Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 31: librabbitmq Update FEDORA-2019-8730b65158 Critical Security Fix

fedora
Calendar Grey December 9, 2019
Dist Fedora Esm H88
The recent update for librabbitmq in Fedora 31 addresses various improvements and bug fixes concerning AMQP protocol handling and security enhancements.
**Added:** * amqp_ssl_socket_get_context can be used to get the current OpenSSL CTX* associated with a connection

Summary

This is a C-language AMQP client library for use with AMQP servers

speaking protocol versions 0-9-1.

**Added:** * amqp_ssl_socket_get_context can be used to get the current

OpenSSL CTX* associated with a connection. **Changed:** * openssl:

missing OpenSSL config is ignored as an OpenSSL init error (#523) *

AMQP_DEFAULT_MAX_CHANNELS is now set to 2047 to follow current default channel

limit in the RabbitMQ broker. (#513) **Fixed:** * add additional input

validation to prevent integer overflow when parsing a frame header. This

addresses **CVE-2019-18609**.

* Mon Dec 2 2019 Remi Collet - 0.10.0-1

- update to 0.10.0

su -c 'dnf upgrade --advisory FEDORA-2019-8730b65158' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 31
Version: 0.10.0
Release: 1.fc31
Summary: Client library for AMQP

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here