golang-x-crypto-0.18.0-1.fc40

Read Time:21 Second

FEDORA-2024-0d8d3b8dcc

Packages in this update:

golang-x-crypto-0.18.0-1.fc40

Update description:

Automatic update for golang-x-crypto-0.18.0-1.fc40.

Changelog

* Tue Jan 9 2024 Mark E. Fuller <mark.e.fuller@gmx.de> – 0.18.0-1
– update to v0.18.0, close rhbz#2255095 – CVE-2023-48795 golang-x-crypto:
ssh: Prefix truncation attack on Binary Packet Protocol

Read More

redis-7.2.4-1.fc39

Read Time:35 Second

FEDORA-2024-6ef42a28c9

Packages in this update:

redis-7.2.4-1.fc39

Update description:

Redis 7.2.4 Released Tue 09 Jan 2024 10:45:52 IST

Upgrade urgency SECURITY: See security fixes below.

Security fixes

(CVE-2023-41056) In some cases, Redis may incorrectly handle resizing of memory
buffers which can result in incorrect accounting of buffer sizes and lead to
heap overflow and potential remote code execution.

Bug fixes

Fix crashes of cluster commands clusters with mixed versions of 7.0 and 7.2 (#12805, #12832)
Fix slot ownership not being properly handled when deleting a slot from a node (#12564)
Fix atomicity issues with the RedisModuleEvent_Key module API event (#12733)

Read More