Category Archives: Advisories

cockpit-320-1.fc39

Read Time:18 Second

FEDORA-2024-9eb3674b7c

Packages in this update:

cockpit-320-1.fc39

Update description:

Automatic update for cockpit-320-1.fc39.

Changelog for cockpit

* Wed Jul 03 2024 Packit <hello@packit.dev> – 320-1
– pam-ssh-add: Fix insecure killing of session ssh-agent [CVE-2024-6126]
– sosreport: Read report directory from sos config (fix page on Debian/Ubuntu)

Read More

USN-6862-1: Firefox vulnerabilities

Read Time:57 Second

Multiple security issues were discovered in Firefox. If a user were
tricked into opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, obtain sensitive
information across domains, or execute arbitrary code. (CVE-2024-5689,
CVE-2024-5690, CVE-2024-5691, CVE-2024-5693, CVE-2024-5697, CVE-2024-5698,
CVE-2024-5699, CVE-2024-5700, CVE-2024-5701)

Lukas Bernhard discovered that Firefox did not properly manage memory
during garbage collection. An attacker could potentially exploit this
issue to cause a denial of service, or execute arbitrary code.
(CVE-2024-5688)

Lukas Bernhard discovered that Firefox did not properly manage memory in
the JavaScript engine. An attacker could potentially exploit this issue to
obtain sensitive information. (CVE-2024-5694)

Irvan Kurniawan discovered that Firefox did not properly handle certain
allocations in the probabilistic heap checker. An attacker could
potentially exploit this issue to cause a denial of service.
(CVE-2024-5695)

Irvan Kurniawan discovered that Firefox did not properly handle certain
text fragments in input tags. An attacker could potentially exploit this
issue to cause a denial of service. (CVE-2024-5696)

Read More

firmitas-0.1.3-1.fc40

Read Time:20 Second

FEDORA-2024-71ef04b872

Packages in this update:

firmitas-0.1.3-1.fc40

Update description:

Cryptography v42 is the new thing.

Please follow the steps provided here https://github.com/fedora-infra/firmitas/blob/main/README.md for testing.

References

https://github.com/fedora-infra/firmitas/security/dependabot/1
https://github.com/fedora-infra/firmitas/security/dependabot/2
https://github.com/fedora-infra/firmitas/security/dependabot/3

Read More

firmitas-0.1.3-1.fc39

Read Time:20 Second

FEDORA-2024-139cdfb1fc

Packages in this update:

firmitas-0.1.3-1.fc39

Update description:

Cryptography v42 is the new thing.

Please follow the steps provided here https://github.com/fedora-infra/firmitas/blob/main/README.md for testing.

References

https://github.com/fedora-infra/firmitas/security/dependabot/1
https://github.com/fedora-infra/firmitas/security/dependabot/2
https://github.com/fedora-infra/firmitas/security/dependabot/3

Read More

firmitas-0.1.3-1.el9

Read Time:21 Second

FEDORA-EPEL-2024-775b3dac95

Packages in this update:

firmitas-0.1.3-1.el9

Update description:

Cryptography v42 is the new thing.

Please follow the steps provided here https://github.com/fedora-infra/firmitas/blob/main/README.md for testing.

References

https://github.com/fedora-infra/firmitas/security/dependabot/1
https://github.com/fedora-infra/firmitas/security/dependabot/2
https://github.com/fedora-infra/firmitas/security/dependabot/3

Read More