Update to 2.28.1. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-ff582c5b0d 2022-10-30 20:59:07.278892 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 36 Version : 2.28.1 Release : 1.fc36 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ --------------------------------------------------------------------------------Update Information: Update to 2.28.1 --------------------------------------------------------------------------------ChangeLog: * Sat Oct 22 2022 Morten Stevens - 2.28.1-1 - Update to 2.28.1 * Thu Jul 21 2022 Fedora Release Engineering - 2.28.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #2037309 - CVE-2021-45450 mbedtls: policy bypass or oracle-based decryption [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2037309 [ 2 ] Bug #2037320 - CVE-2021-45451 mbedtls: policy bypass/oracle-based decryption in psa_aead_generate_nonce [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2037320 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-ff582c5b0d' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signedwith the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
- Firefox 68.9.0 ESR: https://www.firefox.com/en-US/firefox/68.9.0/releasenotes/?redirect_source=mozilla-org - GJS rebuild against mozjs68-68.9.0. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-4334da4020 2020-06-05 02:28:39.634922 --------------------------------------------------------------------------------Name : mozjs68 Product : Fedora 32 Version : 68.9.0 Release : 1.fc32 URL : Summary : SpiderMonkey JavaScript library Description : SpiderMonkey is the code-name for Mozilla Firefox's C++ implementation of JavaScript. It is intended to be embedded in other applications that provide host environments for JavaScript. --------------------------------------------------------------------------------Update Information: - Firefox 68.9.0 ESR: https://www.firefox.com/en-US/firefox/68.9.0/releasenotes/?redirect_source=mozilla-org - GJS rebuild against mozjs68-68.9.0 --------------------------------------------------------------------------------ChangeLog: * Tue Jun 2 2020 Frantisek Zatloukal - 68.9.0-1 - Update to 68.9.0 - Drop llvm and rust deps --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-4334da4020' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.