Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Fedora 28 Buildbot Security Update: CVE-2019-7313 Critical Issue

fedora
Calendar Grey February 11, 2019
Dist Fedora Esm H88
Ubuntu 20.04 upgrades to Jenkins 2.263.1, resolving CVE-2020-12345 for enhanced security and streamlining workflows.
Update to 1.8.1 to fix CVE-2019-7313

Summary

The BuildBot is a system to automate the compile/test cycle required by

most software projects to validate code changes. By automatically

rebuilding and testing the tree each time something has changed, build

problems are pinpointed quickly, before other developers are

inconvenienced by the failure.

Update to 1.8.1 to fix CVE-2019-7313

* Sat Feb 9 2019 Neal Gompa - 1.8.1-1

- Update to 1.8.1

* Thu Jan 31 2019 Fedora Release Engineering - 1.7.0-2

- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild

* Sat Dec 22 2018 Neal Gompa - 1.7.0-1

- Update to 1.7.0

* Tue Dec 11 2018 Neal Gompa - 1.6.0-2

- Add www subpackage with frontend components

* Wed Dec 5 2018 Igor Gnatenko - 1.6.0-1

- Update to 1.6.0

* Fri Jul 20 2018 Igor Gnatenko - 1.3.0-1

- Update to 1.3.0

* Thu Jul 12 2018 Fedora Release Engineering - 1.1.0-2

- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild

[ 1 ] Bug #1672293 - CVE-2019-7313 buildbot: Improper neutralization of CRLF sequences

https://bugzilla.redhat.com/show_bug.cgi?id=1672293

su -c 'dnf upgrade --advisory FEDORA-2019-7eb8c71fe8' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 28
Version: 1.8.1
Release: 1.fc28
URL:
Summary: Build/test automation system

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here