ALT-BU-2021-4609-1
Branch sisyphus_riscv64 update bulletin.
Package psmisc updated to version 23.3-alt0.4.rv64 for branch sisyphus_riscv64.
Closed bugs
pstree output cannot be redirected to a file
Package cinnamon updated to version 5.2.5-alt1 for branch sisyphus_riscv64.
Closed bugs
Не запускается cinnamon-settings info
Не запускается /usr/lib/linuxmint/mintlocale/im.py
cinnamon не запускается, так как не устанавлен libsoup-gir
Package sysvinit updated to version 2.88-alt7 for branch sisyphus_riscv64.
Closed bugs
Добавить конфликт на pam_systemd
Package epiphany updated to version 41.1-alt1 for branch sisyphus_riscv64.
Closed vulnerabilities
BDU:2022-05569
Уязвимость реализации сценария ephy-about:overview веб-браузера Epiphany, позволяющая нарушителю проводить межсайтовые сценарные атаки
Modified: 2024-11-21
CVE-2021-45085
XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 via an about: page, as demonstrated by ephy-about:overview when a user visits an XSS payload page often enough to place that page on the Most Visited list.
- https://gitlab.gnome.org/GNOME/epiphany/-/issues/1612
- https://gitlab.gnome.org/GNOME/epiphany/-/issues/1612
- https://gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1045
- https://gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1045
- [debian-lts-announce] 20220818 [SECURITY] [DLA 3074-1] epiphany-browser security update
- [debian-lts-announce] 20220818 [SECURITY] [DLA 3074-1] epiphany-browser security update
- DSA-5042
- DSA-5042
Modified: 2024-11-21
CVE-2021-45086
XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 because a server's suggested_filename is used as the pdf_name value in PDF.js.
Modified: 2024-11-21
CVE-2021-45087
XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 when View Source mode or Reader mode is used, as demonstrated by a a page title.
- https://gitlab.gnome.org/GNOME/epiphany/-/issues/1612
- https://gitlab.gnome.org/GNOME/epiphany/-/issues/1612
- https://gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1045
- https://gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1045
- [debian-lts-announce] 20220818 [SECURITY] [DLA 3074-1] epiphany-browser security update
- [debian-lts-announce] 20220818 [SECURITY] [DLA 3074-1] epiphany-browser security update
- DSA-5042
- DSA-5042
Modified: 2024-11-21
CVE-2021-45088
XSS can occur in GNOME Web (aka Epiphany) before 40.4 and 41.x before 41.1 via an error page.
- https://gitlab.gnome.org/GNOME/epiphany/-/issues/1612
- https://gitlab.gnome.org/GNOME/epiphany/-/issues/1612
- https://gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1045
- https://gitlab.gnome.org/GNOME/epiphany/-/merge_requests/1045
- [debian-lts-announce] 20220818 [SECURITY] [DLA 3074-1] epiphany-browser security update
- [debian-lts-announce] 20220818 [SECURITY] [DLA 3074-1] epiphany-browser security update
- DSA-5042
- DSA-5042