Slackware 1251 Published by

The Slackware Linux Security Team recently pushed updated packages for libXpm, Mozilla Firefox, and Thunderbird to address several security vulnerabilities. These patches cover both the stable 15.0 release and the rolling development branch, fixing an out-of-bounds read in the graphics library while also resolving multiple browser flaws. System administrators can grab the corrected files from official mirrors or partner hosting sites before running standard upgrade commands on their machines. Every download comes with verified checksums and clear installation steps to keep deployments secure and straightforward.

libXpm (SSA:2026-111-01)
mozilla-thunderbird (SSA:2026-111-03)
mozilla-firefox (SSA:2026-111-02)




libXpm (SSA:2026-111-01)


libXpm (SSA:2026-111-01)

New libXpm packages are available for Slackware 15.0 and -current to
fix a security issue.

Here are the details from the Slackware 15.0 ChangeLog:
+--------------------------+
patches/packages/libXpm-3.5.19-i586-1_slack15.0.txz: Upgraded.
This update fixes a security issue:
Out-of-bounds read in xpmNextWord().
For more information, see:
https://lists.x.org/archives/xorg-devel/2026-April/059452.html
https://www.cve.org/CVERecord?id=CVE-2026-4367
(* Security fix *)
+--------------------------+

Where to find the new packages:
+-----------------------------+

Thanks to the friendly folks at the OSU Open Source Lab
( http://osuosl.org) for donating FTP and rsync hosting
to the Slackware project! :-)

Also see the "Get Slack" section on http://slackware.com for
additional mirror sites near you.

Updated package for Slackware 15.0:
ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/libXpm-3.5.19-i586-1_slack15.0.txz

Updated package for Slackware x86_64 15.0:
ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/libXpm-3.5.19-x86_64-1_slack15.0.txz

Updated package for Slackware -current:
ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/libXpm-3.5.19-i686-1.txz

Updated package for Slackware x86_64 -current:
ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/libXpm-3.5.19-x86_64-1.txz

MD5 signatures:
+-------------+

Slackware 15.0 package:
cd714f2f5bb20e8d92705ecee0e94a81 libXpm-3.5.19-i586-1_slack15.0.txz

Slackware x86_64 15.0 package:
b158452391573c4afc944b368dd2d0f8 libXpm-3.5.19-x86_64-1_slack15.0.txz

Slackware -current package:
8bce98b6ecfe5c5616e324adc5cd2c47 x/libXpm-3.5.19-i686-1.txz

Slackware x86_64 -current package:
2761f3fe3009ecdecf34cb28ad0ade90 x/libXpm-3.5.19-x86_64-1.txz

Installation instructions:
+------------------------+

Upgrade the package as root:
# upgradepkg libXpm-3.5.19-i586-1_slack15.0.txz

+-----+

Slackware Linux Security Team
http://slackware.com/gpg-key



mozilla-thunderbird (SSA:2026-111-03)


mozilla-thunderbird (SSA:2026-111-03)

New mozilla-thunderbird packages are available for Slackware 15.0 and -current
to fix security issues.

Here are the details from the Slackware 15.0 ChangeLog:
+--------------------------+
patches/packages/mozilla-thunderbird-140.10.0esr-i686-1_slack15.0.txz: Upgraded.
This release contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/thunderbird/140.10.0esr/releasenotes/
https://www.mozilla.org/en-US/security/known-vulnerabilities/thunderbird/#thunderbird140.10
(* Security fix *)
+--------------------------+

Where to find the new packages:
+-----------------------------+

Thanks to the friendly folks at the OSU Open Source Lab
( http://osuosl.org) for donating FTP and rsync hosting
to the Slackware project! :-)

Also see the "Get Slack" section on http://slackware.com for
additional mirror sites near you.

Updated package for Slackware 15.0:
ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/mozilla-thunderbird-140.10.0esr-i686-1_slack15.0.txz

Updated package for Slackware x86_64 15.0:
ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/mozilla-thunderbird-140.10.0esr-x86_64-1_slack15.0.txz

Updated package for Slackware -current:
ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/xap/mozilla-thunderbird-140.10.0esr-i686-1.txz

Updated package for Slackware x86_64 -current:
ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/xap/mozilla-thunderbird-140.10.0esr-x86_64-1.txz

MD5 signatures:
+-------------+

Slackware 15.0 package:
23fe540203ff18c32afa4984d9b071a6 mozilla-thunderbird-140.10.0esr-i686-1_slack15.0.txz

Slackware x86_64 15.0 package:
6461a1f2cf9014313ffc175b06e89b48 mozilla-thunderbird-140.10.0esr-x86_64-1_slack15.0.txz

Slackware -current package:
56ec4447b139454787c8adae67d88649 xap/mozilla-thunderbird-140.10.0esr-i686-1.txz

Slackware x86_64 -current package:
81917497e63499989b59aca9f8f5bcfa xap/mozilla-thunderbird-140.10.0esr-x86_64-1.txz

Installation instructions:
+------------------------+

Upgrade the package as root:
# upgradepkg mozilla-thunderbird-140.10.0esr-i686-1_slack15.0.txz

+-----+

Slackware Linux Security Team
http://slackware.com/gpg-key



mozilla-firefox (SSA:2026-111-02)


mozilla-firefox (SSA:2026-111-02)

New mozilla-firefox packages are available for Slackware 15.0 and -current to
fix security issues.

Here are the details from the Slackware 15.0 ChangeLog:
+--------------------------+
patches/packages/mozilla-firefox-140.10.0esr-i686-1_slack15.0.txz: Upgraded.
This update contains security fixes and improvements.
For more information, see:
https://www.mozilla.org/en-US/firefox/140.10.0/releasenotes/
https://www.mozilla.org/security/advisories/mfsa2026-32/
https://www.cve.org/CVERecord?id=CVE-2026-6746
https://www.cve.org/CVERecord?id=CVE-2026-6747
https://www.cve.org/CVERecord?id=CVE-2026-6748
https://www.cve.org/CVERecord?id=CVE-2026-6749
https://www.cve.org/CVERecord?id=CVE-2026-6750
https://www.cve.org/CVERecord?id=CVE-2026-6751
https://www.cve.org/CVERecord?id=CVE-2026-6752
https://www.cve.org/CVERecord?id=CVE-2026-6753
https://www.cve.org/CVERecord?id=CVE-2026-6754
https://www.cve.org/CVERecord?id=CVE-2026-6757
https://www.cve.org/CVERecord?id=CVE-2026-6759
https://www.cve.org/CVERecord?id=CVE-2026-6761
https://www.cve.org/CVERecord?id=CVE-2026-6762
https://www.cve.org/CVERecord?id=CVE-2026-6763
https://www.cve.org/CVERecord?id=CVE-2026-6764
https://www.cve.org/CVERecord?id=CVE-2026-6765
https://www.cve.org/CVERecord?id=CVE-2026-6766
https://www.cve.org/CVERecord?id=CVE-2026-6767
https://www.cve.org/CVERecord?id=CVE-2026-6769
https://www.cve.org/CVERecord?id=CVE-2026-6770
https://www.cve.org/CVERecord?id=CVE-2026-6771
https://www.cve.org/CVERecord?id=CVE-2026-6772
https://www.cve.org/CVERecord?id=CVE-2026-6776
https://www.cve.org/CVERecord?id=CVE-2026-6785
https://www.cve.org/CVERecord?id=CVE-2026-6786
(* Security fix *)
+--------------------------+

Where to find the new packages:
+-----------------------------+

Thanks to the friendly folks at the OSU Open Source Lab
( http://osuosl.org) for donating FTP and rsync hosting
to the Slackware project! :-)

Also see the "Get Slack" section on http://slackware.com for
additional mirror sites near you.

Updated package for Slackware 15.0:
ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/mozilla-firefox-140.10.0esr-i686-1_slack15.0.txz

Updated package for Slackware x86_64 15.0:
ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/mozilla-firefox-140.10.0esr-x86_64-1_slack15.0.txz

Updated package for Slackware -current:
ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/xap/mozilla-firefox-140.10.0esr-i686-1.txz

Updated package for Slackware x86_64 -current:
ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/xap/mozilla-firefox-140.10.0esr-x86_64-1.txz

MD5 signatures:
+-------------+

Slackware 15.0 package:
6666217012ff1a7088c15630c3a62500 mozilla-firefox-140.10.0esr-i686-1_slack15.0.txz

Slackware x86_64 15.0 package:
170edd9fa6225f3036db557cea72f3dc mozilla-firefox-140.10.0esr-x86_64-1_slack15.0.txz

Slackware -current package:
b93d5b30ef68bfdbbbac281c8ae23dbb xap/mozilla-firefox-140.10.0esr-i686-1.txz

Slackware x86_64 -current package:
f5519e0fd71846c7922c9557c0eb7209 xap/mozilla-firefox-140.10.0esr-x86_64-1.txz

Installation instructions:
+------------------------+

Upgrade the package as root:
# upgradepkg mozilla-firefox-140.10.0esr-i686-1_slack15.0.txz

+-----+

Slackware Linux Security Team
http://slackware.com/gpg-key