Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-FU-2022:0868-1

Опубликовано: 16 мар. 2022
Источник: suse-cvrf

Описание

Feature update for tcl and tk

This feature update for tcl and tk fixes the following issues:

Update tcl and tk to version 8.6.12 (jsc#SLE-21016, jsc#SLE-23284):

  • Move tcl.macros to /usr/lib/rpm/macros.d (bsc#1185662)
  • Use FAT LTO objects in order to provide proper static library (bsc#1138797)
  • Fix a bug in itcl that was affecting iwidgets (bsc#903017)
  • Add [combobox current] support 'end' index
  • Add fixes in [text] bindings
  • Add missing 'deferred clear code' support to GIF photo images
  • Add new virtual event <>
  • Add new keycodes: CodeInput, SingleCandidate, MultipleCandidate, PreviousCandidate
  • Add new support for POSIX error: EILSEQ
  • Add new command [tcl::unsupported::corotype]
  • Add new command [tcl::unsupported::timerate] for performance testing
  • Add new option -state to [ttk::scale]
  • Add portable keycodes: OE, oe, Ydiaeresis
  • Add support for backrefs in [array names -regexp]
  • Add support for Unicode 14
  • Disfavor Master/Slave terminology
  • Enhance [oo::object] to acquire or lose a class identity dynamically
  • Fix canvas rotated text overlap detection
  • Fix canvas closed polylines yo fully honor -joinstyle
  • Fix display of Long non-wrapped lines in text
  • Fix display treeview focus ring when -selectmode none
  • Fix focus events not to break entry validation
  • Fix [package prefer stable] failing case
  • Fix auto_path initialization by Safe Base interps
  • Fix bad interaction between grab and mouse pointer warp
  • Fix borderwidth calculations on menu items
  • Fix cascade tearoff menu redraw artifacts
  • Fix coords rounding when drawing canvas items
  • Fix corrupt result from [$c postscript] with -file or -channel
  • Fix errno management in socket full close
  • Fix failure when a [proc] argument name is computed, not literal
  • Fix focus on unmapped windows
  • Fix handling of duplicates in spinbox -values list
  • Fix incomplete read of multi-image GIF
  • Fix initialization order of static package in wish
  • Fix issue when trying to display angled text without Xft
  • Fix issue with font initialization when no font is installed
  • Fix problems with Noto Color Emoji font
  • Fix race conditions in [file delete] and [file mkdir]
  • Fix Std channel initialization for multi-thread operations
  • Fix tearoff menu redraw artifacts
  • Fix up arrow key in [text] to correctly move cursor to index 1.0
  • Fix various cursor issues
  • Fix various encoding issues
  • Fix various fontchooser issues
  • Fix various issues causing crashes and hang in
  • Fix various memory issues
  • Fix various scrolling bugs and add improvements
  • Fix 32/64-bit confusion of FS DIR operations reported for AIX
  • Improve appearance of text selection in [*entry] widgets
  • Improve checkbutton handling of -selectcolor
  • Improve handling of resolution changes
  • Improve multi-thread safety when Xft is in use
  • Improve ttk high-contrast-mode support
  • Improve emoji support
  • Improve legacy support for [tk_setPalette]
  • Make combobox -postoffset option work with default style
  • Make spinbox use proper names in query of option database
  • Menu flaws when empty menubar clicked
  • New index argument in [$menubutton post x y index]
  • Preserve canvas tag list order during add/delete
  • Prevent cross-manager loops of geom management
  • Rewrite of zlib inflation for multi-stream and completeness
  • Run fileevents in proper thread after [thread::attach $channel]
  • Stop [unload] corruption of list of loaded packages
  • Stop app switching exposing withdrawn windows as zombies
  • Tk now denied access to PRIMARY selection from safe interps
  • TkpDrawAngledCharsInContext leaked a CGColor
  • Try to restore Tcl's [update] command when Tk is unloaded
  • Changed [info * methods] to include mixins
  • [package require] is now NR-enabled

The following fixes might show some potential incompatibilities with existing software:

  • Revised [binary (en|de)code base64] for RFC compliance and roundtrip
  • Tcl_DStringAppendElement # quoting precision, dstring-2.13, dstring-3.10
  • Extended [clock scan] ISO format and time zone support
  • Allow for select/copy from disabled text widget on all platforms
  • Revised case of [info loaded] module names
  • [info hostname] reports DNS name, not NetBIOS name
  • Force -eofchar \032 when evaluating library scripts
  • Revised error messages: 'too few' => 'not enough'
  • Performed rewrite of Tk event loop to prevent ring overflow
  • Refactored all MouseWheel bindings
  • Revised precision of ::scale widget tick mark values
  • Prevent transient window cycles (crashed on Aqua)
  • Builds no longer use -lieee
  • Quoting of command line arguments by [exec] on Windows revised. Prior quoting rules left holes where some values would not pass through, but could trigger substitutions or program execution. See https://core.tcl-lang.org/tcl/info/21b0629c81
  • [lreplace] accepts all out-of-range index values

Список пакетов

Container suse/sles/15.4/libguestfs-tools:0.49.0
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Container suse/sles/15.4/virt-launcher:0.49.0
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Container suse/sles/15.5/libguestfs-tools:0.58.0
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Container suse/sles/15.5/virt-launcher:0.58.0
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP3-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-BYOS-EC2-HVM
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-EC2-HVM
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-HPC-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-HPC-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-HPC-BYOS-EC2-HVM
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-HPC-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-EC2-HVM
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-Manager-4-2-Proxy-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-Azure
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-EC2-HVM
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP3-Manager-4-2-Server-BYOS-GCE
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP3-SAP-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-SAP-Azure-LI-BYOS-Production
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-SAP-Azure-VLI-BYOS-Production
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-SAP-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-SAP-BYOS-EC2-HVM
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-SAP-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-SAP-EC2-HVM
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-SAP-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-SAPCAL-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-SAPCAL-EC2-HVM
tcl-8.6.12-150300.14.3.1
Image SLES15-SP3-SAPCAL-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-Azure-Basic
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-Azure-Standard
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-HPC
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-HPC-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-HPC-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-HPC-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-HPC-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-HPC-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-HPC-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-HPC-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-Hardened-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-Hardened-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-Hardened-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-Hardened-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-Manager-Proxy-4-3-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-Manager-Proxy-4-3-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-Manager-Proxy-4-3-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-Manager-Proxy-4-3-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-Manager-Server-4-3
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP4-Manager-Server-4-3-Azure-llc
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP4-Manager-Server-4-3-Azure-ltd
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP4-Manager-Server-4-3-BYOS
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP4-Manager-Server-4-3-BYOS-Azure
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP4-Manager-Server-4-3-BYOS-EC2
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP4-Manager-Server-4-3-BYOS-GCE
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP4-Manager-Server-4-3-EC2-llc
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP4-Manager-Server-4-3-EC2-ltd
tcl-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
Image SLES15-SP4-SAP
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Azure-LI-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Azure-LI-BYOS-Production
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Azure-VLI-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Azure-VLI-BYOS-Production
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Hardened
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Hardened-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Hardened-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Hardened-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Hardened-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Hardened-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Hardened-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAP-Hardened-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAPCAL
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAPCAL-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAPCAL-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP4-SAPCAL-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-Azure-3P
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-Azure-Basic
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-Azure-Standard
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-HPC-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-HPC-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-HPC-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-HPC-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-HPC-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-HPC-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-Hardened-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-Hardened-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-Hardened-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Azure-3P
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Azure-LI-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Azure-LI-BYOS-Production
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Azure-VLI-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Azure-VLI-BYOS-Production
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Hardened-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Hardened-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Hardened-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Hardened-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Hardened-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAP-Hardened-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAPCAL-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAPCAL-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP5-SAPCAL-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-Azure-3P
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-Azure-Basic
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-Azure-Standard
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-HPC
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-HPC-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-HPC-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-HPC-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-HPC-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-HPC-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-HPC-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-HPC-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-Hardened-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-Hardened-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-Hardened-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-Hardened-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Azure-3P
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Azure-LI-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Azure-LI-BYOS-Production
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Azure-VLI-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Azure-VLI-BYOS-Production
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Hardened
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Hardened-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Hardened-BYOS
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Hardened-BYOS-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Hardened-BYOS-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Hardened-BYOS-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Hardened-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAP-Hardened-GCE
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAPCAL
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAPCAL-Azure
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAPCAL-EC2
tcl-8.6.12-150300.14.3.1
Image SLES15-SP6-SAPCAL-GCE
tcl-8.6.12-150300.14.3.1
SUSE Linux Enterprise Module for Basesystem 15 SP3
tcl-8.6.12-150300.14.3.1
tcl-32bit-8.6.12-150300.14.3.1
tcl-devel-8.6.12-150300.14.3.1
tk-8.6.12-150300.10.3.1
tk-32bit-8.6.12-150300.10.3.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP3
tk-devel-8.6.12-150300.10.3.1

Описание

** DISPUTED ** In Tcl 8.6.11, a format string vulnerability in nmakehlp.c might allow code execution via a crafted file. NOTE: multiple third parties dispute the significance of this finding.


Затронутые продукты
Container suse/sles/15.4/libguestfs-tools:0.49.0:tcl-8.6.12-150300.14.3.1
Container suse/sles/15.4/libguestfs-tools:0.49.0:tk-8.6.12-150300.10.3.1
Container suse/sles/15.4/virt-launcher:0.49.0:tcl-8.6.12-150300.14.3.1
Container suse/sles/15.4/virt-launcher:0.49.0:tk-8.6.12-150300.10.3.1

Ссылки
Уязвимость SUSE-FU-2022:0868-1