end_pattern (called from internal_fnmatch) in the GNU C Library (aka glibc or libc6) before 2.22 might allow context-dependent attackers to cause a denial of service (application crash), as demonstrated by use of the fnmatch library function with the **(!() pattern. NOTE: this is not the same as CVE-2015-8984; also, some Linux distributions have fixed CVE-2015-8984 but have not fixed this additional fnmatch issue.
Daily Archives: June 25, 2023
golang-github-schollz-croc-9.6.4-2.fc38 golang-github-schollz-mnemonicode-1.0.1-6.20230519git63fa713.fc38
FEDORA-2023-ac4651c9b2
Packages in this update:
golang-github-schollz-croc-9.6.4-2.fc38
golang-github-schollz-mnemonicode-1.0.1-6.20230519git63fa713.fc38
Update description:
croc 9.6.4
golang-github-schollz-croc-9.6.4-1.fc39
FEDORA-2023-4c1050f439
Packages in this update:
golang-github-schollz-croc-9.6.4-1.fc39
Update description:
Automatic update for golang-github-schollz-croc-9.6.4-1.fc39.
Changelog
* Fri May 19 2023 Mikel Olasagasti Uranga <mikel@olasagasti.info> – 9.6.4-1
– Update to 9.6.4 – Closes rhbz#2208585 rhbz#2171537 rhbz#2163218
* Thu Jan 19 2023 Fedora Release Engineering <releng@fedoraproject.org> – 9.5.2-4
– Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild
* Thu Jul 21 2022 Fedora Release Engineering <releng@fedoraproject.org> – 9.5.2-3
– Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
* Tue Jul 19 2022 Maxwell G <gotmax@e.email> – 9.5.2-2
– Rebuild for
CVE-2022-{1705,32148,30631,30633,28131,30635,30632,30630,1962} in golang
apache-ivy-2.5.1-3.fc38
FEDORA-2023-35f775fd6e
Packages in this update:
apache-ivy-2.5.1-3.fc38
Update description:
Changelog
* Sun Jun 25 2023 Didik Supriadi <didiksupriadi41@fedoraproject.org> – 2.5.1-3
– Build with ivy instead of maven
DSA-5439 bind9 – security update
Several vulnerabilities were discovered in BIND, a DNS server
implementation.