FEDORA-2024-d7e2d109e2
Packages in this update:
mingw-python3-3.11.10-2.fc40
Update description:
Backport fix for CVE-2024-9287
Update to python-3.11.0.
Notice: Function _load_textdomain_just_in_time was called incorrectly. Translation loading for the wordpress-seo
domain was triggered too early. This is usually an indicator for some code in the plugin or theme running too early. Translations should be loaded at the init
action or later. Please see Debugging in WordPress for more information. (This message was added in version 6.7.0.) in /var/www/html/wp-includes/functions.php on line 6114
mingw-python3-3.11.10-2.fc40
Backport fix for CVE-2024-9287
Update to python-3.11.0.
The US Federal Trade Commission is celebrating a halving of unwanted telemarketing and scam calls since 2021
mingw-libsoup-2.74.3-8.fc40
Backport fixes for CVE-2024-52530 and CVE-2024-52532.
mingw-libsoup-2.74.3-8.fc41
Backport fixes for CVE-2024-52530 and CVE-2024-52532.
mingw-glib2-2.82.2-1.fc40
Update to 2.82.2, fixes CVE-2024-52533.
mingw-glib2-2.82.2-1.fc41
Update to 2.82.2, fixes CVE-2024-52533.
The UK’s National Cyber Security Centre is urging shoppers to stay safe this Christmas after revealing they lost £11.5m to fraudsters in 2023
This vulnerability allows remote attackers to bypass authentication on affected installations of Progress Software WhatsUp Gold. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 9.8. The following CVEs are assigned: CVE-2024-7763.
Fabian Bäumer, Marcus Brinkmann, and Jörg Schwenk discovered that AsyncSSH
did not properly handle the extension info message. An attacker able to
intercept communications could possibly use this issue to downgrade
the algorithm used for client authentication. (CVE-2023-46445)
Fabian Bäumer, Marcus Brinkmann, and Jörg Schwenk discovered that AsyncSSH
did not properly handle the user authentication request message. An
attacker could possibly use this issue to control the remote end of an SSH
client session via packet injection/removal and shell emulation.
(CVE-2023-46446)
cobbler3.2-3.2.3-2.el8
Update to 3.2.3 – CVE-2024-47533