golang-1.21.6-1.fc39

Read Time:14 Second

FEDORA-2024-193547def8

Packages in this update:

golang-1.21.6-1.fc39

Update description:

Automatic update for golang-1.21.6-1.fc39.

Changelog for golang

* Mon Jan 15 2024 Packit <hello@packit.dev> – 1.21.6-1
– [packit] 1.21.6 upstream release

Read More

USN-6585-1: libssh2 vulnerability

Read Time:18 Second

Fabian Bäumer, Marcus Brinkmann, Jörg Schwenk discovered that the SSH
protocol was vulnerable to a prefix truncation attack. If a remote attacker
was able to intercept SSH communications, extension negotiation messages
could be truncated, possibly leading to certain algorithms and features
being downgraded. This issue is known as the Terrapin attack. This update
adds protocol extensions to mitigate this issue.

Read More

USN-6584-1: Libspf2 vulnerabilities

Read Time:33 Second

Philipp Jeitner and Haya Shulman discovered that Libspf2 incorrectly handled
certain inputs. If a user or an automated system were tricked into opening a
specially crafted input file, a remote attacker could possibly use this issue
to cause a denial of service or execute arbitrary code. (CVE-2021-20314)

It was discovered that Libspf2 incorrectly handled certain inputs. If a user or
an automated system were tricked into opening a specially crafted input file, a
remote attacker could possibly use this issue to cause a denial of service or
execute arbitrary code. This issue only affected Ubuntu 18.04 LTS and
Ubuntu 20.04 LTS. (CVE-2021-33912, CVE-2021-33913)

Read More