Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 39: 2023-fc674231b2 Moderate: XDS Authorization Exploit

fedora
Calendar Grey November 3, 2023
Dist Fedora Esm H88
The golang-github-cncf-xds project has been updated to fix critical authentication bypass vulnerabilities in Fedora 39, enhancing both security and stability
Contains updates to address CVE-2022-{28357,41717} and also NATS: 2023-01 nats- server: Adding accounts for just the system account adds auth bypass

Summary

XDS API Working Group.

Update Information:

Contains updates to address CVE-2022-{28357,41717} and also NATS: 2023-01 nats- server: Adding accounts for just the system account adds auth bypass

Change Log

* Tue Sep 12 2023 Mark E. Fuller - 0-0.10 - update to latest commit e9ce688 2023-06-07 to support updating golang- github-grpc

References

Fedora Update Notification FEDORA-2023-6b89bc0305 2023-11-03 18:20:20.950604 Name : golang-github-cncf-xds Product : Fedora 39 Version : 0 Release : 0.10.20230912gite9ce688.fc39 URL : https://github.com/cncf/xds Summary : XDS API Working Group Description : XDS API Working Group.

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-6b89bc0305' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Name: golang-github-cncf-xds
Product: Fedora 39
Version: 0
Release: 0.10.20230912gite9ce688.fc39
Summary: XDS API Working Group

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here