nodejs-16.17.1-1.fc36
FEDORA-2022-3793987b02 Packages in this update: nodejs-16.17.1-1.fc36 Update description: September Security Updates for Node.js Update to Node.js 16.17.0 https://github.com/nodejs/node/blob/main/doc/changelogs/CHANGELOG_V16.md#16.17.0 Fix dependency typo Update to 16.15.0 Update...
php-8.1.11-1.fc36
FEDORA-2022-0b77fbd9e7 Packages in this update: php-8.1.11-1.fc36 Update description: PHP version 8.1.11 (29 Sep 2022) Core: Fixed bug php#81726: phar wrapper: DOS when using quine gzip...
php-8.1.11-1.fc37
FEDORA-2022-580da6af27 Packages in this update: php-8.1.11-1.fc37 Update description: PHP version 8.1.11 (29 Sep 2022) Core: Fixed bug php#81726: phar wrapper: DOS when using quine gzip...
ZDI-22-1302: Rockwell Automation ThinManager ThinServer URI Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Rockwell Automation ThinManager. Authentication is not required to exploit this vulnerability. Read...
dropbear-2019.78-4.el8
FEDORA-EPEL-2022-54e8e9bf3b Packages in this update: dropbear-2019.78-4.el8 Update description: Backport fix for CVE-2020-36254, resolves rhbz#1933067 Read More
dropbear-2017.75-2.el7
FEDORA-EPEL-2022-f0317a13d8 Packages in this update: dropbear-2017.75-2.el7 Update description: Backport fix for CVE-2018-15599, resolves rhbz#1623177 Backport fix for CVE-2020-36254, resolves rhbz#1933067 Read More
DSA-5241 wpewebkit – security update
The following vulnerabilities have been discovered in the WPE WebKit web engine: Read More
DSA-5240 webkit2gtk – security update
The following vulnerabilities have been discovered in the WebKitGTK web engine: Read More
DSA-5243 lighttpd – security update
Several vulnerabilities were discovered in lighttpd, a fast webserver with minimal memory footprint. Read More
DSA-5242 maven-shared-utils – security update
It was discovered that the Commandline class in maven-shared-utils, a collection of various utility classes for the Maven build system, can emit double-quoted strings without...