Update to latest upstream. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-f513267ac5 2018-05-15 20:03:56.911926 --------------------------------------------------------------------------------Name : matrix-synapse Product : Fedora 28 Version : 0.28.1 Release : 1.fc28 URL : https://github.com/matrix-org/synapse Summary : A Matrix reference homeserver written in Python using Twisted Description : Matrix is an ambitious new ecosystem for open federated Instant Messaging and VoIP. Synapse is a reference "homeserver" implementation of Matrix from the core development team at matrix.org, written in Python/Twisted. It is intended to showcase the concept of Matrix and let folks see the spec in the context of a coded base and let you run your own homeserver and generally help bootstrap the ecosystem. --------------------------------------------------------------------------------Update Information: Update to latest upstream --------------------------------------------------------------------------------ChangeLog: * Tue May 1 2018 Jeremy Cline - 0.28.1-1 - Update to the latest upstream release. --------------------------------------------------------------------------------References: [ 1 ] Bug #1567107 - matrix-synapse-0.28.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1567107 [ 2 ] Bug #1574780 - CVE-2018-10657 matrix-synapse: Injection of malicious events with a depth size of 2^63-1 can cause a denial of service to making rooms unusable [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1574780 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2018-f513267ac5' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html Allpackages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
updated to 2.6.1 (security bugfix release). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-9dd1004ad8 2017-07-14 11:44:22.390822 --------------------------------------------------------------------------------Name : jabberd Product : Fedora 25 Version : 2.6.1 Release : 1.fc25 URL : https://jabberd2.org/ Summary : OpenSource server implementation of the Jabber protocols Description : The jabberd project aims to provide an open-source server implementation of the Jabber protocols for instant messaging and XML routing. The goal of this project is to provide a scalable, reliable, efficient and extensible server that provides a complete set of features and is up to date with the latest protocol revisions. jabberd2 is the next generation of the jabberd server. It has been rewritten from the ground up to be scalable, architecturally sound, and to support the latest protocol extensions coming out of the JSF. This package defaults to use pam and sqlite. --------------------------------------------------------------------------------Update Information: updated to 2.6.1 (security bugfix release) --------------------------------------------------------------------------------References: [ 1 ] Bug #1468568 - CVE-2017-10807 jabberd: CVE-2017-10807 [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1468568 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade jabberd' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Fix certificate validation to work without legacy CAs. ---- empathy 3.12.13 release. For details, see https://mail.gnome.org/archives/ftp-release-list/2017-March/msg00077.html. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2017-8840ec0204 2017-04-01 16:46:19.662323 -------------------------------------------------------------------------------- Name : empathy Product : Fedora 26 Version : 3.12.13 Release : 2.fc26 URL : Summary : Instant Messaging Client for GNOME Description : Empathy is powerful multi-protocol instant messaging client which supports Jabber, GTalk, MSN, IRC, Salut, and other protocols. It is built on top of the Telepathy framework. -------------------------------------------------------------------------------- Update Information: Fix certificate validation to work without legacy CAs. ---- empathy 3.12.13 release. For details, see https://mail.gnome.org/archives/ftp-release-list/2017-March/msg00077.html -------------------------------------------------------------------------------- References: [ 1 ] Bug #1381671 - Fails to connect to Google, with legacy CAs disabled, or with ca-certificates version 2.10 https://bugzilla.redhat.com/show_bug.cgi?id=1381671 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade empathy' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
update. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-7da97a3914 2016-12-11 16:19:11.675039 -------------------------------------------------------------------------------- Name : mcabber Product : Fedora 23 Version : 1.0.4 Release : 1.fc23 URL : https://mcabber.com Summary : Console Jabber instant messaging client Description : mcabber is a console Jabber instant messaging/chat client with SSL support, MUC (Multi-User Chat) support, history logging, commands completion, and external action triggers. -------------------------------------------------------------------------------- Update Information: update -------------------------------------------------------------------------------- References: [ 1 ] Bug #1397220 - mcabber-1.0.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1397220 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade mcabber' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
update. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-30f68ec06b 2016-12-11 16:19:33.990660 -------------------------------------------------------------------------------- Name : mcabber Product : Fedora 24 Version : 1.0.4 Release : 1.fc24 URL : https://mcabber.com Summary : Console Jabber instant messaging client Description : mcabber is a console Jabber instant messaging/chat client with SSL support, MUC (Multi-User Chat) support, history logging, commands completion, and external action triggers. -------------------------------------------------------------------------------- Update Information: update -------------------------------------------------------------------------------- References: [ 1 ] Bug #1397220 - mcabber-1.0.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1397220 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade mcabber' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
update. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-e865601498 2016-12-11 16:19:57.246617 -------------------------------------------------------------------------------- Name : mcabber Product : Fedora 25 Version : 1.0.4 Release : 1.fc25 URL : https://mcabber.com Summary : Console Jabber instant messaging client Description : mcabber is a console Jabber instant messaging/chat client with SSL support, MUC (Multi-User Chat) support, history logging, commands completion, and external action triggers. -------------------------------------------------------------------------------- Update Information: update -------------------------------------------------------------------------------- References: [ 1 ] Bug #1397220 - mcabber-1.0.4 is available https://bugzilla.redhat.com/show_bug.cgi?id=1397220 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade mcabber' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
fixes "Dialback secrets are generated using a non-cryptographically secure PRNG". -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-ba6fd98830 2016-02-29 02:06:34.731967 -------------------------------------------------------------------------------- Name : jabberd Product : Fedora 23 Version : 2.3.3 Release : 7.fc23 URL : https://jabberd2.org/ Summary : OpenSource server implementation of the Jabber protocols Description : The jabberd project aims to provide an open-source server implementation of the Jabber protocols for instant messaging and XML routing. The goal of this project is to provide a scalable, reliable, efficient and extensible server that provides a complete set of features and is up to date with the latest protocol revisions. jabberd2 is the next generation of the jabberd server. It has been rewritten from the ground up to be scalable, architecturally sound, and to support the latest protocol extensions coming out of the JSF. This package defaults to use pam and sqlite. -------------------------------------------------------------------------------- Update Information: fixes "Dialback secrets are generated using a non-cryptographically secure PRNG" -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update jabberd' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
telegram-cli-1.3.1-7.20150730git2052f4.fc22 - Hardened builds on
Get the latest Linux and open source security news straight to your inbox.