FEDORA-2022-20d374ce8f
Packages in this update:
open-vm-tools-12.0.5-3.fc37
Update description:
Security fix for CVE-2022-31676
open-vm-tools-12.0.5-3.fc37
Security fix for CVE-2022-31676
This vulnerability allows remote attackers to execute arbitrary code on affected installations of ManageEngine OpManager Plus. Authentication is required to exploit this vulnerability.
flatpak-runtime-f36-3620220904192323.1
flatpak-sdk-f36-3620220904192323.1
Updated flatpak runtime and SDK, including latest Fedora 36 security and bug-fix errata.
In addition to regular package updates, this also adds openssl1.1 to the runtime (required by python2.7 in the gimp flatpak).
libapreq2-2.17-1.fc35
Fix CVE-2022-22728.
libapreq2-2.17-1.fc36
Fix CVE-2022-22728.
libapreq2-2.17-1.fc37
Fix CVE-2022-22728.
libapreq2-2.17-1.el8
Fix CVE-2022-22728.
libapreq2-2.17-1.el7
Fix CVE-2022-22728.
libvncclient v0.9.13 was discovered to contain a memory leak via the function rfbClientCleanup().
Modsecurity owasp-modsecurity-crs 3.2.0 (Paranoia level at PL1) has a SQL injection bypass vulnerability. Attackers can use the comment characters and variable assignments in the SQL syntax to bypass Modsecurity WAF protection and implement SQL injection attacks on Web applications.