Security Fixes 11.10.100
Chromium
- Updated Chromium browser to version 124.0.6367.78. (ISN 2024-11)
Base system
- Fixed aom security issues CVE-2021-30475, CVE-2021-30474, CVE-2021-30473, CVE-2020-36135, CVE-2020-36133, CVE-2020-36131 and CVE-2020-36130.
- Fixed openssl security issues CVE-2024-0727, CVE-2023-5678, CVE-2023-3817 and CVE-2023-3446.
- Fixed zlib security issues CVE-2022-37434 and CVE-2018-25032.
- Fixed pipewire security issue CVE-2022-4964.
- Fixed libuv1 security issue CVE-2024-24806.
- Fixed libwebp security issue CVE-2023-4863.
- Fixed iwd security issue CVE-2024-28084.
- Fixed qemu security issue CVE-2023-6683.
- Fixed opensc security issues CVE-2024-1454 and CVE-2023-5992.
- Fixed libde265 security issues CVE-2023-49468, CVE-2023-49467, CVE-2023-49465, CVE-2023-47471, CVE-2023-43887, CVE-2023-27103, CVE-2023-27102, CVE-2023-25221, CVE-2023-24758, CVE-2023-24757, CVE-2023-24756, CVE-2023-24755, CVE-2023-24754, CVE-2023-24752, CVE-2023-24751, CVE-2022-47665, CVE-2022-43250, CVE-2022-43249, CVE-2022-43245 and CVE-2022-43244.
- Fixed postgresql-14 security issue CVE-2024-0985.
- Fixed tiff security issues CVE-2023-6277, CVE-2023-6228 and CVE-2023-52356.
- Fixed dnsmasq security issues CVE-2023-50868 and CVE-2023-50387.
- Fixed python-cryptography security issue CVE-2023-50782.
- Fixed less security issue CVE-2022-48624.
- Fixed expat security issue CVE-2024-28757.
- Fixed libxml2 security issue CVE-2024-25062.
- Fixed texlive-bin security issues CVE-2024-25262 and CVE-2023-32668.
- Fixed vim security issues CVE-2024-22667 and CVE-2023-2426.
- Fixed unixodbc security issue CVE-2024-1013.
- Fixed bash security issue CVE-2022-3715.
- Fixed util-linux security issue CVE-2024-28085.
- Fixed curl security issues CVE-2024-2398 and CVE-2024-2004.
- Fixed libvirt security issue CVE-2024-1441.
- Updated intel-microcode to version 20240312.
- Removed custom command selection from application start dialog of file manager to prevent execution of arbitrary commands by user. (ISN 2024-09)
- Fixed a privilege escalation issue in the starter license. Acknowledgements to Zack Didcott for responsible disclosure. (ISN-2014-12)