Fedora 39: rust 2024-6bc17db348 Security Advisory Updates
Security fix for CVE-2024-24576 (Windows command injection)
Summary
Rust is a systems programming language that runs blazingly fast, prevents
segfaults, and guarantees thread safety.
This package includes the Rust compiler and documentation generator.
Update Information:
Security fix for CVE-2024-24576 (Windows command injection)
Change Log
* Tue Apr 9 2024 Josh Stone <jistone@redhat.com> - 1.77.2-1 - Update to 1.77.2; Fixes RHBZ#2274248 CVE-2024-24576 * Fri Apr 5 2024 Josh Stone <jistone@redhat.com> - 1.77.0-3 - Ensure more consistency in PGO flags -- fixes Cargo tests
References
[ 1 ] Bug #2265585 - CVE-2024-24576 rust: Fail to Escape Arguments Properly in Microsoft Windows https://bugzilla.redhat.com/show_bug.cgi?id=2265585
Update Instructions
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-6bc17db348' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html