Update for CVE-2022-27191. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-a4c9009f3e 2022-04-21 21:21:21.120249 --------------------------------------------------------------------------------Name : golang-x-crypto Product : Fedora 35 Version : 0 Release : 0.43.20220412git7b82a4e.fc35 URL : https://github.com/golang/crypto Summary : Go supplementary cryptography libraries Description : Go supplementary cryptography libraries. --------------------------------------------------------------------------------Update Information: Update for CVE-2022-27191 --------------------------------------------------------------------------------ChangeLog: * Tue Apr 12 2022 Mikel Olasagasti Uranga - 0-0.43.20220412git7b82a4e - Fix CVE-2022-27191 - Fix macro-in-changelog warning * Thu Jan 20 2022 Fedora Release Engineering - 0-0.42 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #2074262 - CVE-2022-27191 golang-x-crypto: golang: crash in a golang.org/x/crypto/ssh server [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2074262 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-a4c9009f3e' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Update to 2.34.6: * Fix accessibility not working when the Bubblewrap sandbox is enabled. * Fix rendering of scrollbars when overlay scrollbars are disabled. * Fix several crashes and rendering issues. * Security fixes: CVE-2022-22620. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-f0d84ce004 2022-02-19 01:30:44.345793 --------------------------------------------------------------------------------Name : webkit2gtk3 Product : Fedora 35 Version : 2.34.6 Release : 1.fc35 URL : https://www.webkitgtk.org/ Summary : GTK Web content engine library Description : WebKitGTK is the port of the portable web rendering engine WebKit to the GTK platform. This package contains WebKit2 based WebKitGTK for GTK 3. --------------------------------------------------------------------------------Update Information: Update to 2.34.6: * Fix accessibility not working when the Bubblewrap sandbox is enabled. * Fix rendering of scrollbars when overlay scrollbars are disabled. * Fix several crashes and rendering issues. * Security fixes: CVE-2022-22620 --------------------------------------------------------------------------------ChangeLog: * Thu Feb 17 2022 Michael Catanzaro 2.34.6-1 - Update to 2.34.6 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-f0d84ce004' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list
Fix crash with ypxfr caused by failing to zero out data.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-482 2005-07-20 ---------------------------------------------------------------------Product : Fedora Core 4 Name : ypserv Version : 2.13 Release : 7 Summary : The NIS (Network Information Service) server. Description : The Network Information Service (NIS) is a system that provides network information (login names, passwords, home directories, group information) to all of the machines on a network. NIS can allow users to log in on any machine on the network, as long as the machine has the NIS client programs running and the user's password is recorded in the NIS passwd database. NIS was formerly known as Sun Yellow Pages (YP). This package provides the NIS server, which will need to be running on your network. NIS clients do not need to be running the server. Install ypserv if you need an NIS server for your network. You also need to install the yp-tools and ypbind packages on any NIS client machines. ---------------------------------------------------------------------* Thu Jun 23 2005 Chris Feist - 2.13-7 - Fix crash with ypxfr caused by failing to zero out data (bz #161217) ---------------------------------------------------------------------This update can be downloaded from: 3f6ad6767aea0f1a70a40760bc25e7a5 SRPMS/ypserv-2.13-7.src.rpm bfc87555e39a36a511bda8cc2d46f70c ppc/ypserv-2.13-7.ppc.rpm 9be5bc10b9f7e92365b4a99534dd8c22 ppc/debug/ypserv-debuginfo-2.13-7.ppc.rpm d5b07b9905dc0eea17b2972b4776afd6 x86_64/ypserv-2.13-7.x86_64.rpm bebae1bd5b3215bd9c1149b3146110ed x86_64/debug/ypserv-debuginfo-2.13-7.x86_64.rpm c511dcd1043e36e04a3d8869e9282b51 i386/ypserv-2.13-7.i386.rpm 7d1b993e51b5ea8201a386826e2940f8 i386/debug/ypserv-debuginfo-2.13-7.i386.rpm This update can also be installed with the Update Agent; you can launch theUpdate Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list
Get the latest Linux and open source security news straight to your inbox.