Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora 41 mbedtls Update: 2024-09-13 critical buffer overflow

fedora
Calendar Grey September 13, 2024
Dist Fedora Esm H88
Ubuntu releases OpenSSL 1.1.1l to fix vulnerabilities. Upgrade using apt update command for improved protection.
Update to 2.28.9 Release notes: https://github.com/Mbed-TLS/mbedtls/releases/tag/mbedtls-2.28.9

Summary

Mbed TLS is a light-weight open source cryptographic and SSL/TLS

library written in C. Mbed TLS makes it easy for developers to include

cryptographic and SSL/TLS capabilities in their (embedded)

applications with as little hassle as possible.

Update Information:

Update to 2.28.9 Release notes: https://github.com/Mbed-TLS/mbedtls/releases/tag/mbedtls-2.28.9

Change Log

* Tue Sep 3 2024 Morten Stevens - 2.28.9-1 - Revert to 2.28.x branch for F41 * Thu Jul 18 2024 Fedora Release Engineering - 3.6.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild * Tue May 14 2024 Morten Stevens - 3.6.0-1 - Update to 3.6.0

References


[ 1 ] Bug #2310290 - CVE-2024-45157 mbedtls: From NVD collector [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2310290

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-d4bcb0da46' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: mbedtls
Product: Fedora 41
Version: 2.28.9
Release: 1.fc41
Summary: Light-weight cryptographic and SSL/TLS library

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here