--------------------------------------------------------------------------------Fedora Update Notification
FEDORA-2018-6aada550ca
2018-12-07 02:36:51.980305
--------------------------------------------------------------------------------Name        : bird
Product     : Fedora 29
Version     : 1.6.4
Release     : 2.fc29
URL         : https://bird.network.cz/
Summary     : BIRD Internet Routing Daemon
Description :
BIRD is dynamic routing daemon supporting IPv4 and IPv6 versions of routing
protocols BGP, RIP and OSPF.

This package contains IPv4 version.

--------------------------------------------------------------------------------Update Information:

Updating bird to 1.6.4 release which includes fix for CVE-2018-12066 Running
bird in foreground Bird is running under bird user and group rather than root
--------------------------------------------------------------------------------ChangeLog:

* Mon Nov 12 2018 Stanislav Kozina  - 1.6.4-2
- bird should run under bird user and group rather than root (#1397574)
- bird should run in foreground (#1285672)
* Mon Nov 12 2018 Stanislav Kozina  - 1.6.4-1
- Update bird to 1.6.4 (#1642737)
--------------------------------------------------------------------------------References:

  [ 1 ] Bug #1285672 - Bird should start in foreground in the systemd unit
        https://bugzilla.redhat.com/show_bug.cgi?id=1285672
  [ 2 ] Bug #1642737 - bird-1.6.4 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=1642737
  [ 3 ] Bug #1588771 - CVE-2018-12066 bird: Stack overflow in BGP mask expressions [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=1588771
  [ 4 ] Bug #1397574 - Bird should drop privileges
        https://bugzilla.redhat.com/show_bug.cgi?id=1397574
--------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2018-6aada550ca' at the command
line. For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
--------------------------------------------------------------------------------_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

Fedora 29: bird Security Update

December 7, 2018
Updating bird to 1.6.4 release which includes fix for CVE-2018-12066 Running bird in foreground Bird is running under bird user and group rather than root

Summary

BIRD is dynamic routing daemon supporting IPv4 and IPv6 versions of routing

protocols BGP, RIP and OSPF.

This package contains IPv4 version.

Updating bird to 1.6.4 release which includes fix for CVE-2018-12066 Running

bird in foreground Bird is running under bird user and group rather than root

* Mon Nov 12 2018 Stanislav Kozina - 1.6.4-2

- bird should run under bird user and group rather than root (#1397574)

- bird should run in foreground (#1285672)

* Mon Nov 12 2018 Stanislav Kozina - 1.6.4-1

- Update bird to 1.6.4 (#1642737)

[ 1 ] Bug #1285672 - Bird should start in foreground in the systemd unit

https://bugzilla.redhat.com/show_bug.cgi?id=1285672

[ 2 ] Bug #1642737 - bird-1.6.4 is available

https://bugzilla.redhat.com/show_bug.cgi?id=1642737

[ 3 ] Bug #1588771 - CVE-2018-12066 bird: Stack overflow in BGP mask expressions [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1588771

[ 4 ] Bug #1397574 - Bird should drop privileges

https://bugzilla.redhat.com/show_bug.cgi?id=1397574

su -c 'dnf upgrade --advisory FEDORA-2018-6aada550ca' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

FEDORA-2018-6aada550ca 2018-12-07 02:36:51.980305 Product : Fedora 29 Version : 1.6.4 Release : 2.fc29 URL : https://bird.network.cz/ Summary : BIRD Internet Routing Daemon Description : BIRD is dynamic routing daemon supporting IPv4 and IPv6 versions of routing protocols BGP, RIP and OSPF. This package contains IPv4 version. Updating bird to 1.6.4 release which includes fix for CVE-2018-12066 Running bird in foreground Bird is running under bird user and group rather than root * Mon Nov 12 2018 Stanislav Kozina - 1.6.4-2 - bird should run under bird user and group rather than root (#1397574) - bird should run in foreground (#1285672) * Mon Nov 12 2018 Stanislav Kozina - 1.6.4-1 - Update bird to 1.6.4 (#1642737) [ 1 ] Bug #1285672 - Bird should start in foreground in the systemd unit https://bugzilla.redhat.com/show_bug.cgi?id=1285672 [ 2 ] Bug #1642737 - bird-1.6.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1642737 [ 3 ] Bug #1588771 - CVE-2018-12066 bird: Stack overflow in BGP mask expressions [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1588771 [ 4 ] Bug #1397574 - Bird should drop privileges https://bugzilla.redhat.com/show_bug.cgi?id=1397574 su -c 'dnf upgrade --advisory FEDORA-2018-6aada550ca' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ package-announce mailing list -- package-announce@lists.fedoraproject.org To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

Change Log

References

Update Instructions

Severity
Product : Fedora 29
Version : 1.6.4
Release : 2.fc29
URL : https://bird.network.cz/
Summary : BIRD Internet Routing Daemon

Related News