FEDORA-2022-e8f5a99465
Packages in this update:
pdns-4.6.1-1.fc36
Update description:
Update to 4.6.1
Release notes: https://doc.powerdns.com/recursor/changelog/4.6.html#change-4.6.2
pdns-4.6.1-1.fc36
Update to 4.6.1
Release notes: https://doc.powerdns.com/recursor/changelog/4.6.html#change-4.6.2
pdns-4.6.1-1.fc35
Update to 4.6.1
Release notes: https://doc.powerdns.com/recursor/changelog/4.6.html#change-4.6.2
pdns-4.6.1-1.fc34
Update to 4.6.1
Release notes: https://doc.powerdns.com/recursor/changelog/4.6.html#change-4.6.2
Multiple vulnerabilities have been discovered in the Xen hypervisor, which
could result in privilege escalation, denial of service or information leaks.
Multiple security issues were discovered in Thunderbird, which could
result in denial of service or the execution of arbitrary code.
kernel-5.16.19-200.fc35
The 5.16.19 stable kernel update contains a number of important fixes across the tree.
kernel-5.16.19-100.fc34
The 5.16.19 stable kernel update contains a number of important fixes across the tree.
Scientists are now debating whether octopuses, squid, and crabs have emotions. Short answer: we don’t know, but can’t rule it out.
There may be a point when humans can no longer assume that crayfish, shrimp, and other invertebrates don’t feel pain and other emotions.
“If they can no longer be considered immune to felt pain, invertebrate experiences will need to become part of our species’ moral landscape,” she says. “But pain is just one morally relevant emotion. Invertebrates such as octopuses may experience other emotions such as curiosity in exploration, affection for individuals, or excitement in anticipation of a future reward.”
As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered.
Read my blog posting guidelines here.
grafana-7.5.15-1.fc34
update to 7.5.15 tagged upstream community sources, see CHANGELOG
resolve CVE-2022-21673 grafana: Forward OAuth Identity Token can allow users to access some data sources
resolve CVE-2022-21702 grafana: XSS vulnerability in data source handling
resolve CVE-2022-21703 grafana: CSRF vulnerability can lead to privilege escalation
resolve CVE-2022-21713 grafana: IDOR vulnerability can lead to information disclosure
resolve CVE-2021-23648 sanitize-url: XSS
resolve CVE-2022-21698 prometheus/client_golang: Denial of service using InstrumentHandlerCounter
declare Node.js dependencies of subpackages
make vendor and webpack tarballs reproducible
grafana-7.5.15-1.fc35
update to 7.5.15 tagged upstream community sources, see CHANGELOG
resolve CVE-2022-21673 grafana: Forward OAuth Identity Token can allow users to access some data sources
resolve CVE-2022-21702 grafana: XSS vulnerability in data source handling
resolve CVE-2022-21703 grafana: CSRF vulnerability can lead to privilege escalation
resolve CVE-2022-21713 grafana: IDOR vulnerability can lead to information disclosure
resolve CVE-2021-23648 sanitize-url: XSS
resolve CVE-2022-21698 prometheus/client_golang: Denial of service using InstrumentHandlerCounter
declare Node.js dependencies of subpackages
make vendor and webpack tarballs reproducible