Fedora Linux Distribution - Page 484
Find the information you need for your favorite open source distribution .
Find the information you need for your favorite open source distribution .
Update cryptopp to 5.6.5 security release. * fixed CVE-2016-7420 (Issue 277, document NDEBUG for production/release) * fixed CVE-2016-7544 (Issue 302, avoid _malloca and _freea for MSC compilers) * Shipped library in recommended state backwards compatibility achieved with * improved Testing and QA
New upstream bug fix release. This version includes a fix for CVE-2017-7697.
Security fix for CVE-2018-6767, CVE-2018-7253, and CVE-2018-7254
A CSRF vulnerability in Bugzilla's report.cgi would allow a third-party site to extract confidential information from a bug the victim had access to. This security bug has been published as CVE-2018-5123. This updates contains Bugzilla 5.0.4, which fixes the issue.
This release fixes a heap buffer overflow when processing a shar archive by unshar tool if the arhive contains overlong lines.
Fixes several heap-buffer-overflows, see related Bugzilla tickets!
The textbook ElGamal implementation is not secure. PyCrypto and some other implementations use the wrong algorithm, which may lead to some information disclosure simply by looking at the encrypted text. For a full description, see https://github.com/pycrypto/pycrypto/issues/253 This update includes a fix for this problem backported from pycryptodome.
Fixed CVE-2018-5379 - Double free vulnerability in bgpd when processing
Update cryptopp to 5.6.5 security release. * fixed CVE-2016-7420 (Issue 277, document NDEBUG for production/release) * fixed CVE-2016-7544 (Issue 302, avoid _malloca and _freea for MSC compilers) * Shipped library in recommended state backwards compatibility achieved with * improved Testing and QA
Update to latest upstream stable version. For changes see: https://www.mozilla.org/en-US/firefox/58.0.2/releasenotes/
A CSRF vulnerability in Bugzilla's report.cgi would allow a third-party site to extract confidential information from a bug the victim had access to. This security bug has been published as CVE-2018-5123. This updates contains Bugzilla 5.0.4, which fixes the issue.
nx-libs 3.5.0.33: - Don't allow overriding of X.Org Server UNIX sockets via TEMP/NX_TEMP environment variables. Fixes problems on machines that use pam_tempdir.so. - Fix CVE-2017-2624 (timingsafe_memcmp) by Ulrich Sibiller. - Potentially improve LAN- and WAN-type connection speed settings scenarios. Includes a regression fix for VPN connections by Simon Matter. - Fix problems in
nx-libs 3.5.0.33: - Don't allow overriding of X.Org Server UNIX sockets via TEMP/NX_TEMP environment variables. Fixes problems on machines that use pam_tempdir.so. - Fix CVE-2017-2624 (timingsafe_memcmp) by Ulrich Sibiller. - Potentially improve LAN- and WAN-type connection speed settings scenarios. Includes a regression fix for VPN connections by Simon Matter. - Fix problems in
Update to latest upstream stable version. For changes see: https://www.mozilla.org/en-US/firefox/58.0.2/releasenotes/