FEDORA-2022-f7af7914b2
Packages in this update:
firefox-100.0.2-1.fc36
Update description:
Updated to latest upstream (100.0.2)
firefox-100.0.2-1.fc36
Updated to latest upstream (100.0.2)
firefox-100.0.2-1.fc35
Updated to latest upstream (100.0.2)
firefox-100.0.2-1.fc34
Updated to latest upstream (100.0.2)
Fixed crashes on Wayland during recovery from sleep.
golang-github-opencontainers-runc-1.1.2-1.fc34
Update to 1.1.2. Fixes rhbz#2085287.
Mitigate CVE-2022-29162 / GHSA-f3fp-gc8g-vw66.
golang-github-opencontainers-runc-1.1.2-1.fc35
Update to 1.1.2. Fixes rhbz#2085287.
Mitigate CVE-2022-29162 / GHSA-f3fp-gc8g-vw66.
golang-github-opencontainers-runc-1.1.2-1.fc36
Update to 1.1.2. Fixes rhbz#2085287.
Mitigate CVE-2022-29162 / GHSA-f3fp-gc8g-vw66.
Several flaws have been discovered in HTCondor, a distributed workload
management system, which allow users with only READ access to any daemon to use
a different authentication method than the administrator has specified. If the
administrator has configured the READ or WRITE methods to include CLAIMTOBE,
then it is possible to impersonate another user and submit or remove jobs.
Manfred Paul discovered two security issues in the Mozilla Firefox web
browser, which could result in the execution of arbitrary code.
Felix Wilhelm reported that several buffer handling functions in
libxml2, a library providing support to read, modify and write XML and
HTML files, don’t check for integer overflows, resulting in
out-of-bounds memory writes if specially crafted, multi-gigabyte XML
files are processed. An attacker can take advantage of this flaw for
denial of service or execution of arbitrary code.
mingw-pcre2-10.40-1.fc36
Update to pcre2-10.40, see https://github.com/PCRE2Project/pcre2/blob/pcre2-10.40/NEWS for details.