New gnupg packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, and -current to fix a security issue. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] gnupg (SSA:2013-354-01) New gnupg packages are available for Slackware 13.0, 13.1, 13.37, 14.0, 14.1, and -current to fix a security issue. Here are the details from the Slackware 14.1 ChangeLog: +--------------------------+ patches/packages/gnupg-1.4.16-i486-1_slack14.1.txz: Upgraded. Fixed the RSA Key Extraction via Low-Bandwidth Acoustic Cryptanalysis attack as described by Genkin, Shamir, and Tromer. For more information, see: https://www.cve.org/CVERecord?id=CVE-2013-4576 (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you. Updated package for Slackware 13.0: Updated package for Slackware x86_64 13.0: Updated package for Slackware 13.1: Updated package for Slackware x86_64 13.1: Updated package for Slackware 13.37: Updated package for Slackware x86_64 13.37: Updated package for Slackware 14.0: Updated package for Slackware x86_64 14.0: Updated package for Slackware 14.1: Updated package for Slackware x86_64 14.1: Updated package for Slackware -current: Updated package for Slackware x86_64 -current: MD5 signatures: +-------------+ Slackware 13.0 package: 1b19a956ada33e1ac5ade0b4e6586d92 gnupg-1.4.16-i486-1_slack13.0.txz Slackware x86_64 13.0 package: d8b88c599806ab6f006bba9f7fd58d50 gnupg-1.4.16-x86_64-1_slack13.0.txz Slackware 13.1 package: 1a5e2df9356d37c68ff2029545d8a981 gnupg-1.4.16-i486-1_slack13.1.txz Slackware x86_64 13.1 package: 4baf7f1d0f62dcb4e9e1d3dbfbb87cdd gnupg-1.4.16-x86_64-1_slack13.1.txz Slackware 13.37 package: 205c28267d67a88751d86b97e66cebe4 gnupg-1.4.16-i486-1_slack13.37.txz Slackware x86_64 13.37 package: 69ada153c418f43b4ad38782c79d8e3e gnupg-1.4.16-x86_64-1_slack13.37.txz Slackware 14.0 package: d2df6ff62d18880ff9f847caa84610a7 gnupg-1.4.16-i486-1_slack14.0.txz Slackware x86_64 14.0 package: ab2ade7b21df6af575fea32d7391517f gnupg-1.4.16-x86_64-1_slack14.0.txz Slackware 14.1 package: 95ef3d7c28a0516654037dec7945c180 gnupg-1.4.16-i486-1_slack14.1.txz Slackware x86_64 14.1 package: fc8f60b3d5f258a6f2fb66a66db60929 gnupg-1.4.16-x86_64-1_slack14.1.txz Slackware -current package: e2469fb2ba22ceb9e52d76831aa1b8e1 n/gnupg-1.4.16-i486-1.txz Slackware x86_64 -current package: f959c0f9009a26abc5294107bf8b188a n/gnupg-1.4.16-x86_64-1.txz Installation instructions: +------------------------+ Upgrade the package as root: # upgradepkg gnupg-1.4.16-i486-1_slack14.1.txz +-----+ . Fresh GnuPG updates launched for Slackware, addressing crucial security vulnerability that safeguards against the risks of RSA Key Leakage.. GnuPG Update, Slackware Security Fix, RSA Exploit Mitigation. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.