- Rebase radare2 to upstream version 4.5.0 - Rebase cutter to upstream version 1.11.0 - Provide cutter translation - Provide -devel sub package of cutter-re. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-aa51efe207 2020-08-07 01:18:08.804645 --------------------------------------------------------------------------------Name : radare2 Product : Fedora 32 Version : 4.5.0 Release : 2.fc32 URL : https://radare.org/ Summary : The reverse engineering framework Description : The radare2 is a reverse-engineering framework that is multi-architecture, multi-platform, and highly scriptable. Radare2 provides a hexadecimal editor, wrapped I/O, file system support, debugger support, diffing between two functions or binaries, and code analysis at opcode, basic block, and function levels. --------------------------------------------------------------------------------Update Information: - Rebase radare2 to upstream version 4.5.0 - Rebase cutter to upstream version 1.11.0 - Provide cutter translation - Provide -devel sub package of cutter-re --------------------------------------------------------------------------------ChangeLog: * Mon Jul 20 2020 Riccardo Schirone - 4.5.0-2 - Remove the .1 from the version signature * Mon Jul 20 2020 Riccardo Schirone - 4.5.0-1 - Rebase to upstream version 4.5.0 --------------------------------------------------------------------------------References: [ 1 ] Bug #1859143 - CVE-2020-15121 radare2: malformed PDB file names in the PDB server path cause shell injection [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1859143 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-aa51efe207' at the command line. For more information, refer to the dnf documentation availableat https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
- Rebase radare2 to upstream version 4.5.0 - Rebase cutter to upstream version 1.11.0 - Provide cutter translation - Provide -devel sub package of cutter-re. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-aa51efe207 2020-08-07 01:18:08.804645 --------------------------------------------------------------------------------Name : cutter-re Product : Fedora 32 Version : 1.11.0 Release : 1.fc32 URL : https://cutter.re/ Summary : GUI for radare2 reverse engineering framework Description : Cutter is a Qt and C++ GUI for radare2. Its goal is making an advanced, customizable and FOSS reverse-engineering platform while keeping the user experience at mind. Cutter is created by reverse engineers for reverse engineers. --------------------------------------------------------------------------------Update Information: - Rebase radare2 to upstream version 4.5.0 - Rebase cutter to upstream version 1.11.0 - Provide cutter translation - Provide -devel sub package of cutter-re --------------------------------------------------------------------------------ChangeLog: * Mon Jul 27 2020 Riccardo Schirone - 1.11.0-1 - Bump to upstream version 1.11.0-1 (Thanks to Michal Ambroz, changes mostly taken from https://src.fedoraproject.org/rpms/cutter-re/pull-request/2#request_diff) - Add cutter translations - Provide -devel sub package to allow compilation of cutter plugins --------------------------------------------------------------------------------References: [ 1 ] Bug #1859143 - CVE-2020-15121 radare2: malformed PDB file names in the PDB server path cause shell injection [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1859143 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-aa51efe207' at the command line. For more information, refer tothe dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Rebase to radare2 3.6.0 and fix CVE-2019-12790, CVE-2019-12802 and CVE-2019-12865 and rebase cutter to 1.8.3.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-2a16e1ab93 2019-07-30 01:13:56.894668 --------------------------------------------------------------------------------Name : cutter-re Product : Fedora 30 Version : 1.8.3 Release : 1.fc30 URL : https://cutter.re/ Summary : GUI for radare2 reverse engineering framework Description : Cutter is a Qt and C++ GUI for radare2. Its goal is making an advanced, customizable and FOSS reverse-engineering platform while keeping the user experience at mind. Cutter is created by reverse engineers for reverse engineers. --------------------------------------------------------------------------------Update Information: Rebase to radare2 3.6.0 and fix CVE-2019-12790, CVE-2019-12802 and CVE-2019-12865 and rebase cutter to 1.8.3. --------------------------------------------------------------------------------ChangeLog: * Mon Jul 15 2019 Riccardo Schirone - 1.8.3-1 - rebase to cutter 1.8.3 * Wed Jun 26 2019 Riccardo Schirone - 1.8.0-4 - recompile for radare2 3.6.0 * Mon Apr 15 2019 Riccardo Schirone - 1.8.0-3 - recompile for radare2 3.4.1 * Tue Apr 9 2019 Lubomir Rintel - 1.8.0-2 - Update to radare2 3.4.1 --------------------------------------------------------------------------------References: [ 1 ] Bug #1725676 - CVE-2019-12865 radare2: double free in cmd_mount in libr/core/cmd_mount.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1725676 [ 2 ] Bug #1722733 - CVE-2019-12802 radare2: denial of service in function rcc_context in /libr/egg/egg_lang.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1722733 [ 3 ] Bug #1723354 - CVE-2019-12790 radare2: heap-based buffer over-read in function r_egg_lang_parsechar in egg_lang.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1723354 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-2a16e1ab93' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Rebase to radare2 3.6.0 and fix CVE-2019-12790, CVE-2019-12802 and CVE-2019-12865 and rebase cutter to 1.8.3.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-2a16e1ab93 2019-07-30 01:13:56.894668 --------------------------------------------------------------------------------Name : radare2 Product : Fedora 30 Version : 3.6.0 Release : 1.fc30 URL : https://radare.org/ Summary : The reverse engineering framework Description : The radare2 is a reverse-engineering framework that is multi-architecture, multi-platform, and highly scriptable. Radare2 provides a hexadecimal editor, wrapped I/O, file system support, debugger support, diffing between two functions or binaries, and code analysis at opcode, basic block, and function levels. --------------------------------------------------------------------------------Update Information: Rebase to radare2 3.6.0 and fix CVE-2019-12790, CVE-2019-12802 and CVE-2019-12865 and rebase cutter to 1.8.3. --------------------------------------------------------------------------------ChangeLog: * Wed Jun 26 2019 Riccardo Schirone - 3.6.0 - rebase to upstream version 3.6.0 * Tue Apr 16 2019 Adam Williamson - 3.4.1-2 - Rebuild with Meson fix for #1699099 - Fix versioning * Mon Apr 8 2019 Riccardo Schirone - 3.4.1-1 - rebase to upstream version 3.4.1 --------------------------------------------------------------------------------References: [ 1 ] Bug #1725676 - CVE-2019-12865 radare2: double free in cmd_mount in libr/core/cmd_mount.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1725676 [ 2 ] Bug #1722733 - CVE-2019-12802 radare2: denial of service in function rcc_context in /libr/egg/egg_lang.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1722733 [ 3 ] Bug #1723354 - CVE-2019-12790 radare2: heap-based buffer over-read in function r_egg_lang_parsechar in egg_lang.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1723354 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-2a16e1ab93' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.