Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Fedora 40: FEDORA-2024-c42ea059d0 Critical: Ofono Telephony Patch

fedora
Calendar Grey March 28, 2024
Dist Fedora Esm H88
Upgrade your Fedora system to the newest ofono release to improve mobile communication functionalities with essential patches and enhancements.
Update to v2.5

Summary

oFono.org is a place to bring developers together around designing an

infrastructure for building mobile telephony (GSM/UMTS) applications.

oFono includes a high-level D-Bus API for use by telephony applications.

oFono also includes a low-level plug-in API for integrating with telephony

stacks, cellular modems and storage back-ends.

Update Information:

Update to v2.5

Change Log

* Mon Mar 18 2024 Artur Frenszek-Iwicki - 2.5-1 - Update to v2.5 * Thu Jan 25 2024 Fedora Release Engineering - 1.34-6 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Sun Jan 21 2024 Fedora Release Engineering - 1.34-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Thu Jul 20 2023 Fedora Release Engineering - 1.34-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild * Thu Jan 19 2023 Fedora Release Engineering - 1.34-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild * Fri Jul 22 2022 Fedora Release Engineering - 1.34-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild

References


[ 1 ] Bug #2255387 - CVE-2023-2794 ofono: SMS Decoder Stack-based Buffer Overflow Remote Code Execution Vulnerability within the decode_deliver() function https://bugzilla.redhat.com/show_bug.cgi?id=2255387 [ 2 ] Bug #2255394 - CVE-2023-4232 ofono: SMS Decoder Stack-based Buffer Overflow Remote Code Execution Vulnerability within the decode_status_report() function https://bugzilla.redhat.com/show_bug.cgi?id=2255394 [ 3 ] Bug #2255396 - CVE-2023-4233 ofono: SMS Decoder Stack-based Buffer Overflow Remote Code Execution Vulnerability within the sms_decode_address_field() function https://bugzilla.redhat.com/show_bug.cgi?id=2255396 [ 4 ] Bug #2255399 - CVE-2023-4234 ofono: SMS Decoder Stack-based Buffer Overflow Remote Code Execution Vulnerability within the decode_submit_report() function https://bugzilla.redhat.com/show_bug.cgi?id=2255399 [ 5 ] Bug #2255402 - CVE-2023-4235 ofono: SMS Decoder Stack-based Buffer Overflow Remote Code Exe...

Read the Full Advisory

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-c42ea059d0' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: ofono
Product: Fedora 40
Version: 2.5
Release: 1.fc40
URL:
Summary: Open Source Telephony

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here