FEDORA-EPEL-2022-3f600666f9
Packages in this update:
python3-mod_wsgi-4.7.1-3.el7
Update description:
Backported fix for CVE-2022-2255
python3-mod_wsgi-4.7.1-3.el7
Backported fix for CVE-2022-2255
python3.6-3.6.15-13.fc38
Automatic update for python3.6-3.6.15-13.fc38.
* Wed Oct 5 2022 Victor Stinner <vstinner@python.org> – 3.6.15-13
– Prevent denial of service (DoS) by very large integers.
Resolves: rhbz#1834423
nodejs-18.10.0-1.fc37
Update to 18.10.0
https://github.com/nodejs/node/blob/main/doc/changelogs/CHANGELOG_V18.md#18.10.0
September Security Updates for Node.js
Update to 18.9.0
https://github.com/nodejs/node/blob/main/doc/changelogs/CHANGELOG_V18.md#18.9.0
It was discovered that DHCP incorrectly handled option reference counting.
A remote attacker could possibly use this issue to cause DHCP servers to
crash, resulting in a denial of service. (CVE-2022-2928)
It was discovered that DHCP incorrectly handled certain memory operations.
A remote attacker could possibly use this issue to cause DHCP clients and
servers to consume resources, leading to a denial of service.
(CVE-2022-2929)
golang-1.18.7-1.fc36
This release includes security fixes to the archive/tar, net/http/httputil, and regexp packages, as well as bug fixes to the compiler, the linker, and the go/types package. See the Go 1.18.7 milestone on the issue tracker for details.
golang-1.19.2-1.fc37
This release includes security fixes to the archive/tar, net/http/httputil, and regexp packages, as well as bug fixes to the compiler, the linker, the runtime, and the go/types package. See the Go 1.19.2 milestone on the issue tracker for details.
luajit-2.0.5-1.20220913.46e62cd.el7
Update to latest snapshot of 2.0 branch
Fixes CVE-2020-15890, resolves rhbz#1860331
Fixes CVE-2020-24372, resolves rhbz#1870308
firefox-stable-3620221005130001.1
flatpak-runtime-f36-3620220917002532.2
flatpak-sdk-f36-3620220917002532.2
firefox 105.0.2 release, together with required flatpak runtime update.
poppler-22.08.0-2.fc37
Security fix for CVE-2022-38784
poppler-21.08.0-3.fc35
Security fix for CVE-2022-38784