Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Fedora 36: FEDORA-2022-163bcf190f Moderate: rust-ffsend Out-Of-Memory Risk

fedora
Calendar Grey August 14, 2022
Dist Fedora Esm H88
An improvement for rust-ffsend in Fedora mitigates CVE-2022-35922 by blocking unverified websockets, thus averting potential out-of-memory vulnerabilities.
Rebuild against websocket 0.26.5 for CVE-2022-35922 / RUSTSEC-2022-0035.

Summary

Easily and securely share files from the command line. A fully featured Send

client.

Rebuild against websocket 0.26.5 for CVE-2022-35922 / RUSTSEC-2022-0035.

* Sat Aug 6 2022 Fabio Valentini 0.2.76-2

- Rebuild with websocket 0.26.5 for CVE-2022-35922 / RUSTSEC-2022-0035

[ 1 ] Bug #2115227 - CVE-2022-35922 rust-websocket-base: rust-webscket: untrusted websocket connections can cause an out-of-memory [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=2115227

[ 2 ] Bug #2115228 - CVE-2022-35922 rust-websocket: rust-webscket: untrusted websocket connections can cause an out-of-memory [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=2115228

su -c 'dnf upgrade --advisory FEDORA-2022-163bcf190f' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Do not reply to spam, report it:

Change Log

References

Update Instructions

Severity
important
Lowest
Low
Medium
High
Critical

Product: Fedora 36
Version: 0.2.76
Release: 2.fc36
URL: Summary : Easily and securely share files from the command line

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here