FEDORA-2022-fe84314a8e
Packages in this update:
stb-0^20210910gitaf1a5bc-0.2.fc35
Update description:
Security fix for CVE-2022-28041
stb-0^20210910gitaf1a5bc-0.2.fc35
Security fix for CVE-2022-28041
stb-0^20210910gitaf1a5bc-0.2.fc36
Security fix for CVE-2022-28041
stb-0^20210910gitaf1a5bc-0.2.fc37
Automatic update for stb-0^20210910gitaf1a5bc-0.2.fc37.
* Wed Apr 20 2022 Benjamin A. Beasley <code@musicinmybrain.net> 0^20210910gitaf1a5bc-0.2
– Security fix for CVE-2022-28041 (fix RHBZ#2077020, fix RBHZ#2077019)
Multiple vulnerabilities have been discovered in Oracle products, which could allow for remote code execution.
It was discovered that Bash did not properly drop privileges
when the binary had the setuid bit enabled. An attacker could
possibly use this issue to escalate privileges.
libinput-1.20.1-1.fc36
libinput 1.20.1, fixes a format string vulnerability (CVE-2022-1215)
libinput-1.19.4-1.fc35
libinput 1.19.4, fixes CVE-2022-1215 with a format string vulnerability
libinput-1.19.4-1.fc34
libinput 1.19.4, fixes CVE-2022-1215 with a format string vulnerability
Out of caution, and in line with best practice, Tenable has upgraded the bundled components to address the potential impact of these issues. Tenable.sc 5.21.0 updates the following components to address the identified vulnerabilities:
jQuery UI upgraded from 1.12.0 to 1.13.1
MomentJS upgraded from 2.29.1 to 2.29.2