FEDORA-2023-37ae269843
Packages in this update:
clevis-pin-tpm2-0.5.2-5.fc37
greetd-0.9.0-4.fc37
keyring-ima-signer-0.1.0-9.fc37
libkrun-1.5.0-2.fc37
mirrorlist-server-3.0.6-6.fc37
nispor-1.2.10-4.fc37
nmstate-2.2.10-5.fc37
rust-afterburn-5.4.0-3.fc37
rust-below-0.6.3-4.fc37
rust-bodhi-cli-2.1.0-2.fc37
rust-cargo-c-0.9.12-4.fc37
rust-coreos-installer-0.17.0-2.fc37
rust-fedora-update-feedback-2.1.2-2.fc37
rust-git-delta-0.13.0-5.fc37
rust-gst-plugin-reqwest-0.10.4-2.fc37
rust-pore-0.1.8-3.fc37
rust-rpm-sequoia-1.4.0-2.fc37
rust-sequoia-octopus-librnp-1.4.1-8.fc37
rust-sequoia-policy-config-0.6.0-3.fc37
rust-sequoia-sq-0.26.0-7.fc37
rust-sevctl-0.3.2-4.fc37
rust-tealdeer-1.6.1-2.fc37
rust-ybaas-0.0.10-7.fc37
Update description:
Recent updates for the tokio, h2, and openssl crates addressed some (potential or confirmed) security or soundness issues:
tokio: RUSTSEC-2023-0005
h2: RUSTSEC-2023-0034 / CVE-2023-26964
openssl: RUSTSEC-2023-0022, RUSTSEC-2023-0023, RUSTSEC-2023-0024
This update contains rebuilds of all affected applications against the latest versions of these crates, which have addressed all linked issues.
More Stories
icecat-flatpak-115.18.0-2
FEDORA-FLATPAK-2024-5ad8ccec67 Packages in this update: icecat-flatpak-115.18.0-2 Update description: Updated patchset for CVE-2024-11693 CVE-2024-11697 CVE-2024-11692 Read More
mupdf-1.24.6-2.fc40
FEDORA-2024-bfc5e25437 Packages in this update: mupdf-1.24.6-2.fc40 Update description: fix CVE-2024-46657 (rhbz#2331626) Read More
mupdf-1.21.1-6.el9
FEDORA-EPEL-2024-94a20f339a Packages in this update: mupdf-1.21.1-6.el9 Update description: fix CVE-2024-46657 (rhbz#2331625) Read More
DSA-5837-1 fastnetmon – security update
Two security issues have been discovered in FastNetMon, a fast DDoS analyzer: Malformed Netflow/sFlow traffic could result in denial of...
DSA-5836-1 xen – security update
Multiple vulnerabilities have been discovered in the Xen hypervisor, which could result in privilege escalation, denial of service or information...
DSA-5835-1 webkit2gtk – security update
The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2024-54479 Seunghyun Lee discovered that processing maliciously crafted web...