ALT-BU-2025-5375-1
Branch sisyphus update bulletin.
Closed vulnerabilities
Modified: 2025-02-12
CVE-2023-24626
socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and FreeBSD), allows local users to send a privileged SIGHUP signal to any PID, causing a denial of service or disruption of the target process.
- https://git.savannah.gnu.org/cgit/screen.git/patch/?id=e9ad41bfedb4537a6f0de20f00b27c7739f168f7
- https://git.savannah.gnu.org/cgit/screen.git/patch/?id=e9ad41bfedb4537a6f0de20f00b27c7739f168f7
- https://savannah.gnu.org/bugs/?63195
- https://savannah.gnu.org/bugs/?63195
- https://www.exploit-db.com/exploits/51252
- https://www.exploit-db.com/exploits/51252
- https://www.exploit-db.com/exploits/51252
Closed vulnerabilities
Modified: 2024-11-21
CVE-2021-34123
An issue was discovered on atasm, version 1.09. A stack-buffer-overflow vulnerability in function aprintf() in asm.c allows attackers to execute arbitrary code on the system via a crafted file.
Package gcompris-qt updated to version 25.0.12-alt3 for branch sisyphus in task 381014.
Closed bugs
Не хватает зависимости на libqt6-multimediaquick
gcompris-qt - не запускается игра "Шар в лабиринте"
Closed bugs
passim: FTBFS
Package alterator-application-systeminfo updated to version 0.4.4-alt1 for branch sisyphus in task 380962.
Closed bugs
Неверное название ветки репозитория
Closed vulnerabilities
BDU:2022-05974
Уязвимость модуля DBI интерфейса базы данных Perl DBI, позволяющая нарушителю получить доступ к конфиденциальным данным, а также вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2014-10402
An issue was discovered in the DBI module through 1.643 for Perl. DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute in the data source name (DSN). NOTE: this issue exists because of an incomplete fix for CVE-2014-10401.
Closed vulnerabilities
Modified: 2025-04-08
CVE-2025-3066
Use after free in Site Isolation in Google Chrome prior to 135.0.7049.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)