Security fix for CVE-2022-4510. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-32eb9d8ee7 2023-02-05 01:46:08.509414 --------------------------------------------------------------------------------Name : binwalk Product : Fedora 37 Version : 2.3.3 Release : 3.fc37 URL : https://github.com/ReFirmLabs/binwalk Summary : Firmware analysis tool Description : Binwalk is a tool for searching a given binary image for embedded files and executable code. Specifically, it is designed for identifying files and code embedded inside of firmware images. Binwalk uses the python-magic library, so it is compatible with magic signatures created for the Unix file utility. --------------------------------------------------------------------------------Update Information: Security fix for CVE-2022-4510 --------------------------------------------------------------------------------ChangeLog: * Fri Jan 27 2023 Scott Talbert - 2.3.3-3 - Fix path traversal in PFS extractor script (#2165006) * Wed Jan 18 2023 Fedora Release Engineering - 2.3.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_38_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #2165005 - CVE-2022-4510 binwalk: path traversal in PFS extractor script https://bugzilla.redhat.com/show_bug.cgi?id=2165005 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-32eb9d8ee7' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.