Lector de Feeds

MGASA-2025-0247 - Updated thunderbird packgaes fix security vulnerabilities

Mageia Security - 23 Octubre, 2025 - 20:37
Publication date: 23 Oct 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-10527 , CVE-2025-10528 , CVE-2025-10529 , CVE-2025-10532 , CVE-2025-10533 , CVE-2025-10536 , CVE-2025-10537 , CVE-2025-11708 , CVE-2025-11709 , CVE-2025-11710 , CVE-2025-11711 , CVE-2025-11712 , CVE-2025-11713 , CVE-2025-11714 , CVE-2025-11715 Description CVE-2025-11708: Use-after-free in MediaTrackGraphImpl::GetInstance() CVE-2025-11709: Out of bounds read/write in a privileged process triggered by WebGL textures CVE-2025-11710: Cross-process information leaked due to malicious IPC messages CVE-2025-11711: Some non-writable Object properties could be modified CVE-2025-11712: An OBJECT tag type attribute overrode browser behavior on web resources without a content-type CVE-2025-11713: Potential user-assisted code execution in “Copy as cURL” command CVE-2025-11714: Memory safety bugs fixed in Firefox ESR 115.29, Firefox ESR 140.4, Thunderbird ESR 140.4, Firefox 144 and Thunderbird 144 CVE-2025-11715: Memory safety bugs fixed in Firefox ESR 140.4, Thunderbird ESR 140.4, Firefox 144 and Thunderbird 144, and other security fixes; please see the links. References SRPMS 9/core
  • thunderbird-140.4.0-1.2.mga9
  • thunderbird-l10n-140.4.0-1.mga9

MGASA-2025-0246 - Updated firefox, nss & rootcerts fix security vulnerabilities

Mageia Security - 23 Octubre, 2025 - 20:37
Publication date: 23 Oct 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-10527 , CVE-2025-10528 , CVE-2025-10529 , CVE-2025-10532 , CVE-2025-10533 , CVE-2025-10536 , CVE-2025-10537 , CVE-2025-11708 , CVE-2025-11709 , CVE-2025-11710 , CVE-2025-11711 , CVE-2025-11712 , CVE-2025-11713 , CVE-2025-11714 , CVE-2025-11715 Description CVE-2025-11708: Use-after-free in MediaTrackGraphImpl::GetInstance() CVE-2025-11709: Out of bounds read/write in a privileged process triggered by WebGL textures CVE-2025-11710: Cross-process information leaked due to malicious IPC messages CVE-2025-11711: Some non-writable Object properties could be modified CVE-2025-11712: An OBJECT tag type attribute overrode browser behavior on web resources without a content-type CVE-2025-11713: Potential user-assisted code execution in “Copy as cURL” command CVE-2025-11714: Memory safety bugs fixed in Firefox ESR 115.29, Firefox ESR 140.4, Thunderbird ESR 140.4, Firefox 144 and Thunderbird 144 CVE-2025-11715: Memory safety bugs fixed in Firefox ESR 140.4, Thunderbird ESR 140.4, Firefox 144 and Thunderbird 144, and other security fixes; please see the links. References SRPMS 9/core
  • nss-3.117.0-1.mga9
  • rootcerts-20251003.00-1.mga9
  • firefox-140.4.0-1.2.mga9
  • firefox-l10n-140.4.0-1.mga9

Enlightenment

Wiki Mageia - 23 Octubre, 2025 - 15:35

added NL-banner

← Older revision Revision as of 14:35, 23 October 2025 Line 1: Line 1:  [[Category:Documentation]] [[Category:Documentation]]    −{{multi language banner|[[Enlightenment-de|Deutsch]] ; [[Enlightenment|English]] ;}}+{{multi language banner|[[Enlightenment-de|Deutsch]] ; [[Enlightenment|English]] ; [[Enlightenment-nl|Nederlands]] ;}}     {{introduction|This page talks about the desktop environment Enlightenment. {{introduction|This page talks about the desktop environment Enlightenment. Marchugo
Categorías: Wiki de Mageia

Enlightenment-de

Wiki Mageia - 23 Octubre, 2025 - 15:35

added nl-banner

← Older revision Revision as of 14:35, 23 October 2025 Line 1: Line 1:  [[Category:Documentation]] [[Category:Documentation]]  <!-- It would be nice to have this page extended to the form of the https://wiki.mageia.org/en/Desktop_environments#Introduction_pages --> <!-- It would be nice to have this page extended to the form of the https://wiki.mageia.org/en/Desktop_environments#Introduction_pages --> −{{multi language banner-de|[[Enlightenment-de|Deutsch]] ; [[Enlightenment|English]] ;}}+{{multi language banner-de|[[Enlightenment-de|Deutsch]] ; [[Enlightenment|English]] ; [[Enlightenment-nl|Nederlands]] ;}}     {{introduction-de|Diese Seite behandelt die Desktop-Umgebung Enlightenment. {{introduction-de|Diese Seite behandelt die Desktop-Umgebung Enlightenment. Marchugo
Categorías: Wiki de Mageia

Enlightenment-nl

Wiki Mageia - 23 Octubre, 2025 - 15:34

Created page with "Category:Documentation Category:Howtos Category:Installing Category:Nederlands Category:Documentatie-nl {{multi language banner|Duits..."

New page

[[Category:Documentation]]
[[Category:Howtos]]
[[Category:Installing]]
[[Category:Nederlands]]
[[Category:Documentatie-nl]]

{{multi language banner|[[Enlightenment-de|Duits]] ; [[Enlightenment|Engels]] ; [[Enlightenment-nl|Nederlands]] ; }}

{{introduction|Deze pagina gaat over de desktop-omgeving Enlightenment.
Voor andere desktop-omgevingen zie onze pagina [[Bureaublad-omgevingen_(Desktop_Environments)-nl|{{format text|your text=Desktop-omgevingen|kleur=#2397D4FF}}]].
<br> ''Dit artikel is momenteel een eerste korte tekst, die door geïnteresseerde auteurs kan worden uitgebreid.}}''

<!-- Het zou mooi zijn als deze pagina zou worden uitgebreid met de vorm https://wiki.mageia.org/en/Desktop_environments#Introduction_pages -->

== Introductie ==

Enlightenment (ook wel afgekort als E) is een van de vele desktop-omgevingen die beschikbaar zijn in Mageia.

Voor meer informatie hierover kunt u de [https://www.enlightenment.org/ Enlightenment homepage] raadplegen.

== Installeren ==

Om Enlightenment te installeren, installeert u {{prog|task-enlightenment}}. Enlightenment is dan beschikbaar in het inlogmenu op uw desktop-pc.

== In Mageia 9 ==

Het Enlightenment-takenpakket in Mageia 9 bevat E25.4 en Enlightenment Foundation Libraries (EFL) 1.26.3. De belangrijkste release 0.25 bevat een volledig nieuw, plat thema, met zowel vooraf geconfigureerde alternatieve kleurenpaletten (waaronder een licht thema), als ook de mogelijkheid om de kleuren te bewerken. Daarnaast is er nog een Mageia-thema, m-Dimensions, gebaseerd op het oudere desktopthema, bijgewerkt met alle nieuwe functies behalve het kleurenpalet. Andere belangrijke wijzigingen zijn de toevoeging van touchpad configuratie-opties, verbeteringen aan de geluidsmixer en een belangrijke wijziging in de standaardinstellingen: edge binding is nu standaard uitgeschakeld. Voor meer informatie over deze versie, zie https://www.enlightenment.org/news/2021-12-26-enlightenment-0.25.0.

Mageia bevat uiteraard E's Econnman-gebruikersinterface voor de connman-verbindingsbeheerder (indien ingeschakeld - standaard is dit systemd-networkd.service met de Netapplet), samen met vier EFL-gebaseerde toepassingen: de Terminology-terminalemulator, de Ephoto-afbeeldingsviewer, de lichtgewicht Rage-videospeler en de Evisum-systeemmonitor. Ecrire, een eenvoudige EFL-gebaseerde teksteditor, is ook beschikbaar als aanbevolen. Let op: de gebruikersinterface en lettertype-instellingen van Ecrire werken niet goed met het m-Dimensions-thema.

Voor degenen die nieuw zijn met E: opstarttoepassingen en -processen (zoals de Mageia Online-applet voor updatemeldingen) worden niet automatisch opgehaald uit {{folder|/etc/xdg/autostart}}, maar kunnen bij het opstarten worden ingeschakeld door naar {{menu|Hoofdmenu > Instellingen > Apps > Opstarttoepassingen}} te gaan en de gewenste toepassingen en systeemprocessen toe te voegen. Toepassingen die (alleen) worden geladen bij het herstarten van de Desktop-omgeving worden apart verwerkt via een lijst die beschikbaar is via {{menu|Hoofdmenu > Instellingen > Apps > Toepassingen opnieuw opstarten}}.

Het systeemvak van Enlightenment, dat SNI-app indicatormeldingen gebruikt, is een aparte module die moet worden geladen ({{menu|Hoofdmenu > Instellingen > Modules}}) en moet worden toegevoegd aan een paneel, waar het Mageia Online-applet en Netapplet (indien ingeschakeld) samen met andere worden weergegeven.

Er is momenteel één probleem bekend: het herstarten van E resulteert soms in een waarschuwing dat de Efreet-cache niet is bijgewerkt. Over het algemeen kan dit worden genegeerd, omdat het een gevolg is van een time-out die voor sommige systemen nog steeds te kort lijkt. Marchugo
Categorías: Wiki de Mageia

MGASA-2025-0245 - Updated nginx package fixes security vulnerability

Mageia Security - 22 Octubre, 2025 - 21:07
Publication date: 22 Oct 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-53859 Description It was discovered that nginx contains a security issue in the ngx_mail_smtp_module which might allow an attacker to cause buffer over-read potentially resulting in sensitive information leak in a HTTP request to the authentication server (CVE-2025-53859). References SRPMS 9/core
  • nginx-1.26.3-1.1.mga9

MGASA-2025-0244 - Updated openssl packages fix a security vulnerability

Mageia Security - 22 Octubre, 2025 - 21:07
Publication date: 22 Oct 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-9230 Description Out-of-bounds read & write in RFC 3211 KEK Unwrap. (CVE-2025-9230) References SRPMS 9/core
  • openssl-3.0.18-1.mga9

MGASA-2025-0243 - Updated python-django packages fix a security vulnerability

Mageia Security - 22 Octubre, 2025 - 21:07
Publication date: 22 Oct 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-59681 , CVE-2025-59682 Description An issue was discovered in Django 4.2 before 4.2.25, 5.1 before 5.1.13, and 5.2 before 5.2.7. QuerySet.annotate(), QuerySet.alias(), QuerySet.aggregate(), and QuerySet.extra() are subject to SQL injection in column aliases, when using a suitably crafted dictionary, with dictionary expansion, as the **kwargs passed to these methods (on MySQL and MariaDB). (CVE-2025-59681) An issue was discovered in Django 4.2 before 4.2.25, 5.1 before 5.1.13, and 5.2 before 5.2.7. The django.utils.archive.extract() function, used by the "startapp --template" and "startproject --template" commands, allows partial directory traversal via an archive with file paths sharing a common prefix with the target directory. (CVE-2025-59682) References SRPMS 9/core
  • python-django-4.1.13-1.7.mga9

MGASA-2025-0242 - Updated haproxy packages fix security vulnerability & bugs

Mageia Security - 22 Octubre, 2025 - 21:07
Publication date: 22 Oct 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-11230 Description Haproxy has a critical, a major, few medium and few minor bugs fixed in the last upstream version 2.8.16 of branch 2.8. Fixed critical bug list: - mjson: fix possible DoS when parsing numbers Fixed major bug list: - listeners: transfer connection accounting when switching listeners Fixed medium bugs list: - check: Requeue healthchecks on I/O events to handle check timeout - check: Set SOCKERR by default when a connection error is reported - checks: fix ALPN inheritance from server - dns: Reset reconnect tempo when connection is finally established - fd: Use the provided tgid in fd_insert() to get tgroup_info - h1: Allow reception if we have early data - h1/h2/h3: reject forbidden chars in the Host header field - h2/h3: reject some forbidden chars in :authority before reassembly - hlua: Add function to change the body length of an HTTP Message - hlua: Forbid any L6/L7 sample fetche functions from lua services - hlua: Report to SC when data were consumed on a lua socket - hlua: Report to SC when output data are blocked on a lua socket - http-client: Ask for more room when request data cannot be xferred - http-client: Don't wake http-client applet if nothing was xferred - http-client: Drain the request if an early response is received - http-client: Notify applet has more data to deliver until the EOM - http-client: Properly inc input data when HTX blocks are xferred - http-client: Test HTX_FL_EOM flag before commiting the HTX buffer - httpclient: Throw an error if an lua httpclient instance is reused - mux-h2: Properly handle connection error during preface sending - server: Duplicate healthcheck's alpn inherited from default server - ssl: ca-file directory mode must read every certificates of a file - ssl/clienthello: ECDSA with ssl-max-ver TLSv1.2 and no ECDSA ciphers - ssl: create the mux immediately on early data - ssl: Fix 0rtt to the server - ssl: fix build with AWS-LC - threads: Disable the workaround to load libgcc_s on macOS References SRPMS 9/core
  • haproxy-2.8.16-1.mga9

Kernel-Arten-de

Wiki Mageia - 22 Octubre, 2025 - 12:38

‎Zurückportierte Kernel (Backport)

← Older revision Revision as of 11:38, 22 October 2025 Line 83: Line 83:  $ sudo rmmod kvm_intel  ''(wenn Sie eine Intel CPU verwenden; Falls Sie eine AMD CPU verwenden, führen Sie rmmod kvm_amd aus.)''<br> $ sudo rmmod kvm_intel  ''(wenn Sie eine Intel CPU verwenden; Falls Sie eine AMD CPU verwenden, führen Sie rmmod kvm_amd aus.)''<br>  $ sudo rmmod kvm<br> $ sudo rmmod kvm<br> −- oder setzen Sie diese auf eine Blackliste, siehe {Bug|34408#c7}}.+- oder setzen Sie diese auf eine Blackliste, siehe {{Bug|34408#c7}}.     == Kernelserien in Cauldron == == Kernelserien in Cauldron == Psyca
Categorías: Wiki de Mageia

User:Marja/Pushing updates

Wiki Mageia - 21 Octubre, 2025 - 17:19

‎Assign a new advisory ID: put the note in a Note template

← Older revision Revision as of 16:19, 21 October 2025 (4 intermediate revisions by the same user not shown)Line 1: Line 1:  {{Introduction|This is a short version of what currently is done when pushing updates using [[mgaadv]] to a stable release (''updates_testing'' to ''updates''). There is another page with more details on [[How to create an update advisory]] for use by the QA team.<br><br> {{Introduction|This is a short version of what currently is done when pushing updates using [[mgaadv]] to a stable release (''updates_testing'' to ''updates''). There is another page with more details on [[How to create an update advisory]] for use by the QA team.<br><br>    −I here use two terminal windows, one as myself on my local machine and one as root @ duvel. If you haven't already initialized mgaadv on your local machine, do so first.}}+Tmb always used two terminal windows, one as himself on his local machine and one as root @ duvel. If you haven't already initialized mgaadv on your local machine, do so first.}}     == Install mgaadv on your local machine == == Install mgaadv on your local machine == Line 28: Line 28:     ===Check the advisories for potential problems=== ===Check the advisories for potential problems=== −Check whether there are potential problems for the perl advisory parser. This recreates ~/mageia-advisories/html/:+Check whether there are potential problems for the perl advisory parser. This is just a local dry-run to find YAML errors and other problems. It recreates ~/mageia-advisories/html/:  <pre> <pre>  [tmb@laptop advisories]$ mgaadv mksite [tmb@laptop advisories]$ mgaadv mksite Line 50: Line 50:  Check at end of https://madb.mageia.org/tools/updates for advisories ready to be pushed. Check at end of https://madb.mageia.org/tools/updates for advisories ready to be pushed.    −Pushing updates (using samba update (bug 12999) as an example)+Assigning an advisory ID, using a samba update (bug 12999) as an example:    −Assign advisory id (note: sometimes there can be split advisories in which case you would use '''mgaadv publish 12999.mga3''' and '''mgaadv publish 12999.mga4'''). This performs some checks then updates the advisory file in svn (that the QA team created) with the next available MGASA- or MGAA- number:+{{Note| Sometimes there can be split advisories in which case you would use '''mgaadv publish 12999.mga3''' and '''mgaadv publish 12999.mga4'''}}.    +   +This performs some checks then updates the advisory file in svn (that the QA team created) with the next available MGASA- or MGAA- number:  <pre> <pre>  [tmb@laptop advisories]$ mgaadv publish 12999 [tmb@laptop advisories]$ mgaadv publish 12999 Marja
Categorías: Wiki de Mageia

MGASA-2025-0241 - Updated quictls packages with two security issues and bug fixes

Mageia Security - 20 Octubre, 2025 - 20:51
Publication date: 20 Oct 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-9230 , CVE-2025-9232 Description Two security issues and miscellaneous minor bug fixes. Fix Out-of-bounds read & write in RFC 3211 KEK Unwrap. (CVE-2025-9230) Fix Out-of-bounds read in HTTP client no_proxy handling. (CVE-2025-9232) References SRPMS 9/core
  • quictls-3.0.18-1.mga9

MGAA-2025-0086 - Updated rust packages fix bug

Mageia Security - 20 Octubre, 2025 - 20:51
Publication date: 20 Oct 2025
Type: bugfix
Affected Mageia releases : 9
Description The current version of rust in mga9 is not new enough to keep building Mozilla's applications. This update fixes the reported issue. References SRPMS 9/core
  • rust-1.82.0-1.mga9

MGAA-2025-0085 - Updated phpmyadmin packages fix bug

Mageia Security - 20 Octubre, 2025 - 20:51
Publication date: 20 Oct 2025
Type: bugfix
Affected Mageia releases : 9
Description Fixed "Delete" button not asking for confirmation when deleting a row. Fix error 500 when simulating a SET statement. Fixed PHP 8.4 deprecations in thecodingmachine/safe. References SRPMS 9/core
  • phpmyadmin-5.2.3-1.mga9

Local Communities Team

Wiki Mageia - 20 Octubre, 2025 - 08:47

‎United States

← Older revision Revision as of 07:47, 20 October 2025 (4 intermediate revisions by the same user not shown)Line 100: Line 100:  === Canada === === Canada ===  * Glen Millard - bartockbat - szilverthorne AT gmail DOT com - Need a presence in The Great White North - help with FSF in Canada * Glen Millard - bartockbat - szilverthorne AT gmail DOT com - Need a presence in The Great White North - help with FSF in Canada  +* Marc Paré - marc DOT pare AT parentreprise DOT ca - help with marketing and publicity in Canada - https://www.LibreCanada.ca - https://www.parEntreprise.com  * J.P. Pasnak - Linegod - pasnak AT warpedsystems DOT sk Dot ca - work with Canadian LUGs * J.P. Pasnak - Linegod - pasnak AT warpedsystems DOT sk Dot ca - work with Canadian LUGs    Line 111: Line 112:     ===  English Speaking International Users Community === ===  English Speaking International Users Community === −* Fini Decima - finid [AT] LinuxBSDos.com - Publisher of http://linuxbsdos.com+* Fini Decima - finid [AT] LinuxBSDos.com - Publisher of https://linuxbsdos.com  * Glen Millard - szilverthorne AT gmail DOT com - Let me know what you need! * Glen Millard - szilverthorne AT gmail DOT com - Let me know what you need!  * Paul Willard - paul at loudas dot com - English community manager * Paul Willard - paul at loudas dot com - English community manager Line 245: Line 246:  === United States === === United States ===  * Alan Augustson (VoodooDali) - alan DOT augustson AT gmail DOT com - Chicago, IL, US. Longtime Mandriva user, interested in communications, marketing and artwork. NOT a programmer/developer; more like an advanced user. * Alan Augustson (VoodooDali) - alan DOT augustson AT gmail DOT com - Chicago, IL, US. Longtime Mandriva user, interested in communications, marketing and artwork. NOT a programmer/developer; more like an advanced user. −* Fini Decima - finid [AT] LinuxBSDos.com - Publisher of http://linuxbsdos.com+* Fini Decima - finid [AT] LinuxBSDos.com - Publisher of https://linuxbsdos.com  * Kevin E. Ivey (lnxguy) - ik04[at]isot.com - Longtime Mandrake/Mandriva user and supporter since Day One.  Founder of the Fort Hood Area Linux Users Group- HoodLUG.  Active in advocacy efforts for Linux/FOSS. * Kevin E. Ivey (lnxguy) - ik04[at]isot.com - Longtime Mandrake/Mandriva user and supporter since Day One.  Founder of the Fort Hood Area Linux Users Group- HoodLUG.  Active in advocacy efforts for Linux/FOSS.  * Tracy W. Holz - tracy[at]htredneck.com - Live in the Dallas area, Involved in the Open Source/Linux podcast area, I go by the nick - Holzster * Tracy W. Holz - tracy[at]htredneck.com - Live in the Dallas area, Involved in the Open Source/Linux podcast area, I go by the nick - Holzster Marcpare
Categorías: Wiki de Mageia
Feed