Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

SUSE: 2020:2041-1 Moderate: rust, rust-cbindgen Update Announcement

suse
Calendar Grey July 24, 2020
Dist Suse Esm H88
The latest versions of Rust and rust-cbindgen address a critical security vulnerability and include a variety of enhancements. Prompt updates are advised.
An update that solves one vulnerability and has two fixes is now available

Summary

This update for rust, rust-cbindgen fixes the following issues: rust was updated for use by Firefox 76ESR. - Fixed miscompilations with rustc 1.43 that lead to LTO failures (bsc#1173202) Update to version 1.43.1 - Updated openssl-src to 1.1.1g for CVE-2020-1967. - Fixed the stabilization of AVX-512 features. - Fixed `cargo package --list` not working with unpublished dependencies. Update to version 1.43.0 + Language: - Fixed using binary operations with `&{number}` (e.g. `&1.0`) not having the type inferred correctly. - Attributes such as `#[cfg()]` can now be used on `if` expressions. - Syntax only changes: * Allow `type Foo: Ord` syntactically. * Fuse associated and extern items up to defaultness. * Syntactically allow `self` in all `fn` contexts. * Merge `fn` syntax + cleanup item parsing.

References

#1115645 #1154817 #1173202

Cross- CVE-2020-1967

Affected Products:

SUSE Linux Enterprise Module for Development Tools 15-SP2

SUSE Linux Enterprise Module for Development Tools 15-SP1

https://www.suse.com/security/cve/CVE-2020-1967.html

https://bugzilla.suse.com/1115645

https://bugzilla.suse.com/1154817

https://bugzilla.suse.com/1173202

Announcement ID: SUSE-SU-2020:2041-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here