FEDORA-EPEL-2024-7ac44bd3cc
Packages in this update:
python-aiohttp-3.9.5-2.el9
Update description:
Security fix for CVE-2024-52304
python-aiohttp-3.9.5-2.el9
Security fix for CVE-2024-52304
python-aiohttp-3.9.5-2.fc39
Security fix for CVE-2024-52304
python-aiohttp-3.9.5-2.fc40
Security fix for CVE-2024-52304
python-aiohttp-3.10.5-3.fc41
Security fix for CVE-2024-52304
libsndfile-1.2.2-5.fc41
fix crash in in ogg vorbis (#2322326) (CVE-2024-50612)
Multiple vulnerabilities have been discovered in Palo Alto PAN-OS, the most severe of which could allow for authentication bypass. PAN-OS is the software that runs all Palo Alto Networks next-generation firewalls. Successful exploitation could allow for authentication bypass with administrator privileges. An attacker could then install programs; view, change, or delete data.
libsndfile-1.2.2-5.fc42
Automatic update for libsndfile-1.2.2-5.fc42.
* Mon Nov 18 2024 Michal Hlavinka <mhlavink@redhat.com> – 1.2.2-5
– fix crash in in ogg vorbis (rhbz#2322326) (CVE-2024-50612)
libsndfile-1.2.2-4.fc40
fix crash in in ogg vorbis (rhbz#2322326) (CVE-2024-50612)
It was discovered that Glib incorrectly handled certain trailing
characters. An attacker could possibly use this issue to cause
a crash or other undefined behavior.
It was discovered that curl could overwrite the HSTS expiry of the parent
domain with the subdomain’s HSTS entry. This could lead to curl switching
back to insecure HTTP earlier than otherwise intended, resulting in
information exposure.