Mageia 2022-0110: sphinx security update
It was found that sphinx could allow arbitrary files to be read by abusing a configuration option. (CVE-2020-29050) References: - https://bugs.mageia.org/show_bug.cgi?id=30076
It was found that sphinx could allow arbitrary files to be read by abusing a configuration option. (CVE-2020-29050) References: - https://bugs.mageia.org/show_bug.cgi?id=30076
Update to 5.62 including new features and bugfixes: Security bugfixes - The "redirect" option was fixed to properly handle unauthenticated requests (bsc#1182529). - Fixed a double free with OpenSSL older than 1.1.0.
DNS forwarders - cache poisoning vulnerability. (CVE-2021-25220) References: - https://bugs.mageia.org/show_bug.cgi?id=30184 - https://kb.isc.org/docs/cve-2021-25220
The chromium-browser-stable package has been updated to the 99.0.4844.74 version that fixes multiples security vulnerabilities. [1299422] Critical CVE-2022-0971: Use after free in Blink Layout. [1301320] High CVE-2022-0972: Use after free in Extensions.
A double-free was found in the way 389-ds-base handles virtual attributes context in persistent searches. An attacker could send a series of search requests, forcing the server to behave unexpectedly, and crash. (CVE-2021-4091)
SECURITY: CVE-2022-23943: mod_sed: Read/write beyond bounds. Out-of-bounds Write vulnerability in mod_sed of Apache HTTP Server allows an attacker to overwrite heap memory with possibly attacker provided data. Credits: Ronald Crane (Zippenhop LLC)
The {% debug %} template tag didn't properly encode the current context posing an XSS attack vector (CVE-2022-22818). Passing certain inputs to multipart forms could result in an infinite loop when parsing files resulting in a denial of service (CVE-2022-23833).
Untrusted tar file to symlink into an arbitrary location allowing file overwrites. (CVE-2021-37712) Arbitrary file creation/overwrite and arbitrary code execution. (CVE-2021-37701)
Command injection in ruby bundler. (CVE-2021-43809) References: - https://bugs.mageia.org/show_bug.cgi?id=30162 - https://blog.sonarsource.com/securing-developer-tools-package-managers