Read Time:3 Second
Agency says it will help firms better manage supply chain risk
bind-9.18.19-1.fc39
bind-dyndb-ldap-11.10-21.fc39
Previously, sending a specially crafted message over the control channel could cause the packet-parsing code to run out of available stack memory, causing named to terminate unexpectedly. This has been fixed. (CVE-2023-3341)
A flaw in the networking code handling DNS-over-TLS queries could cause named to terminate unexpectedly due to an assertion failure under significant DNS-over-TLS query load. This has been fixed. (CVE-2023-4236)
Upstream release notes
golang-github-nats-io-1.30.1-1.fc40
golang-github-protobuf-1.5.3-3.fc40
nats-server-2.10.1-3.fc40
Contains updates to address CVE-2022-{28357,41717}