fix unpreserved file permissions (CVE-2022-32207)
fix Set-Cookie denial of service (CVE-2022-32205)
fix HTTP compression denial of service (CVE-2022-32206)
fix FTP-KRB bad message verification (CVE-2022-32208)
fix unpreserved file permissions (CVE-2022-32207)
fix Set-Cookie denial of service (CVE-2022-32205)
fix HTTP compression denial of service (CVE-2022-32206)
fix FTP-KRB bad message verification (CVE-2022-32208)
* Wed Jun 29 2022 Andreas Gerstmayr <agerstmayr@redhat.com> 8.5.6-1
– update to 8.5.6 tagged upstream community sources, see CHANGELOG
– updated license to AGPLv3
– place commented sample config file in /etc/grafana/grafana.ini
– enable Go modules in build process
– adapt Node.js bundling to yarn v3 and Zero Install feature
* Sun Jun 19 2022 Robert-André Mauchin <zebob.m@gmail.com> – 7.5.15-3
– Rebuilt for CVE-2022-1996, CVE-2022-24675, CVE-2022-28327, CVE-2022-27191,
CVE-2022-29526, CVE-2022-30629