From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail02.haj.ipfire.org (localhost [IPv6:::1]) by mail02.haj.ipfire.org (Postfix) with ESMTP id 4htbdx2P5pz30Rv for ; Mon, 28 Sep 2026 09:31:01 +0000 (UTC) Received: from mail01.ipfire.org (mail01.haj.ipfire.org [172.28.1.202]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange x25519) (Client CN "mail01.haj.ipfire.org", Issuer "YR2" (not verified)) by mail02.haj.ipfire.org (Postfix) with ESMTPS id 4htbdn5ZFgz30LN for ; Mon, 28 Sep 2026 09:30:53 +0000 (UTC) Received: from [127.0.0.1] (localhost [127.0.0.1]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange x25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (No client certificate requested) by mail01.ipfire.org (Postfix) with ESMTPSA id 4htbdm5HDSz5ft; Mon, 28 Sep 2026 09:30:52 +0000 (UTC) DKIM-Signature: v=1; a=ed25519-sha256; c=relaxed/relaxed; d=ipfire.org; s=202003ed25519; t=1790587852; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=z0e/4IjOHATPcKyDMiu3kKPtzzebZvGBpa0RjG0UaxQ=; b=bvC4IptH+arUytiQIAn9sHI70S1qGNp8lYqlOnfIt4j6ZipPpQ1H/OmYvRwI9JA3bkdloX ZZGQeGBm0LCs4TCA== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ipfire.org; s=202003rsa; t=1790587852; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=z0e/4IjOHATPcKyDMiu3kKPtzzebZvGBpa0RjG0UaxQ=; b=rzPPYYWwN77kUyTGRb8XPUKzwcbzLzolMjvEClS5yjVLuTW8rZzimIlos3b9CvkD6TddBW /KuF1Rts51I4fL4gwvzXVZMwdMpBdtbeO6JXhNXIKvQ/5O83SAt8UEPa5+3GWPBZMJdTH/ WeSeU/EKPw1/SEh2B1l/bSSa+n2m+RD4axwUnOtSznh8k/T8+29XWaXHArAve/DFyB4atG edP+6NJKRk2N0B7YRJpaSrmgkdVfXSBk9u93wjQKcJjL/10b10MeepgVjYve+zEmGm54Ij gYKP/Zrw6exF0MWGFdPHAxbl8nNgGuoBh8k/Kd4glq8t0MvgRagpTEX5nyyNDg== From: Adolf Belka To: development@lists.ipfire.org Cc: Adolf Belka Subject: [PATCH] util-linux: Update to version 2.42.4 Date: Mon, 28 Sep 2026 11:30:46 +0200 Message-ID: <20260928093047.47304-6-adolf.belka@ipfire.org> In-Reply-To: <20260928093047.47304-1-adolf.belka@ipfire.org> References: <20260928093047.47304-1-adolf.belka@ipfire.org> Precedence: list List-Id: List-Subscribe: , List-Unsubscribe: , List-Post: List-Help: Sender: Mail-Followup-To: MIME-Version: 1.0 Content-Transfer-Encoding: 8bit - Update from version 2.42.3 to 2.42.4 - No change in rootfile - 1 CVE fix plus improvements to previous security fixes - Changelog 2.42.4 This release enhances previously released security fixes and adds protection against symlink attacks in the legacy mount(2)-based code in libmount. libblkid: - minix don't detect erofs images as minix (by Clayton Craft) lib/fileutils: - add safe FD-path and no-symlink helpers (by Karel Zak) - fix RESOLVE_NO_SYMLINKS fallback value (by Karel Zak) - fix unused parameter warnings without SYS_openat2 (by Karel Zak) libmount: - add mnt_fs_fetch_ids() and populate uniq_id for utab (by Karel Zak) - use fchmodat2() for X-mount.mode= (by Karel Zak) - restore the original namespace on error paths (by Karel Zak) - secure the idmapped mount replacement (by Karel Zak) - pin the legacy mount target and bind/move source (by Karel Zak) - harden restricted mount targets and post-mount handling (by Karel Zak) - fix X-mount.idmap ID names in code and man page (by Karel Zak) - use USE_LIBMOUNT_MOUNTFD_SUPPORT for idmap hook (by Karel Zak) - add missing fileutils.h include to hook_idmap.c (by Karel Zak) mount: - fix grammar and typo in X-mount.idmap documentation (by Karel Zak) nsenter: - close cgroup.procs fd after join to prevent authority leak [CVE-2026-78408] (by Karel Zak) po: - merge changes (by Karel Zak) - update sv.po (from translationproject.org) (by Daniel Nylander) - update nl.po (from translationproject.org) (by Benno Schulenberg) po-man: - merge changes (by Karel Zak) - update sv.po (from translationproject.org) (by Daniel Nylander) tools: - add non-newmount.conf config-gen profile (by Karel Zak) Signed-off-by: Adolf Belka --- lfs/util-linux | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/lfs/util-linux b/lfs/util-linux index 6b1ac6f67..4850ec864 100644 --- a/lfs/util-linux +++ b/lfs/util-linux @@ -24,7 +24,7 @@ include Config -VER = 2.42.3 +VER = 2.42.4 # https://www.kernel.org/pub/linux/utils/util-linux/ THISAPP = util-linux-$(VER) @@ -43,7 +43,7 @@ objects = $(DL_FILE) $(DL_FILE) = $(DL_FROM)/$(DL_FILE) -$(DL_FILE)_BLAKE2 = fcb9fb7f522cabebb4813c78d56115d4516371922f9a4c8e2036d3622ed427d6c0897bca7a60b2176297ff08b6a4f28b85d09509462d3aac4cd73b863402eed6 +$(DL_FILE)_BLAKE2 = 24bbba43224f83eb2d72db21153ab1567b9f520107ee7bf962975893cd9c3ad3280c522a1574ed4d27ed257e89bf2c7197369e179187331a44ec916ce587e6a3 install : $(TARGET) -- 2.55.0