Fedora Linux Distribution - Page 484

Find the information you need for your favorite open source distribution .

Fedora 27: cryptopp Security Update 2018-a0a356fb68

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Update cryptopp to 5.6.5 security release. * fixed CVE-2016-7420 (Issue 277, document NDEBUG for production/release) * fixed CVE-2016-7544 (Issue 302, avoid _malloca and _freea for MSC compilers) * Shipped library in recommended state backwards compatibility achieved with * improved Testing and QA

Fedora 27: bugzilla Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

A CSRF vulnerability in Bugzilla's report.cgi would allow a third-party site to extract confidential information from a bug the victim had access to. This security bug has been published as CVE-2018-5123. This updates contains Bugzilla 5.0.4, which fixes the issue.

Fedora 26: python-crypto Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The textbook ElGamal implementation is not secure. PyCrypto and some other implementations use the wrong algorithm, which may lead to some information disclosure simply by looking at the encrypted text. For a full description, see https://github.com/pycrypto/pycrypto/issues/253 This update includes a fix for this problem backported from pycryptodome.

Fedora 27: cryptopp Security Update

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Update cryptopp to 5.6.5 security release. * fixed CVE-2016-7420 (Issue 277, document NDEBUG for production/release) * fixed CVE-2016-7544 (Issue 302, avoid _malloca and _freea for MSC compilers) * Shipped library in recommended state backwards compatibility achieved with * improved Testing and QA

Fedora 27: nx-libs Security Update 2017-60c4aa0e01

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

nx-libs 3.5.0.33: - Don't allow overriding of X.Org Server UNIX sockets via TEMP/NX_TEMP environment variables. Fixes problems on machines that use pam_tempdir.so. - Fix CVE-2017-2624 (timingsafe_memcmp) by Ulrich Sibiller. - Potentially improve LAN- and WAN-type connection speed settings scenarios. Includes a regression fix for VPN connections by Simon Matter. - Fix problems in

Fedora 27: x2goserver Security Update 2017-60c4aa0e01

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

nx-libs 3.5.0.33: - Don't allow overriding of X.Org Server UNIX sockets via TEMP/NX_TEMP environment variables. Fixes problems on machines that use pam_tempdir.so. - Fix CVE-2017-2624 (timingsafe_memcmp) by Ulrich Sibiller. - Potentially improve LAN- and WAN-type connection speed settings scenarios. Includes a regression fix for VPN connections by Simon Matter. - Fix problems in