> Mon Oct 11 23:41:16 PDT 2004 > a/glibc-solibs-2.3.3-i486-2.tgz: Updated from CVS. Added the files > in /usr/lib/gconv to glibc-solibs. (thanks to Tomas Matejicek) > n/rsync-2.6.3-i486-1.tgz: Upgraded to rsync-2.6.3. > From the rsync NEWS file: > A bug in the sanitize_path routine (which affects a non-chrooted > rsync daemon) could allow a user to craft a pathname that would get > transformed into an absolute path for certain options (but not for > file-transfer names). If you're running an rsync daemon with chroot > disabled, *please upgrade*, ESPECIALLY if the user privs you run > rsync under is anything above "nobody". > Note that rsync, in daemon mode, sets the "use chroot" to true by > default, and (in this default mode) is not vulnerable to this issue. > I would strongly recommend against setting "use chroot" to false > even if you've upgraded to this new package. > (* Security fix *) > +--------------------------+ > Mon Oct 4 11:57:38 PDT 2004 > d/j2sdk-1_5_0-i586-1.tgz: Upgraded to Java(TM) 2 Software Development > Kit Standard Edition, Version 1.5.0. > l/zlib-1.2.2-i486-1.tgz: Upgraded to zlib-1.2.2. This fixes a > possible DoS in earlier versions of zlib-1.2.x. > (* Security fix *)
> kde/qt-3.3.3-i486-3.tgz: Recompiled. Note that this includes the change > previously in /testing where the libqt.so -> libqt-mt.so symlinks have > been removed. (this shouldn't affect any recent binaries, but might > break some old ones)
> Mon Oct 18 23:48:13 PDT 2004 > a/sysvinit-2.84-i486-51.tgz: In rc.S, make sure /tmp/.ICE-unix and > /tmp/.X11-unix exist and have proper permissions. X.Org no longer > creates these if they are missing which is a problem for users who > are using a tmpfs on /tmp. Reported by Alexandre Pinaffii Andrucioli, > Stefano Mangione, and Luigi Genoni. > In rc.S and rc.6, check /proc/ioports to make sure that the RTC lists > ports, and if so use a workaround to prevent hwclock from hanging. > Thanks to Piter PUNK for the bug report and patch. > In rc.M, don't start acpid if apmd is already running regardless of > the perms on rc.acpid (thanks again to Piter PUNK). > x/x11-6.8.1-i486-2.tgz: Rebuilt. X.Org made a few minor slient fixes to > the X11R6.8.1 (like the version number), so it seemed like a good idea > to rebuild. Thanks to Sergei Mutovkin for reporting this situation.
> Fri Oct 22 15:28:06 PDT 2004 > xap/gaim-1.0.2-i486-1.tgz: Upgraded to gaim-1.0.2 and gaim-encryption-2.32. > A buffer overflow in the MSN protocol handler for GAIM 0.79 to 1.0.1 > allows remote attackers to cause a denial of service (application > crash) and may allow the execution of arbitrary code. > For more details, see: > cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0891 > (* Security fix *)
> Mon Oct 25 16:35:04 PDT 2004 > n/apache-1.3.32-i486-1.tgz: Upgraded to apache-1.3.32. > This addresses a heap-based buffer overflow in mod_proxy by > rejecting responses from a remote server with a negative > Content-Length. The flaw could crash the Apache child process, > or possibly allow code to be executed as the Apache user (but > only if mod_proxy is actually in use on the server). > For more details, see: > cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0492 > (* Security fix *) > n/mod_ssl-2.8.21_1.3.32-i486-1.tgz: Upgraded to mod_ssl-2.8.21-1.3.32. > Don't allow clients to bypass cipher requirements, possibly negotiating > a connection that the server does not consider secure enough. > For more details, see: > cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0885 > (* Security fix *)
> Sun Oct 31 22:03:05 PST 2004 > ap/mysql-4.0.22-i486-1.tgz: Upgraded to mysql-4.0.22. > l/libtiff-3.7.0-i486-1.tgz: Upgraded to libtiff-3.7.0. > This fixes several bugs that could lead to crashes, or could possibly allow > arbitrary code to be executed. For more details, see: > cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0803 > cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0804 > cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0886 > (* Security fix *) > n/apache-1.3.33-i486-1.tgz: Upgraded to apache-1.3.33. > This fixes one new security issue (the first issue, CAN-2004-0492, was fixed > in apache-1.3.32). The second bug fixed in 1.3.3 (CAN-2004-0940) allows a > local user who can create SSI documents to become "nobody". The amount of > mischief they could cause as nobody seems low at first glance, but it might > allow them to use kill or killall as nobody to try to create a DoS. > Mention PHP's mhash dependency in httpd.conf (thanks to Jakub Jankowski). > (* Security fix *) > n/mod_ssl-2.8.22_1.3.33-i486-1.tgz: Upgraded to mod_ssl-2.8.22_1.3.33.
> Wed Nov 3 22:48:47 PST 2004 > a/pkgtools-10.1.0-i486-1.tgz: Patched pkgtools to dramatically improve the > speed of the "View" option. The patch was written by Jim Hawkins and > forwarded to me by Stuart Winter. Thanks much! > Fixed a typo in pkgtool.8. (thanks to "ldconfig") > n/tcpip-0.17-i486-30.tgz: Upgraded to ethtool-2 and tftp-hpa-0.40. > Fixed a DoS bug in ntalkd. Thanks to Mauro Persano who discovered the bug > nd sent in a patch, and Dmitry V. Levin who ref
--OpenLDAP-2.1.30-- checking for Berkeley DB link (-ldb-4.2)... yes checking for Berkeley DB thread support... no checking Berkeley DB version for BDB backend... no configure: error: BDB: BerkeleyDB version incompatible
--OpenLDAP-2.2.18-- checking for Berkeley DB link (-ldb-4.2)... yes checking for Berkeley DB version match... Berkeley DB version mismatch expected: Sleepycat Software: Berkeley DB 3.3.11: (July 12, 2001) got: Sleepycat Software: Berkeley DB 4.2.52: (December 3, 2003) no configure: error: Berkeley DB version mismatch
libpcapについて質問です pcap.hを利用したソースファイルがあるのですが、 $gcc -lpcap hogehoge.c とすると、 hogehoge.c: In function `main': hogehoge.c:4: warning: return type of `main' is not `int' /tmp/ccYRVfwX.o(.text+0x52): In function `main': : undefined reference to `pcap_dump_open' collect2: ld returned 1 exit status
環境は、Slackware9.0 $ gcc --version gcc (GCC) 3.3.4 Copyright (C) 2003 Free Software Foundation, Inc. This is free software; see the source for copying conditions. There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.
> Tue Dec 21 19:07:25 PST 2004 > a/openssl-solibs-0.9.7e-i486-1.tgz: Upgraded to openssl-0.9.7e. > a/tar-1.15.1-i486-1.tgz: Upgraded to tar-1.15.1. > l/atk-1.9.0-i486-1.tgz: Upgraded to atk-1.9.0. > l/glib2-2.6.0-i486-1.tgz: Upgraded to glib-2.6.0. > l/gtk+2-2.6.0-i486-1.tgz: Upgraded to gtk+-2.6.0. > l/libpng-1.2.8-i486-1.tgz: Upgraded to libpng-1.2.8. > l/pango-1.8.0-i486-1.tgz: Upgraded to pango-1.8.0. > n/lftp-3.0.13-i486-1.tgz: Upgraded to lftp-3.0.13. > n/openssl-0.9.7e-i486-1.tgz: Upgraded to openssl-0.9.7e. > n/php-4.3.10-i486-1.tgz: Upgraded to php-4.3.10. > This fixes a lot of bugs... for a full list, see the PHP ChangeLog. > (* Security fix *) > xap/gimp-2.2.0-i486-1.tgz: Upgraded to gimp-2.2.0. > testing/packages/gcc-3.4.3/gcc-*.tgz: Upgraded to gcc-3.4.3. > testing/packages/php-5.0.3/php-5.0.3-i486-1.tgz: Upgraded to php-5.0.3. > This fixes a lot of bugs... for a full list, see the PHP ChangeLog. > (* Security fix *)
> Wed Dec 22 19:50:57 PST 2004 > a/openssl-solibs-0.9.7e-i486-2.tgz: Rebuilt. > d/automake-1.9.4-noarch-1.tgz: Upgraded to automake-1.9.4. > n/openssl-0.9.7e-i486-2.tgz: Small in patch in Makefile.org to > prevent some symlinks that point to a library that doesn't exist. > Thanks to /i. for pointing that out!
> Sat Jan 1 22:56:49 PST 2005 > a/module-init-tools-3.1-i486-1.tgz: Upgraded to module-init-tools-3.1 and > modutils-2.4.27. > a/util-linux-2.12p-i486-1.tgz: Upgraded to util-linux-2.12p. > d/binutils-2.15.92.0.2-i486-2.tgz: Upgraded to ksymoops-2.4.10. > Tried the newer binutils, but it couldn't compile ksymoops due to missing > symbols in libbfd.so we'll stick with 2.15.92.0.2 for now... > d/cvs-1.11.18-i486-1.tgz: Upgraded to cvs-1.11.18. > d/doxygen-1.4.0-i486-1.tgz: Upgraded to doxygen-1.4.0. > d/perl-5.8.6-i486-1.tgz: Upgraded to perl-5.8.6. > d/python-2.4-i486-1.tgz: Upgraded to python-2.4. > d/python-demo-2.4-noarch-1.tgz: Upgraded to python-2.4 demos. > d/python-tools-2.4-noarch-1.tgz: Upgraded to python-2.4 tools. > l/libxml2-2.6.16-i486-1.tgz: Upgraded to libxml2-2.6.16. > l/libxslt-1.1.12-i486-1.tgz: Upgraded to libxslt-1.1.12. > xap/gaim-1.1.1-i486-1.tgz: Upgraded to gaim-1.1.1.
> Mon Jan 3 22:29:13 PST 2005 > l/taglib-1.3.1-i486-1.tgz: Upgraded to taglib-1.3.1. > Thanks to Fedele Liberatoscioli for mentioning this fixes some crashes > in the 1.3 version of taglib. > extra/bittorrent/bittorrent-3.4.2-noarch-2.tgz: Rebuilt for Python 2.4.
> Sat Jan 15 12:59:47 PST 2005 > a/cups-1.1.23-i486-1.tgz: Upgraded to cups-1.1.23. > a/udev-050-i486-1.tgz: Upgraded to udev-050. > ap/mdadm-1.8.0-i486-1.tgz: Reverted to mdadm-1.8.0. It turns out that > mdadm-1.8.1 is a new and unstable branch. Sorry about that -- from the > version number it looked innocent enough to me. :-) > l/glib2-2.6.1-i486-1.tgz: Upgraded to glib2-2.6.1. > l/gtk+2-2.6.1-i486-1.tgz: Upgraded to gtk+2-2.6.1. > l/libtiff-3.7.1-i486-1.tgz: Upgraded to libtiff-3.7.1. > n/gnupg-1.2.7-i486-1.tgz: Upgraded to gnupg-1.2.7. > (see also gnupg-1.4.0 in /testing below) > n/stunnel-4.07-i486-1.tgz: Upgraded to stunnel-4.07. > xap/gimp-2.2.1-i486-1.tgz: Upgraded to gimp-2.2.1. > testing/packages/gnupg-1.4.0-i486-1.tgz: Added gnupg-1.4.0. > This is a new stable version of GnuPG. Please test it out. If no problems > are reported it will replace gnupg-1.2.7 in slackware/n/ soon.
> Thu Jan 20 22:37:36 PST 2005 > n/gnupg-1.4.0-i486-1.tgz: Moved gnupg-1.4.0 from /testing. > xap/gimp-2.2.2-i486-1.tgz: Upgraded to gimp-2.2.2. > xap/imagemagick-6.1.9_0-i486-1.tgz: Upgraded to ImageMagick-6.1.9-0.