Updated sphinx packages fix security vulnerability:
A vulnerability was found in Sphinx Technologies Sphinx 3.1.1 by default has
no authentication and listens on 0.0.0.0, making it exposed to the internet,
unless filtered by a firewall or reconfigured to listen to 127.0.0.1 only
(CVE-2019-14511).
- https://bugs.mageia.org/show_bug.cgi?id=25946
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/YSLPW44RWIGHU5AG3P4U2HPSD3UBG4GJ/
- https://www.cve.org/CVERecord?id=CVE-2019-14511
- 7/core/sphinx-2.3.2-0.beta.1.1.mga7
Get the latest Linux and open source security news straight to your inbox.