Client-side TLS so that it verifies that the server hostname matches its
certificate (Fixed in fossil 2.14.2).
A data exfiltration bug in the server (Fixed in fossil 2.14.1).
- https://bugs.mageia.org/show_bug.cgi?id=29266
- https://fossil-scm.org/home/doc/trunk/www/changes.wiki#v2_14
-
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/JBTRZ5HCOUTIIKJF3T37NORI4P7EVYCY/
- https://www.cve.org/CVERecord?id=CVE-undefined
- 8/core/fossil-2.14.2-1.mga8
Get the latest Linux and open source security news straight to your inbox.