Update to version 4.34.0. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-89abd49c4a 2025-07-13 04:19:28.747372+00:00 -------------------------------------------------------------------------------- Name : selenium-manager Product : Fedora 42 Version : 4.34.0 Release : 2.fc42 URL : https://github.com/SeleniumHQ/selenium Summary : Automated driver and browser management for Selenium Description : Selenium Manager is a command-line tool implemented in Rust that provides automated driver and browser management for Selenium. -------------------------------------------------------------------------------- Update Information: Update to version 4.34.0 -------------------------------------------------------------------------------- ChangeLog: * Thu Jul 3 2025 tjuhasz - 4.34.0-1 - Update to version 4.34.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2364898 - CVE-2025-46551 selenium-manager: JRuby-OpenSSL has hostname verification disabled by default [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2364898 [ 2 ] Bug #2364899 - CVE-2025-46551 selenium-manager: JRuby-OpenSSL has hostname verification disabled by default [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2364899 [ 3 ] Bug #2368305 - selenium-manager-4.34.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2368305 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-89abd49c4a' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
* OpenSAML Java: HTTPS Connections Via HTTP Resources Do Not Perform Hostname Verification. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-10235 2015-06-20 13:37:02 -------------------------------------------------------------------------------- Name : opensaml-java Product : Fedora 22 Version : 2.5.3 Release : 9.fc22 URL : / Summary : Java OpenSAML library Description : OpenSAML is a set of open source C++ & Java libraries meant to support developers working with the Security Assertion Markup Language (SAML). OpenSAML 2, the current version, supports SAML 1.0, 1.1, and 2.0. -------------------------------------------------------------------------------- Update Information: * OpenSAML Java: HTTPS Connections Via HTTP Resources Do Not Perform Hostname Verification -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 16 2015 Marek Goldmann - 2.5.3-9 - Use mvn name for tomcat BR * Fri May 8 2015 Marek Goldmann - 2.5.3-8 - RHBZ#1132022, HTTPS Connections Via HTTP Resources Do Not Perform Hostname Verification -------------------------------------------------------------------------------- References: [ 1 ] Bug #1131823 - CVE-2014-3603 OpenSAML Java: HTTPS Connections Via HTTP Resources Do Not Perform Hostname Verification https://bugzilla.redhat.com/show_bug.cgi?id=1131823 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update opensaml-java' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
* OpenSAML Java: HTTPS Connections Via HTTP Resources Do Not Perform Hostname Verification. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-10175 2015-06-20 13:33:40 -------------------------------------------------------------------------------- Name : opensaml-java Product : Fedora 21 Version : 2.5.3 Release : 9.fc21 URL : / Summary : Java OpenSAML library Description : OpenSAML is a set of open source C++ & Java libraries meant to support developers working with the Security Assertion Markup Language (SAML). OpenSAML 2, the current version, supports SAML 1.0, 1.1, and 2.0. -------------------------------------------------------------------------------- Update Information: * OpenSAML Java: HTTPS Connections Via HTTP Resources Do Not Perform Hostname Verification -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 16 2015 Marek Goldmann - 2.5.3-9 - Use mvn name for tomcat BR * Fri May 8 2015 Marek Goldmann - 2.5.3-8 - RHBZ#1132022, HTTPS Connections Via HTTP Resources Do Not Perform Hostname Verification -------------------------------------------------------------------------------- References: [ 1 ] Bug #1131823 - CVE-2014-3603 OpenSAML Java: HTTPS Connections Via HTTP Resources Do Not Perform Hostname Verification https://bugzilla.redhat.com/show_bug.cgi?id=1131823 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update opensaml-java' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
Fixes CVE-2015-1855 ruby: OpenSSL extension hostname matching implementation violates RFC 6125. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-6238 2015-04-17 17:09:58 -------------------------------------------------------------------------------- Name : ruby Product : Fedora 22 Version : 2.2.2 Release : 11.fc22 URL : https://www.ruby-lang.org/ Summary : An interpreter of object-oriented scripting language Description : Ruby is the interpreted scripting language for quick and easy object-oriented programming. It has many features to process text files and to do system management tasks (as in Perl). It is simple, straight-forward, and extensible. -------------------------------------------------------------------------------- Update Information: Fixes CVE-2015-1855 ruby: OpenSSL extension hostname matching implementation violates RFC 6125 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1209982 - CVE-2015-1855 ruby: OpenSSL extension hostname matching implementation violates RFC 6125 [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1209982 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update ruby' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
Get the latest Linux and open source security news straight to your inbox.