory safety issues affecting the RPC protocol were fixed in p11-kit, a library providing a way to load and enumerate PKCS#11 modules. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-2513-1
New p11-kit packages are available for Slackware 14.2 and -current to fix security issues. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] p11-kit (SSA:2020-347-01) New p11-kit packages are available for Slackware 14.2 and -current to fix security issues. Here are the details from the Slackware 14.2 ChangeLog: +--------------------------+ patches/packages/p11-kit-0.23.22-i586-1_slack14.2.txz: Upgraded. Fix memory-safety issues that affect the RPC protocol. For more information, see: https://www.cve.org/CVERecord?id=CVE-2020-29361 https://www.cve.org/CVERecord?id=CVE-2020-29362 https://www.cve.org/CVERecord?id=CVE-2020-29363 (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you. Updated package for Slackware 14.2: ftp://ftp.slackware.com/pub/slackware/slackware-14.2/patches/packages/p11-kit-0.23.22-i586-1_slack14.2.txz Updated package for Slackware x86_64 14.2: ftp://ftp.slackware.com/pub/slackware/slackware64-14.2/patches/packages/p11-kit-0.23.22-x86_64-1_slack14.2.txz Updated package for Slackware -current: Updated package for Slackware x86_64 -current: MD5 signatures: +-------------+ Slackware 14.2 package: 8e74d2fcb940dca6d9718fc6a69dbeb7 p11-kit-0.23.22-i586-1_slack14.2.txz Slackware x86_64 14.2 package: dee7d2ebd0ee6d8c6eb6f1a99de76765 p11-kit-0.23.22-x86_64-1_slack14.2.txz Slackware -current package: 34dc54e6c4de4ce20de76368647c30e6 n/p11-kit-0.23.22-i586-1.txz Slackware x86_64 -current package: 218d7757b96338c0d9c85988ff44c2c7 n/p11-kit-0.23.22-x86_64-1.txz Installation instructions: +------------------------+ Upgrade the package as root: # upgradepkg p11-kit-0.23.22-i586-1_slack14.2.txz +-----+ . Recent p11-kit updates for Slackwareaddress critical memory-safety vulnerabilities impacting the RPC protocol. Installation advised.. p11-kit, slackware security, memory-safety update. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.