FEDORA-2022-bf58612696
Packages in this update:
ecdsautils-0.4.1-1.fc35
Update description:
Fixes CVE-2022-24884 (Improper Verification of ECDSA Signatures). In previous versions ecdsautils would erroneously accept all-zero signatures as valid.
More information can be found here: https://github.com/freifunk-gluon/ecdsautils/security/advisories/GHSA-qhcg-9ffp-78pw
FEDORA-EPEL-2022-66c028a837
Packages in this update:
slurm-20.11.9-1.el7
Update description:
Update to 20.11.9 to fix CVE-2022-29500 and CVE-2022-29501.
https://www.schedmd.com/news.php?id=260#OPT_260
FEDORA-EPEL-2022-670a0795bf
Packages in this update:
slurm-20.11.9-1.el8
Update description:
Update to 20.11.9 to fix CVE-2022-29500 and CVE-2022-29501.
https://www.schedmd.com/news.php?id=260#OPT_260
FEDORA-2022-509887bd99
Packages in this update:
supertux-0.6.3-4.fc36
Update description:
Fix CVE-2022-30292
FEDORA-2022-916bb58e38
Packages in this update:
slurm-21.08.8-1.fc36
Update description:
Update to 21.08.8 to fix CVE-2022-29500, CVE-2022-29501, and CVE-2022-29502.
https://www.schedmd.com/news.php?id=260#OPT_260
FEDORA-2022-eeeff46680
Packages in this update:
slurm-21.08.8-1.fc34
Update description:
Update to 21.08.8 to fix CVE-2022-29500, CVE-2022-29501, and CVE-2022-29502.
https://www.schedmd.com/news.php?id=260#OPT_260
FEDORA-2022-6d9d1862ee
Packages in this update:
slurm-21.08.8-1.fc35
Update description:
Update to 21.08.8 to fix CVE-2022-29500, CVE-2022-29501, and CVE-2022-29502.
https://www.schedmd.com/news.php?id=260#OPT_260
It was discovered that jbig2dec incorrectly handled memory when parsing
invalid files. An attacker could use this issue to cause jbig2dec to crash,
leading to a denial of service. (CVE-2017-9216)
It was discovered that jbig2dec incorrectly handled memory when processing
untrusted input. An attacker could use this issue to cause a denial of service,
or possibly execute arbitrary code. (CVE-2020-12268)
FEDORA-2022-417587a4b9
Packages in this update:
slurm-21.08.8-1.fc37
Update description:
Automatic update for slurm-21.08.8-1.fc37.
Changelog
* Thu May 5 2022 Carl George <carl@george.com puter> – 21.08.8-1
– Update to 21.08.8, resolves: rhbz#2082276
– Fix CVE-2022-29500, resolves: rhbz#2082286
– Fix CVE-2022-29501, resolves: rhbz#2082289
– Fix CVE-2022-29502, resolves: rhbz#2082293
Pieter Agten discovered that Rsyslog incorrectly handled certain requests.
An attacker could possibly use this issue to cause a crash.
Posts navigation
News, Advisories and much more