- Update to 2.28.2 Release notes: https://github.com/Mbed-TLS/mbedtls/releases/tag/v2.28.2. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-7456a62f60 2023-01-11 01:20:34.979907 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 37 Version : 2.28.2 Release : 1.fc37 URL : https://www.trustedfirmware.org/projects/mbed-tls Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. --------------------------------------------------------------------------------Update Information: - Update to 2.28.2 Release notes: https://github.com/Mbed-TLS/mbedtls/releases/tag/v2.28.2 --------------------------------------------------------------------------------ChangeLog: * Fri Dec 16 2022 Benson Muite - 2.28.2-1 - Update to 2.28.2 - Update URLs --------------------------------------------------------------------------------References: [ 1 ] Bug #2155397 - CVE-2022-46392 CVE-2022-46393 mbedtls: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2155397 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-7456a62f60' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
- Update to 2.16.5 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security Advisory: . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-e7f95c4df0 2020-03-13 02:29:45.056795 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 30 Version : 2.16.5 Release : 1.fc30 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: --------------------------------------------------------------------------------Update Information: - Update to 2.16.5 Release notes: Security Advisory: --------------------------------------------------------------------------------ChangeLog: * Tue Mar 3 2020 Morten Stevens - 2.16.5-1 - Update to 2.16.5 * Mon Feb 10 2020 Morten Stevens - 2.16.4-1 - Update to 2.16.4 * Wed Jan 29 2020 Fedora Release Engineering - 2.16.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild * Sat Sep 28 2019 Morten Stevens - 2.16.3-1 - Update to 2.16.3 - Side channel attack on deterministic ECDSA (CVE-2019-16910) * Tue Sep 3 2019 Morten Stevens - 2.16.2-4 - devel package needs pkcs11-helper-devel (#1748468) * Sat Aug 3 2019 Morten Stevens - 2.16.2-3 - Fix building on RHEL8 * Thu Jul 25 2019 Fedora Release Engineering - 2.16.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild * Sat Jul 20 2019 Morten Stevens - 2.16.2-1 - Update to 2.16.2 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisoryFEDORA-2020-e7f95c4df0' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Update to 8.2.0.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-812b77ed2e 2019-06-01 00:50:53.475243 --------------------------------------------------------------------------------Name : cryptopp Product : Fedora 30 Version : 8.2.0 Release : 1.fc30 URL : Summary : C++ class library of cryptographic schemes Description : Crypto++ Library is a free C++ class library of cryptographic schemes. See for a list of supported algorithms. One purpose of Crypto++ is to act as a repository of public domain (not copyrighted) source code. Although the library is copyrighted as a compilation, the individual files in it are in the public domain. --------------------------------------------------------------------------------Update Information: Update to 8.2.0. --------------------------------------------------------------------------------ChangeLog: * Tue May 21 2019 Vasiliy N. Glazov 8.2.0-1 - Update to 8.2.0 --------------------------------------------------------------------------------References: [ 1 ] Bug #1458792 - CVE-2017-9434 cryptopp: Out-of-bounds read in zinflate [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1458792 [ 2 ] Bug #1404145 - CVE-2016-9939 cryptopp: DoS in ASN.1 parser due to octet processing [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1404145 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-812b77ed2e' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.