1.26.11. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2026-e77ad9d792 2026-04-01 00:56:24.864678+00:00 -------------------------------------------------------------------------------- Name : gst-editing-services Product : Fedora 43 Version : 1.26.11 Release : 1.fc43 URL : Summary : Gstreamer editing services Description : This is a high-level library for facilitating the creation of audio/video non-linear editors. -------------------------------------------------------------------------------- Update Information: 1.26.11 -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 30 2026 Gwyn Ciesla - 1.26.11-1 - 1.26.11 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-e77ad9d792' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Update to 142.0.7444.175 * High CVE-2025-13223: Type Confusion in V8 * High CVE-2025-13224: Type Confusion in V8. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-ee528a170d 2025-11-26 01:21:27.026049+00:00 -------------------------------------------------------------------------------- Name : chromium Product : Fedora 41 Version : 142.0.7444.175 Release : 2.fc41 URL : http://www.chromium.org/Home Summary : A WebKit (Blink) powered web browser that Google doesn't want you to use Description : Chromium is an open-source web browser, powered by WebKit (Blink). -------------------------------------------------------------------------------- Update Information: Update to 142.0.7444.175 * High CVE-2025-13223: Type Confusion in V8 * High CVE-2025-13224: Type Confusion in V8 -------------------------------------------------------------------------------- ChangeLog: * Wed Nov 19 2025 Than Ngo - 142.0.7444.175-2 - Fix typos in chromium.conf * Tue Nov 18 2025 Than Ngo - 142.0.7444.175-1 - Update to 142.0.7444.175 * High CVE-2025-13223: Type Confusion in V8 * High CVE-2025-13224: Type Confusion in V8 * Sat Nov 15 2025 LuK1337 - 142.0.7444.162-2 - Disable LensOverlay feature by default * Thu Nov 13 2025 Mamoru TASAKA - 142.0.7444.162-2 - Rebuild for ffmpeg 8 again -------------------------------------------------------------------------------- References: [ 1 ] Bug #2413748 - [abrt] chromium: ImmediateCrash(): chromium-browser killed by SIGTRAP https://bugzilla.redhat.com/show_bug.cgi?id=2413748 [ 2 ] Bug #2414369 - CVE-2025-12910 chromium: Inappropriate implementation in Passkeys [epel-8] https://bugzilla.redhat.com/show_bug.cgi?id=2414369 [ 3 ] Bug #2414371 - CVE-2025-12910 chromium: Inappropriate implementation in Passkeys [epel-9] https://bugzilla.redhat.com/show_bug.cgi?id=2414371 [ 4 ] Bug #2414374 - CVE-2025-12910chromium: Inappropriate implementation in Passkeys [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2414374 [ 5 ] Bug #2414376 - CVE-2025-12910 chromium: Inappropriate implementation in Passkeys [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2414376 [ 6 ] Bug #2414378 - CVE-2025-12910 chromium: Inappropriate implementation in Passkeys [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2414378 [ 7 ] Bug #2414380 - CVE-2025-12908 chromium: Insufficient validation of untrusted input in Downloads [epel-10] https://bugzilla.redhat.com/show_bug.cgi?id=2414380 [ 8 ] Bug #2414381 - CVE-2025-12908 chromium: Insufficient validation of untrusted input in Downloads [epel-8] https://bugzilla.redhat.com/show_bug.cgi?id=2414381 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-ee528a170d' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Update to 135.0.7049.52 High CVE-2025-3066: Use after free in Navigations Medium CVE-2025-3067: Inappropriate implementation in Custom Tabs Medium CVE-2025-3068: Inappropriate implementation in Intents Medium CVE-2025-3069: Inappropriate implementation in Extensions. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-c4a9f54d14 2025-04-11 18:19:12.062612+00:00 -------------------------------------------------------------------------------- Name : chromium Product : Fedora 42 Version : 135.0.7049.52 Release : 2.fc42 URL : http://www.chromium.org/Home Summary : A WebKit (Blink) powered web browser that Google doesn't want you to use Description : Chromium is an open-source web browser, powered by WebKit (Blink). -------------------------------------------------------------------------------- Update Information: Update to 135.0.7049.52 High CVE-2025-3066: Use after free in Navigations Medium CVE-2025-3067: Inappropriate implementation in Custom Tabs Medium CVE-2025-3068: Inappropriate implementation in Intents Medium CVE-2025-3069: Inappropriate implementation in Extensions Medium CVE-2025-3070: Insufficient validation of untrusted input in Extensions Low CVE-2025-3071: Inappropriate implementation in Navigations Low CVE-2025-3072: Inappropriate implementation in Custom Tabs Low CVE-2025-3073: Inappropriate implementation in Autofill Low CVE-2025-3074: Inappropriate implementation in Downloads -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 2 2025 Jan Grulich - 135.0.7049.52-2 - Add CFI suppressions for inline PipeWire functions * Tue Apr 1 2025 Than Ngo - 135.0.7049.52-1 - Update to 135.0.7049.52 * Fri Mar 28 2025 Than Ngo - 135.0.7049.41-1 - Update to 135.0.7049.41 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2356787 - CVE-2025-3066 chromium: Useafter free in Navigations [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356787 [ 2 ] Bug #2356788 - CVE-2025-3066 chromium: Use after free in Navigations [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356788 [ 3 ] Bug #2356789 - CVE-2025-3068 chromium: Inappropriate implementation in Intents [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356789 [ 4 ] Bug #2356790 - CVE-2025-3068 chromium: Inappropriate implementation in Intents [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356790 [ 5 ] Bug #2356792 - CVE-2025-3072 chromium: Inappropriate implementation in Custom Tabs [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356792 [ 6 ] Bug #2356793 - CVE-2025-3072 chromium: Inappropriate implementation in Custom Tabs [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356793 [ 7 ] Bug #2356794 - CVE-2025-3073 chromium: Inappropriate implementation in Autofill [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356794 [ 8 ] Bug #2356795 - CVE-2025-3073 chromium: Inappropriate implementation in Autofill [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356795 [ 9 ] Bug #2356796 - CVE-2025-3070 chromium: Insufficient validation of untrusted input in Extensions [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356796 [ 10 ] Bug #2356797 - CVE-2025-3070 chromium: Insufficient validation of untrusted input in Extensions [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356797 [ 11 ] Bug #2356798 - CVE-2025-3069 chromium: Inappropriate implementation in Extensions [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356798 [ 12 ] Bug #2356799 - CVE-2025-3069 chromium: Inappropriate implementation in Extensions [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356799 [ 13 ] Bug #2356800 - CVE-2025-3071 chromium: Inappropriate implementation in Navigations [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2356800 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-c4a9f54d14' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
* bsc#1229013 Cross-References: * CVE-2024-7348 . # Security update for postgresql16 Announcement ID: SUSE-SU-2024:3153-1 Rating: important References: * bsc#1229013 Cross-References: * CVE-2024-7348 CVSS scores: * CVE-2024-7348 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2024-7348 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2024-7348 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.5 * openSUSE Leap 15.6 * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 An update that solves one vulnerability can now be installed. ## Description: This update for postgresql16 fixes the following issues: * Upgrade to 12.20 (bsc#1229013) * CVE-2024-7348: PostgreSQL relation replacement during pg_dump executes arbitrary SQL. (bsc#1229013) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.5 zypper in -t patch openSUSE-SLE-15.5-2024-3153=1 * openSUSE Leap 15.6 zypper in -t patch openSUSE-SLE-15.6-2024-3153=1 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-HPC-15-SP2-LTSS-2024-3153=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patchSUSE-SLE-Product-HPC-15-SP3-LTSS-2024-3153=1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 zypper in -t patch SUSE-SLE-Product-SLES-15-SP2-LTSS-2024-3153=1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2024-3153=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP2-2024-3153=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2024-3153=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2024-3153=1 ## Package List: * openSUSE Leap 15.5 (aarch64 ppc64le s390x x86_64) * postgresql12-debugsource-12.20-150200.8.63.1 * postgresql12-plpython-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-12.20-150200.8.63.1 * postgresql12-server-debuginfo-12.20-150200.8.63.1 * postgresql12-contrib-debuginfo-12.20-150200.8.63.1 * postgresql12-contrib-12.20-150200.8.63.1 * postgresql12-server-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-test-12.20-150200.8.63.1 * postgresql12-pltcl-debuginfo-12.20-150200.8.63.1 * postgresql12-server-12.20-150200.8.63.1 * postgresql12-llvmjit-debuginfo-12.20-150200.8.63.1 * postgresql12-12.20-150200.8.63.1 * postgresql12-llvmjit-12.20-150200.8.63.1 * postgresql12-llvmjit-devel-12.20-150200.8.63.1 * postgresql12-server-devel-12.20-150200.8.63.1 * postgresql12-pltcl-12.20-150200.8.63.1 * postgresql12-devel-12.20-150200.8.63.1 * postgresql12-debuginfo-12.20-150200.8.63.1 * postgresql12-plperl-12.20-150200.8.63.1 * postgresql12-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-plperl-debuginfo-12.20-150200.8.63.1 * openSUSE Leap 15.5 (noarch) * postgresql12-docs-12.20-150200.8.63.1 * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64) * postgresql12-debugsource-12.20-150200.8.63.1 * postgresql12-plpython-debuginfo-12.20-150200.8.63.1 *postgresql12-plpython-12.20-150200.8.63.1 * postgresql12-server-debuginfo-12.20-150200.8.63.1 * postgresql12-contrib-debuginfo-12.20-150200.8.63.1 * postgresql12-contrib-12.20-150200.8.63.1 * postgresql12-server-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-test-12.20-150200.8.63.1 * postgresql12-pltcl-debuginfo-12.20-150200.8.63.1 * postgresql12-server-12.20-150200.8.63.1 * postgresql12-llvmjit-debuginfo-12.20-150200.8.63.1 * postgresql12-12.20-150200.8.63.1 * postgresql12-llvmjit-12.20-150200.8.63.1 * postgresql12-llvmjit-devel-12.20-150200.8.63.1 * postgresql12-server-devel-12.20-150200.8.63.1 * postgresql12-pltcl-12.20-150200.8.63.1 * postgresql12-devel-12.20-150200.8.63.1 * postgresql12-debuginfo-12.20-150200.8.63.1 * postgresql12-plperl-12.20-150200.8.63.1 * postgresql12-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-plperl-debuginfo-12.20-150200.8.63.1 * openSUSE Leap 15.6 (noarch) * postgresql12-docs-12.20-150200.8.63.1 * SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS 15-SP2 (aarch64 x86_64) * postgresql12-plperl-12.20-150200.8.63.1 * postgresql12-contrib-debuginfo-12.20-150200.8.63.1 * postgresql12-contrib-12.20-150200.8.63.1 * postgresql12-server-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debugsource-12.20-150200.8.63.1 * postgresql12-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debuginfo-12.20-150200.8.63.1 * postgresql12-plperl-debuginfo-12.20-150200.8.63.1 * postgresql12-pltcl-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-12.20-150200.8.63.1 * postgresql12-12.20-150200.8.63.1 * postgresql12-server-12.20-150200.8.63.1 * postgresql12-server-debuginfo-12.20-150200.8.63.1 * postgresql12-server-devel-12.20-150200.8.63.1 * postgresql12-pltcl-12.20-150200.8.63.1 * postgresql12-devel-12.20-150200.8.63.1 * SUSE Linux Enterprise High Performance Computing 15SP2 LTSS 15-SP2 (noarch) * postgresql12-docs-12.20-150200.8.63.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * postgresql12-plperl-12.20-150200.8.63.1 * postgresql12-contrib-debuginfo-12.20-150200.8.63.1 * postgresql12-contrib-12.20-150200.8.63.1 * postgresql12-server-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debugsource-12.20-150200.8.63.1 * postgresql12-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debuginfo-12.20-150200.8.63.1 * postgresql12-plperl-debuginfo-12.20-150200.8.63.1 * postgresql12-pltcl-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-12.20-150200.8.63.1 * postgresql12-12.20-150200.8.63.1 * postgresql12-server-12.20-150200.8.63.1 * postgresql12-server-debuginfo-12.20-150200.8.63.1 * postgresql12-server-devel-12.20-150200.8.63.1 * postgresql12-pltcl-12.20-150200.8.63.1 * postgresql12-devel-12.20-150200.8.63.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (noarch) * postgresql12-docs-12.20-150200.8.63.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (aarch64 ppc64le s390x x86_64) * postgresql12-plperl-12.20-150200.8.63.1 * postgresql12-contrib-debuginfo-12.20-150200.8.63.1 * postgresql12-contrib-12.20-150200.8.63.1 * postgresql12-server-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debugsource-12.20-150200.8.63.1 * postgresql12-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debuginfo-12.20-150200.8.63.1 * postgresql12-plperl-debuginfo-12.20-150200.8.63.1 * postgresql12-pltcl-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-12.20-150200.8.63.1 * postgresql12-12.20-150200.8.63.1 * postgresql12-server-12.20-150200.8.63.1 * postgresql12-server-debuginfo-12.20-150200.8.63.1 * postgresql12-server-devel-12.20-150200.8.63.1 *postgresql12-pltcl-12.20-150200.8.63.1 * postgresql12-devel-12.20-150200.8.63.1 * SUSE Linux Enterprise Server 15 SP2 LTSS 15-SP2 (noarch) * postgresql12-docs-12.20-150200.8.63.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (aarch64 ppc64le s390x x86_64) * postgresql12-plperl-12.20-150200.8.63.1 * postgresql12-contrib-debuginfo-12.20-150200.8.63.1 * postgresql12-contrib-12.20-150200.8.63.1 * postgresql12-server-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debugsource-12.20-150200.8.63.1 * postgresql12-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debuginfo-12.20-150200.8.63.1 * postgresql12-plperl-debuginfo-12.20-150200.8.63.1 * postgresql12-pltcl-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-12.20-150200.8.63.1 * postgresql12-12.20-150200.8.63.1 * postgresql12-server-12.20-150200.8.63.1 * postgresql12-server-debuginfo-12.20-150200.8.63.1 * postgresql12-server-devel-12.20-150200.8.63.1 * postgresql12-pltcl-12.20-150200.8.63.1 * postgresql12-devel-12.20-150200.8.63.1 * SUSE Linux Enterprise Server 15 SP3 LTSS 15-SP3 (noarch) * postgresql12-docs-12.20-150200.8.63.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (ppc64le x86_64) * postgresql12-plperl-12.20-150200.8.63.1 * postgresql12-contrib-debuginfo-12.20-150200.8.63.1 * postgresql12-contrib-12.20-150200.8.63.1 * postgresql12-server-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debugsource-12.20-150200.8.63.1 * postgresql12-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debuginfo-12.20-150200.8.63.1 * postgresql12-plperl-debuginfo-12.20-150200.8.63.1 * postgresql12-pltcl-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-12.20-150200.8.63.1 * postgresql12-12.20-150200.8.63.1 * postgresql12-server-12.20-150200.8.63.1 *postgresql12-server-debuginfo-12.20-150200.8.63.1 * postgresql12-server-devel-12.20-150200.8.63.1 * postgresql12-pltcl-12.20-150200.8.63.1 * postgresql12-devel-12.20-150200.8.63.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 (noarch) * postgresql12-docs-12.20-150200.8.63.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (ppc64le x86_64) * postgresql12-plperl-12.20-150200.8.63.1 * postgresql12-contrib-debuginfo-12.20-150200.8.63.1 * postgresql12-contrib-12.20-150200.8.63.1 * postgresql12-server-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debugsource-12.20-150200.8.63.1 * postgresql12-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debuginfo-12.20-150200.8.63.1 * postgresql12-plperl-debuginfo-12.20-150200.8.63.1 * postgresql12-pltcl-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-12.20-150200.8.63.1 * postgresql12-12.20-150200.8.63.1 * postgresql12-server-12.20-150200.8.63.1 * postgresql12-server-debuginfo-12.20-150200.8.63.1 * postgresql12-server-devel-12.20-150200.8.63.1 * postgresql12-pltcl-12.20-150200.8.63.1 * postgresql12-devel-12.20-150200.8.63.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 (noarch) * postgresql12-docs-12.20-150200.8.63.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * postgresql12-plperl-12.20-150200.8.63.1 * postgresql12-contrib-debuginfo-12.20-150200.8.63.1 * postgresql12-contrib-12.20-150200.8.63.1 * postgresql12-server-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debugsource-12.20-150200.8.63.1 * postgresql12-devel-debuginfo-12.20-150200.8.63.1 * postgresql12-debuginfo-12.20-150200.8.63.1 * postgresql12-plperl-debuginfo-12.20-150200.8.63.1 * postgresql12-pltcl-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-debuginfo-12.20-150200.8.63.1 * postgresql12-plpython-12.20-150200.8.63.1 * postgresql12-12.20-150200.8.63.1 *postgresql12-server-12.20-150200.8.63.1 * postgresql12-server-debuginfo-12.20-150200.8.63.1 * postgresql12-server-devel-12.20-150200.8.63.1 * postgresql12-pltcl-12.20-150200.8.63.1 * postgresql12-devel-12.20-150200.8.63.1 * SUSE Enterprise Storage 7.1 (noarch) * postgresql12-docs-12.20-150200.8.63.1 ## References: * https://www.suse.com/security/cve/CVE-2024-7348.html * https://bugzilla.suse.com/show_bug.cgi?id=1229013 . SUSE's recent PostgreSQL 16 security update highlights a critical vulnerability. Users are urged to recognize the patch's significance and seriousness to maintain security. PostgreSQL Security, SUSE Updates, Security Patch, Arbitrary SQL Execution. . Severity: Important. LinuxSecurity.com Team
Change for system JDK from 17 to 21. upstream security release 122.0.6261.94 High CVE-2024-1938: Type Confusion in V8 High CVE-2024-1939: Type Confusion in V8 fixed bug with requires. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-129d8ca6fc 2024-03-07 22:24:39.963937 -------------------------------------------------------------------------------- Name : wsdl4j Product : Fedora 40 Version : 1.6.3 Release : 30.fc40 URL : https://sourceforge.net/projects/wsdl4j/ Summary : Web Services Description Language Toolkit for Java Description : The Web Services Description Language for Java Toolkit (WSDL4J) allows the creation, representation, and manipulation of WSDL documents describing services. This code base will eventually serve as a reference implementation of the standard created by JSR110. -------------------------------------------------------------------------------- Update Information: Change for system JDK from 17 to 21. upstream security release 122.0.6261.94 High CVE-2024-1938: Type Confusion in V8 High CVE-2024-1939: Type Confusion in V8 fixed bug with requires Automatic update for lucene-9.9.2-1.fc40. bump java source/target to 1.8, fixes 2266639 -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 2 2024 Jiri Vanek - 0:1.6.3-30 - Rebuilt for java-21-openjdk as system jdk -------------------------------------------------------------------------------- References: [ 1 ] Bug #2123726 - consoleImageViewer crashes at start https://bugzilla.redhat.com/show_bug.cgi?id=2123726 [ 2 ] Bug #2261062 - directory-maven-plugin: FTBFS in Fedora rawhide/f40 https://bugzilla.redhat.com/show_bug.cgi?id=2261062 [ 3 ] Bug #2266639 - directory-maven-plugin fails to build with java-21-openjdk https://bugzilla.redhat.com/show_bug.cgi?id=2266639 [ 4 ] Bug #2266934 - CVE-2024-1938 chromium: typeconfusion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266934 [ 5 ] Bug #2266937 - CVE-2024-1939 chromium: type confusion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266937 [ 6 ] Bug #2267486 - Include Java 21 as system Java Change in Fedora 40 Beta https://bugzilla.redhat.com/show_bug.cgi?id=2267486 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-129d8ca6fc' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Change for system JDK from 17 to 21. upstream security release 122.0.6261.94 High CVE-2024-1938: Type Confusion in V8 High CVE-2024-1939: Type Confusion in V8 fixed bug with requires. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-129d8ca6fc 2024-03-07 22:24:39.963937 -------------------------------------------------------------------------------- Name : univocity-parsers Product : Fedora 40 Version : 2.9.1 Release : 13.fc40 URL : https://github.com/uniVocity/univocity-parsers Summary : Collection of parsers for Java Description : uniVocity-parsers is a suite of extremely fast and reliable parsers for Java. It provides a consistent interface for handling different file formats, and a solid framework for the development of new parsers. -------------------------------------------------------------------------------- Update Information: Change for system JDK from 17 to 21. upstream security release 122.0.6261.94 High CVE-2024-1938: Type Confusion in V8 High CVE-2024-1939: Type Confusion in V8 fixed bug with requires Automatic update for lucene-9.9.2-1.fc40. bump java source/target to 1.8, fixes 2266639 -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 2 2024 Jiri Vanek - 2.9.1-13 - Rebuilt for java-21-openjdk as system jdk * Tue Feb 20 2024 Marian Koncek - 2.9.1-12 - Update Java source/target to 1.8 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2123726 - consoleImageViewer crashes at start https://bugzilla.redhat.com/show_bug.cgi?id=2123726 [ 2 ] Bug #2261062 - directory-maven-plugin: FTBFS in Fedora rawhide/f40 https://bugzilla.redhat.com/show_bug.cgi?id=2261062 [ 3 ] Bug #2266639 - directory-maven-plugin fails to build with java-21-openjdk https://bugzilla.redhat.com/show_bug.cgi?id=2266639 [ 4 ] Bug #2266934 -CVE-2024-1938 chromium: type confusion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266934 [ 5 ] Bug #2266937 - CVE-2024-1939 chromium: type confusion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266937 [ 6 ] Bug #2267486 - Include Java 21 as system Java Change in Fedora 40 Beta https://bugzilla.redhat.com/show_bug.cgi?id=2267486 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-129d8ca6fc' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Change for system JDK from 17 to 21. upstream security release 122.0.6261.94 High CVE-2024-1938: Type Confusion in V8 High CVE-2024-1939: Type Confusion in V8 fixed bug with requires. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-129d8ca6fc 2024-03-07 22:24:39.963937 -------------------------------------------------------------------------------- Name : osgi-compendium Product : Fedora 40 Version : 7.0.0 Release : 20.fc40 URL : https://www.osgi.org/ Summary : Interfaces and Classes for use in compiling OSGi bundles Description : OSGi Compendium, Interfaces and Classes for use in compiling bundles. -------------------------------------------------------------------------------- Update Information: Change for system JDK from 17 to 21. upstream security release 122.0.6261.94 High CVE-2024-1938: Type Confusion in V8 High CVE-2024-1939: Type Confusion in V8 fixed bug with requires Automatic update for lucene-9.9.2-1.fc40. bump java source/target to 1.8, fixes 2266639 -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 2 2024 Jiri Vanek - 7.0.0-20 - Rebuilt for java-21-openjdk as system jdk * Fri Mar 1 2024 Jiri Vanek - 7.0.0-19 - bump of release for for java-21-openjdk as system jdk -------------------------------------------------------------------------------- References: [ 1 ] Bug #2123726 - consoleImageViewer crashes at start https://bugzilla.redhat.com/show_bug.cgi?id=2123726 [ 2 ] Bug #2261062 - directory-maven-plugin: FTBFS in Fedora rawhide/f40 https://bugzilla.redhat.com/show_bug.cgi?id=2261062 [ 3 ] Bug #2266639 - directory-maven-plugin fails to build with java-21-openjdk https://bugzilla.redhat.com/show_bug.cgi?id=2266639 [ 4 ] Bug #2266934 - CVE-2024-1938 chromium: type confusion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266934 [ 5 ] Bug#2266937 - CVE-2024-1939 chromium: type confusion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266937 [ 6 ] Bug #2267486 - Include Java 21 as system Java Change in Fedora 40 Beta https://bugzilla.redhat.com/show_bug.cgi?id=2267486 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-129d8ca6fc' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Change for system JDK from 17 to 21. upstream security release 122.0.6261.94 High CVE-2024-1938: Type Confusion in V8 High CVE-2024-1939: Type Confusion in V8 fixed bug with requires. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-129d8ca6fc 2024-03-07 22:24:39.963937 -------------------------------------------------------------------------------- Name : modello Product : Fedora 40 Version : 2.1.2 Release : 6.fc40 URL : https://codehaus-plexus.github.io/modello/ Summary : Modello Data Model toolkit Description : Modello is a Data Model toolkit in use by the Apache Maven Project. Modello is a framework for code generation from a simple model. Modello generates code from a simple model format based on a plugin architecture, various types of code and descriptors can be generated from the single model, including Java POJOs, XML marshallers/unmarshallers, XSD and documentation. -------------------------------------------------------------------------------- Update Information: Change for system JDK from 17 to 21. upstream security release 122.0.6261.94 High CVE-2024-1938: Type Confusion in V8 High CVE-2024-1939: Type Confusion in V8 fixed bug with requires Automatic update for lucene-9.9.2-1.fc40. bump java source/target to 1.8, fixes 2266639 -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 2 2024 Jiri Vanek - 2.1.2-6 - Rebuilt for java-21-openjdk as system jdk * Fri Mar 1 2024 Jiri Vanek - 2.1.2-5 - bump of release for for java-21-openjdk as system jdk -------------------------------------------------------------------------------- References: [ 1 ] Bug #2123726 - consoleImageViewer crashes at start https://bugzilla.redhat.com/show_bug.cgi?id=2123726 [ 2 ] Bug #2261062 - directory-maven-plugin: FTBFS in Fedora rawhide/f40 https://bugzilla.redhat.com/show_bug.cgi?id=2261062 [ 3 ] Bug#2266639 - directory-maven-plugin fails to build with java-21-openjdk https://bugzilla.redhat.com/show_bug.cgi?id=2266639 [ 4 ] Bug #2266934 - CVE-2024-1938 chromium: type confusion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266934 [ 5 ] Bug #2266937 - CVE-2024-1939 chromium: type confusion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266937 [ 6 ] Bug #2267486 - Include Java 21 as system Java Change in Fedora 40 Beta https://bugzilla.redhat.com/show_bug.cgi?id=2267486 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-129d8ca6fc' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.