Category Archives: Advisories

koji-1.35.1-1.fc39

Read Time:8 Second

FEDORA-2024-ef4911442d

Packages in this update:

koji-1.35.1-1.fc39

Update description:

Update to 1.35.1. Includes fix for CVE-2024-9427

Read More

koji-1.35.1-1.fc42

Read Time:16 Second

FEDORA-2024-e253f0b07c

Packages in this update:

koji-1.35.1-1.fc42

Update description:

Automatic update for koji-1.35.1-1.fc42.

Changelog

* Tue Oct 8 2024 Kevin Fenzi <kevin@scrye.com> – 1.35.1-1
– Update to 1.35.1. Fixes rhbz#2316304
– Fixes CVE-2024-9427

Read More

USN-7014-2: nginx vulnerability

Read Time:21 Second

USN-7014-1 fixed a vulnerability in nginx. This update provides the
corresponding updates for Ubuntu 16.04 LTS and Ubuntu 18.04 LTS.

Original advisory details:

It was discovered that the nginx ngx_http_mp4 module incorrectly handled
certain malformed mp4 files. In environments where the mp4 directive is in
use, a remote attacker could possibly use this issue to cause nginx to
crash, resulting in a denial of service.

Read More

buildah-1.37.4-1.fc41 podman-5.2.4-1.fc41

Read Time:28 Second

FEDORA-2024-2e8c63e8bf

Packages in this update:

buildah-1.37.4-1.fc41
podman-5.2.4-1.fc41

Update description:

Automatic update for buildah-1.37.4-1.fc41, podman-5.2.4-1.fc41.

Changelog for buildah

* Mon Oct 07 2024 Packit <hello@packit.dev> – 2:1.37.4-1
– Update to 1.37.4 upstream release

Changelog for podman

* Mon Oct 07 2024 Packit <hello@packit.dev> – 5:5.2.4-1
– Update to 5.2.4 upstream release

Fixes CVE-2024-9341 and CVE-2024-9407.

Read More

ZDI-CAN-25312: Ivanti

Read Time:21 Second

A CVSS score 7.8 AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H severity vulnerability discovered by ’06fe5fd2bc53027c4a3b7e395af0b850e7b8a044′ was reported to the affected vendor on: 2024-10-08, 0 days ago. The vendor is given until 2025-02-05 to publish a fix or workaround. Once the vendor has created and tested a patch we will coordinate the release of a public advisory.

Read More