Fedora 36: python-joblib 2022-c0bfe37ae5 | LinuxSecurity.com
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2022-c0bfe37ae5
2022-10-08 17:33:08.457507
--------------------------------------------------------------------------------

Name        : python-joblib
Product     : Fedora 36
Version     : 1.2.0
Release     : 1.fc36
URL         : https://joblib.readthedocs.io
Summary     : Lightweight pipelining: using Python functions as pipeline jobs
Description :
Joblib is a set of tools to provide lightweight pipelining in Python.
In particular, joblib offers:
 * transparent disk-caching of the output values and lazy
   re-evaluation (memorize pattern)
 * easy simple parallel computing
 * logging and tracing of the execution

--------------------------------------------------------------------------------
Update Information:

Security fix for CVE-2022-21797
--------------------------------------------------------------------------------
ChangeLog:

* Thu Sep 29 2022 Sergio Pascual  - 1.2.0-1
- New upstream source 1.2.0. Fixes bz#2129824 CVE-2022-21797
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2129823 - CVE-2022-21797 joblib: Arbitrary Code Execution in joblib
        https://bugzilla.redhat.com/show_bug.cgi?id=2129823
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2022-c0bfe37ae5' at the command
line. For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue

Fedora 36: python-joblib 2022-c0bfe37ae5

October 8, 2022
Security fix for CVE-2022-21797

Summary

Joblib is a set of tools to provide lightweight pipelining in Python.

In particular, joblib offers:

* transparent disk-caching of the output values and lazy

re-evaluation (memorize pattern)

* easy simple parallel computing

* logging and tracing of the execution

Update Information:

Security fix for CVE-2022-21797

Change Log

* Thu Sep 29 2022 Sergio Pascual - 1.2.0-1 - New upstream source 1.2.0. Fixes bz#2129824 CVE-2022-21797

References

[ 1 ] Bug #2129823 - CVE-2022-21797 joblib: Arbitrary Code Execution in joblib https://bugzilla.redhat.com/show_bug.cgi?id=2129823

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-c0bfe37ae5' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
Name : python-joblib
Product : Fedora 36
Version : 1.2.0
Release : 1.fc36
URL : https://joblib.readthedocs.io
Summary : Lightweight pipelining: using Python functions as pipeline jobs

We use cookies to provide and improve our services. By using our site, you consent to our Cookie Policy.