Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Fedora 31 Update: radare2 4.5.0 Moderate Shell Injection Threat

fedora
Calendar Grey August 6, 2020
Dist Fedora Esm H88
Fedora 31 enhances radare2 to version 4.5.0, resolving vulnerabilities such as shell command injection threats.
- Rebase radare2 to 4.5.0 - Rebase cutter-re to 1.11.0

Summary

The radare2 is a reverse-engineering framework that is multi-architecture,

multi-platform, and highly scriptable. Radare2 provides a hexadecimal

editor, wrapped I/O, file system support, debugger support, diffing

between two functions or binaries, and code analysis at opcode,

basic block, and function levels.

- Rebase radare2 to 4.5.0 - Rebase cutter-re to 1.11.0

* Mon Jul 20 2020 Riccardo Schirone - 4.5.0-1

- Rebase to upstream version 4.5.0

[ 1 ] Bug #1859143 - CVE-2020-15121 radare2: malformed PDB file names in the PDB server path cause shell injection [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1859143

su -c 'dnf upgrade --advisory FEDORA-2020-d5b33b6e6c' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Product: Fedora 31
Version: 4.5.0
Release: 1.fc31
Summary: The reverse engineering framework

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here