This update fixes a [bug](https://github.com/mesonbuild/meson/issues/5268) in the Meson build system which caused binaries and libraries to incorrectly be marking as requiring an executable stack. This makes them more vulnerable to security issues, and also can result in errors caused by SELinux denials. This update also provides rebuilds of all the packages that were built with the buggy. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-ac2a21ff07 2019-04-17 16:04:32.355044 --------------------------------------------------------------------------------Name : gnome-maps Product : Fedora 30 Version : 3.32.1 Release : 2.fc30 URL : https://wiki.gnome.org/Apps/Maps Summary : Map application for GNOME Description : GNOME Maps is a simple map application for the GNOME desktop. --------------------------------------------------------------------------------Update Information: This update fixes a [bug](https://github.com/mesonbuild/meson/issues/5268) in the Meson build system which caused binaries and libraries to incorrectly be marking as requiring an executable stack. This makes them more vulnerable to security issues, and also can result in errors caused by SELinux denials. This update also provides rebuilds of all the packages that were built with the buggy Meson, excepting packages for updates were already pending (in those cases, those updates have been edited instead). This includes gnome-initial-setup, which was affected by this problem, resulting in a [release-blocking bug](https://bugzilla.redhat.com/show_bug.cgi?id=1699099) that prevented it running correctly with SELinux in enforcing mode. --------------------------------------------------------------------------------References: [ 1 ] Bug #1699099 - gnome-initial-setup 3.32.0+ crashes due to SELinux denials (because it has execstack flag set, because meson 0.50.0 sets it when it shouldn't) https://bugzilla.redhat.com/show_bug.cgi?id=1699099 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-ac2a21ff07' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
This update fixes a [bug](https://github.com/mesonbuild/meson/issues/5268) in the Meson build system which caused binaries and libraries to incorrectly be marking as requiring an executable stack. This makes them more vulnerable to security issues, and also can result in errors caused by SELinux denials. This update also provides rebuilds of all the packages that were built with the buggy. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-ac2a21ff07 2019-04-17 16:04:32.355044 --------------------------------------------------------------------------------Name : gnome-system-monitor Product : Fedora 30 Version : 3.32.1 Release : 2.fc30 URL : https://www.gnome.org/ Summary : Process and resource monitor Description : gnome-system-monitor allows to graphically view and manipulate the running processes on your system. It also provides an overview of available resources such as CPU and memory. --------------------------------------------------------------------------------Update Information: This update fixes a [bug](https://github.com/mesonbuild/meson/issues/5268) in the Meson build system which caused binaries and libraries to incorrectly be marking as requiring an executable stack. This makes them more vulnerable to security issues, and also can result in errors caused by SELinux denials. This update also provides rebuilds of all the packages that were built with the buggy Meson, excepting packages for updates were already pending (in those cases, those updates have been edited instead). This includes gnome-initial-setup, which was affected by this problem, resulting in a [release-blocking bug](https://bugzilla.redhat.com/show_bug.cgi?id=1699099) that prevented it running correctly with SELinux in enforcing mode. --------------------------------------------------------------------------------References: [ 1 ] Bug #1699099 - gnome-initial-setup 3.32.0+ crashes due to SELinuxdenials (because it has execstack flag set, because meson 0.50.0 sets it when it shouldn't) https://bugzilla.redhat.com/show_bug.cgi?id=1699099 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-ac2a21ff07' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Changes to the spec file ensure the executables are built with the LDFLAGS and CFLAGS flags as described on https://src.fedoraproject.org/rpms/redhat-rpm-config/blob/rawhide/f/buildflags.md to improve the security of the executables.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-5f7b78636d 2018-05-11 01:22:39.912001 --------------------------------------------------------------------------------Name : papi Product : Fedora 28 Version : 5.6.0 Release : 5.fc28 URL : Summary : Performance Application Programming Interface Description : PAPI provides a programmer interface to monitor the performance of running programs. --------------------------------------------------------------------------------Update Information: Changes to the spec file ensure the executables are built with the LDFLAGS and CFLAGS flags as described on https://src.fedoraproject.org/rpms/redhat-rpm-config/blob/rawhide/f/buildflags.md to improve the security of the executables. --------------------------------------------------------------------------------ChangeLog: * Mon Apr 30 2018 William Cohen - 5.6.0-5 - Include various LDFLAGS/CFLAGS. --------------------------------------------------------------------------------References: [ 1 ] Bug #1573096 - papi: Partial build flags injection https://bugzilla.redhat.com/show_bug.cgi?id=1573096 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2018-5f7b78636d' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
3.94 and patch for CVE-2017-15056. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-d22c391318 2017-10-18 15:23:15.368370 --------------------------------------------------------------------------------Name : upx Product : Fedora 26 Version : 3.94 Release : 1.fc26 URL : https://upx.github.io/ Summary : Ultimate Packer for eXecutables Description : UPX is a free, portable, extendable, high-performance executable packer for several different executable formats. It achieves an excellent compression ratio and offers very fast decompression. Your executables suffer no memory overhead or other drawbacks. --------------------------------------------------------------------------------Update Information: 3.94 and patch for CVE-2017-15056 --------------------------------------------------------------------------------References: [ 1 ] Bug #1500428 - CVE-2017-15056 upx: Mishandling of ELF headers [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1500428 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade upx' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.