It was discovered that WebOb incorrectly handled certain URLs.
An attacker could possibly use this issue to control a redirect or
forward to another URL.
Category Archives: Advisories
wireshark-4.2.7-1.fc40
FEDORA-2024-105eb3026f
Packages in this update:
wireshark-4.2.7-1.fc40
Update description:
New version 4.2.7, fix for CVE-2024-8250
wireshark-4.0.17-1.fc39
FEDORA-2024-68faaf3451
Packages in this update:
wireshark-4.0.17-1.fc39
Update description:
New version 4.0.17, fix for CVE-2024-8250
golang-github-letsencrypt-pebble-2.6.0-1.fc42
FEDORA-2024-67167e57df
Packages in this update:
golang-github-letsencrypt-pebble-2.6.0-1.fc42
Update description:
Automatic update for golang-github-letsencrypt-pebble-2.6.0-1.fc42.
Changelog
* Sat Jul 27 2024 Mikel Olasagasti Uranga <mikel@olasagasti.info> – 2.6.0-1
– Update to 2.6.0 – Closes rhbz#2268889
USN-6982-1: Dovecot vulnerabilities
It was discovered that Dovecot did not not properly have restrictions on
ithe size of address headers. A remote attacker could possibly use this
issue to cause denial of service. (CVE-2024-23184, CVE-2024-23185)
lua-mpack-1.0.12-1.el9
FEDORA-EPEL-2024-2775a88d84
Packages in this update:
lua-mpack-1.0.12-1.el9
Update description:
1.0.12
Fix buffer overrun when giving an offset to Session:receive
1.0.11
Fix failure to encode a list-like table with string keys
https://github.com/libmpack/libmpack-lua/compare/1.0.9…1.0.12
lua-mpack-1.0.12-1.fc40
FEDORA-2024-430678b035
Packages in this update:
lua-mpack-1.0.12-1.fc40
Update description:
Fix buffer overrun when giving an offset to Session:receive
lua-mpack-1.0.12-1.fc41
FEDORA-2024-c83b7dcae0
Packages in this update:
lua-mpack-1.0.12-1.fc41
Update description:
Fix buffer overrun when giving an offset to Session:receive
lua-mpack-1.0.12-1.fc39
FEDORA-2024-a84c59eedc
Packages in this update:
lua-mpack-1.0.12-1.fc39
Update description:
Fix buffer overrun when giving an offset to Session:receive
flatpak-1.15.10-1.fc40
FEDORA-2024-7b8a05a5d1
Packages in this update:
flatpak-1.15.10-1.fc40
Update description:
Update to 1.15.10 (CVE-2024-42472)