Slackware 1213 Published by Philipp Esselbach 0

The Slackware Linux Security Team has released new packages to fix security issues for three applications: expat, mozilla-firefox, and mozilla-thunderbird. The updated packages are available for Slackware 15.0 and -current, and can be downloaded from the Slackware project's FTP servers or mirror sites. The updates include security fixes and improvements for expat (version 2.7.2), mozilla-firefox (version 140.3.0esr), and mozilla-thunderbird (version 140.3.0esr).

expat (SSA:2025-260-01)
mozilla-firefox (SSA:2025-260-02)
mozilla-thunderbird (SSA:2025-260-03)

Slackware 1213 Published by Philipp Esselbach 0

A new patch package is available for Slackware 15.0 to fix several security issues. The package, patch-2.8-i586-1_slack15.0.txz, upgrades the existing patch version and fixes vulnerabilities including CVE-2019-13638, CVE-2019-13636, CVE-2019-20633, CVE-2018-20969, CVE-2018-6951, and CVE-2018-6952.

patch (SSA:2025-256-01)

Slackware 1213 Published by Philipp Esselbach 0

New kernel packages have been released for Slackware 15.0 to address security issues and fix various bugs. The updates include a mitigation for the VMScape flaw and several other improvements, and users are advised to upgrade their initrd after installing the new packages. Additionally, cups packages have also been updated to fix security issues, including blocking authentication using alternate methods in cupsd and fixing extension tag handling in ipp_read_io().

kernel (SSA:2025-255-02)
cups (SSA:2025-255-01)

Slackware 1213 Published by Philipp Esselbach 0

New libssh packages are available for Slackware 15.0 and -current to address several security issues, including potential UAF (use-after-free) vulnerabilities and memory leaks. The updated packages, version 0.11.3, address these issues and can be found on the Slackware FTP server or mirrored at additional sites listed on the project's website. Users are advised to upgrade their libssh package as root using the "upgradepkg" command with the corresponding .txz file.

libssh (SSA:2025-252-01)

Slackware 1213 Published by Philipp Esselbach 0

A security issue has been fixed in the udisks2 packages for Slackware 15.0 and -current, which could allow an attacker to cause the UDisks daemon to crash or perform a local privilege escalation by gaining access to files owned by privileged users.

udisks2 (SSA:2025-242-01)