FEDORA-2023-348a0dbcf3
Packages in this update:
python2.7-2.7.18-35.fc38
Update description:
Security fix for CVE-2022-48565.
python2.7-2.7.18-35.fc38
Security fix for CVE-2022-48565.
python2.7-2.7.18-35.fc40
Automatic update for python2.7-2.7.18-35.fc40.
* Fri Oct 6 2023 Lumír Balhar <lbalhar@redhat.com> – 2.7.18-35
– Fix for CVE-2022-48565
Resolves: rhbz#2240062
* Fri Oct 6 2023 Victor Stinner <vstinner@python.org> – 2.7.18-34
– Fix C99 build error: declare functions explicitly
chromium-118.0.5993.70-1.fc37
Update to 118.0.5993.70. Include following security fixes:
– CVE-2023-5218: Use after free in Site Isolation.
– CVE-2023-5487: Inappropriate implementation in Fullscreen.
– CVE-2023-5484: Inappropriate implementation in Navigation.
– CVE-2023-5475: Inappropriate implementation in DevTools.
– CVE-2023-5483: Inappropriate implementation in Intents.
– CVE-2023-5481: Inappropriate implementation in Downloads.
– CVE-2023-5476: Use after free in Blink History.
– CVE-2023-5474: Heap buffer overflow in PDF.
– CVE-2023-5479: Inappropriate implementation in Extensions API.
– CVE-2023-5485: Inappropriate implementation in Autofill.
– CVE-2023-5478: Inappropriate implementation in Autofill.
– CVE-2023-5477: Inappropriate implementation in Installer.
– CVE-2023-5486: Inappropriate implementation in Input.
– CVE-2023-5473: Use after free in Cast.
chromium-118.0.5993.70-1.el7
Update to 118.0.5993.70. Include following security fixes:
– CVE-2023-5218: Use after free in Site Isolation.
– CVE-2023-5487: Inappropriate implementation in Fullscreen.
– CVE-2023-5484: Inappropriate implementation in Navigation.
– CVE-2023-5475: Inappropriate implementation in DevTools.
– CVE-2023-5483: Inappropriate implementation in Intents.
– CVE-2023-5481: Inappropriate implementation in Downloads.
– CVE-2023-5476: Use after free in Blink History.
– CVE-2023-5474: Heap buffer overflow in PDF.
– CVE-2023-5479: Inappropriate implementation in Extensions API.
– CVE-2023-5485: Inappropriate implementation in Autofill.
– CVE-2023-5478: Inappropriate implementation in Autofill.
– CVE-2023-5477: Inappropriate implementation in Installer.
– CVE-2023-5486: Inappropriate implementation in Input.
– CVE-2023-5473: Use after free in Cast.
update to 117.0.5938.149.
chromium-118.0.5993.70-1.el9
Update to 118.0.5993.70. Include following security fixes:
– CVE-2023-5218: Use after free in Site Isolation.
– CVE-2023-5487: Inappropriate implementation in Fullscreen.
– CVE-2023-5484: Inappropriate implementation in Navigation.
– CVE-2023-5475: Inappropriate implementation in DevTools.
– CVE-2023-5483: Inappropriate implementation in Intents.
– CVE-2023-5481: Inappropriate implementation in Downloads.
– CVE-2023-5476: Use after free in Blink History.
– CVE-2023-5474: Heap buffer overflow in PDF.
– CVE-2023-5479: Inappropriate implementation in Extensions API.
– CVE-2023-5485: Inappropriate implementation in Autofill.
– CVE-2023-5478: Inappropriate implementation in Autofill.
– CVE-2023-5477: Inappropriate implementation in Installer.
– CVE-2023-5486: Inappropriate implementation in Input.
– CVE-2023-5473: Use after free in Cast.
update to 117.0.5938.149.
chromium-118.0.5993.70-1.fc38
Update to 118.0.5993.70. Include following security fixes:
– CVE-2023-5218: Use after free in Site Isolation.
– CVE-2023-5487: Inappropriate implementation in Fullscreen.
– CVE-2023-5484: Inappropriate implementation in Navigation.
– CVE-2023-5475: Inappropriate implementation in DevTools.
– CVE-2023-5483: Inappropriate implementation in Intents.
– CVE-2023-5481: Inappropriate implementation in Downloads.
– CVE-2023-5476: Use after free in Blink History.
– CVE-2023-5474: Heap buffer overflow in PDF.
– CVE-2023-5479: Inappropriate implementation in Extensions API.
– CVE-2023-5485: Inappropriate implementation in Autofill.
– CVE-2023-5478: Inappropriate implementation in Autofill.
– CVE-2023-5477: Inappropriate implementation in Installer.
– CVE-2023-5486: Inappropriate implementation in Input.
– CVE-2023-5473: Use after free in Cast.
update to 117.0.5938.149.
chromium-118.0.5993.70-1.el8
Update to 118.0.5993.70. Include following security fixes:
– CVE-2023-5218: Use after free in Site Isolation.
– CVE-2023-5487: Inappropriate implementation in Fullscreen.
– CVE-2023-5484: Inappropriate implementation in Navigation.
– CVE-2023-5475: Inappropriate implementation in DevTools.
– CVE-2023-5483: Inappropriate implementation in Intents.
– CVE-2023-5481: Inappropriate implementation in Downloads.
– CVE-2023-5476: Use after free in Blink History.
– CVE-2023-5474: Heap buffer overflow in PDF.
– CVE-2023-5479: Inappropriate implementation in Extensions API.
– CVE-2023-5485: Inappropriate implementation in Autofill.
– CVE-2023-5478: Inappropriate implementation in Autofill.
– CVE-2023-5477: Inappropriate implementation in Installer.
– CVE-2023-5486: Inappropriate implementation in Input.
– CVE-2023-5473: Use after free in Cast.
update to 117.0.5938.149.
chromium-118.0.5993.70-1.fc39
Update to 118.0.5993.70. Include following security fixes:
– CVE-2023-5218: Use after free in Site Isolation.
– CVE-2023-5487: Inappropriate implementation in Fullscreen.
– CVE-2023-5484: Inappropriate implementation in Navigation.
– CVE-2023-5475: Inappropriate implementation in DevTools.
– CVE-2023-5483: Inappropriate implementation in Intents.
– CVE-2023-5481: Inappropriate implementation in Downloads.
– CVE-2023-5476: Use after free in Blink History.
– CVE-2023-5474: Heap buffer overflow in PDF.
– CVE-2023-5479: Inappropriate implementation in Extensions API.
– CVE-2023-5485: Inappropriate implementation in Autofill.
– CVE-2023-5478: Inappropriate implementation in Autofill.
– CVE-2023-5477: Inappropriate implementation in Installer.
– CVE-2023-5486: Inappropriate implementation in Input.
– CVE-2023-5473: Use after free in Cast.
curl-8.2.1-3.fc39
fix cookie injection with none file (CVE-2023-38546)
fix SOCKS5 heap buffer overflow (CVE-2023-38545)
libcue-2.3.0-1.el8
This update provides a new release of libcue that includes the fix for a serious security issue that could cause arbitrary code execution, tracked as CVE-2023-43641. See this write-up by Kevin Backhouse for details. Thanks to Kevin for discovering the issue and writing the fix. It also includes another small bug fix.