Vyper ver. 0.4.1 Another one small fix Fix for a few known issues. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-c7fae57601 2025-03-12 02:01:22.256379+00:00 -------------------------------------------------------------------------------- Name : vyper Product : Fedora 41 Version : 0.4.1 Release : 1.fc41 URL : https://vyperlang.org Summary : Pythonic Smart Contract Language for the EVM Description : Pythonic Smart Contract Language for the EVM. -------------------------------------------------------------------------------- Update Information: Vyper ver. 0.4.1 Another one small fix Fix for a few known issues -------------------------------------------------------------------------------- ChangeLog: * Mon Mar 3 2025 Peter Lemenkov - 0.4.1-1 - Vyper ver. 0.4.1 * Thu Feb 27 2025 Peter Lemenkov - 0.4.0-5 - Fix for one more issue * Thu Feb 27 2025 Peter Lemenkov - 0.4.0-4 - Fix few issues * Sun Jan 19 2025 Fedora Release Engineering - 0.4.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2318844 - vyper-0.4.1b4 is available https://bugzilla.redhat.com/show_bug.cgi?id=2318844 [ 2 ] Bug #2337821 - CVE-2025-21607 vyper: Success of Certain Precompile Calls not Checked in Vyper [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2337821 [ 3 ] Bug #2347303 - CVE-2025-26622 vyper: sqrt doesn't define rounding behavior in Vyper [fedora-40] https://bugzilla.redhat.com/show_bug.cgi?id=2347303 [ 4 ] Bug #2347304 - CVE-2025-26622 vyper: sqrt doesn't define rounding behavior in Vyper [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2347304 [ 5 ] Bug #2347306 - CVE-2025-27104 vyper: double eval in For List Iter in Vyper [fedora-40] https://bugzilla.redhat.com/show_bug.cgi?id=2347306 [6 ] Bug #2347307 - CVE-2025-27104 vyper: double eval in For List Iter in Vyper [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2347307 [ 7 ] Bug #2347310 - CVE-2025-27105 vyper: AugAssign evaluation order causing OOB write within the object in Vyper [fedora-40] https://bugzilla.redhat.com/show_bug.cgi?id=2347310 [ 8 ] Bug #2347311 - CVE-2025-27105 vyper: AugAssign evaluation order causing OOB write within the object in Vyper [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2347311 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-c7fae57601' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Fix mistakes in Wayland wrapper change ---- Fixes Wayland issue when running from terminal ---- Update sound touch library, fixes some known security issues.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-14cdf5fdf8 2020-04-25 02:59:31.861666 --------------------------------------------------------------------------------Name : dolphin-emu Product : Fedora 31 Version : 5.0.11617 Release : 7.fc31 URL : https://dolphin-emu.org/ Summary : GameCube / Wii / Triforce Emulator Description : Dolphin is a Gamecube, Wii and Triforce (the arcade machine based on the Gamecube) emulator, which supports full HD video with several enhancements such as compatibility with all PC controllers, turbo speed, networked multiplayer, and more. Most games run perfectly or with minor bugs. --------------------------------------------------------------------------------Update Information: Fix mistakes in Wayland wrapper change ---- Fixes Wayland issue when running from terminal ---- Update sound touch library, fixes some known security issues. --------------------------------------------------------------------------------ChangeLog: * Mon Apr 13 2020 Jeremy Newton - 5.0.11617-7 - Forgot shebang in wrapper - Symlink manpage for dolphin-emu-x11 * Mon Apr 13 2020 Jeremy Newton - 5.0.11617-6 - Fix permissions of wrapper script * Mon Apr 13 2020 Jeremy Newton - 5.0.11617-5 - Add wrapper script for xwayland, fixes RH#1823234 * Sun Apr 5 2020 Jeremy Newton - 5.0.11617-4 - Update bundled soundtouch to 2.1.2 --------------------------------------------------------------------------------References: [ 1 ] Bug #1823234 - dolphin fails to initialize video backend under wayland https://bugzilla.redhat.com/show_bug.cgi?id=1823234 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnfupgrade --advisory FEDORA-2020-14cdf5fdf8' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
This update removes the filemanager and _samples directories from the embedded FCKeditor, they contain code with know security vulnerabilities, even though that code couldn't be invoked when Moin was used with the default settings. Moin was probably not affected, but installing this update is still recommended as a security measure. CVE-2009-2265 is the related CVE identifier.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-7761 2009-07-19 03:26:20 -------------------------------------------------------------------------------- Name : moin Product : Fedora 10 Version : 1.6.4 Release : 3.fc10 URL : http://moinmo.in/ Summary : MoinMoin is a WikiEngine to collaborate on easily editable web pages Description : MoinMoin is an advanced, easy to use and extensible WikiEngine with a large community of users. Said in a few words, it is about collaboration on easily editable web pages. -------------------------------------------------------------------------------- Update Information: This update removes the filemanager and _samples directories from the embedded FCKeditor, they contain code with know security vulnerabilities, even though that code couldn't be invoked when Moin was used with the default settings. Moin was probably not affected, but installing this update is still recommended as a security measure. CVE-2009-2265 is the related CVE identifier. -------------------------------------------------------------------------------- ChangeLog: * Sun Jul 12 2009 Ville-Pekka Vainio 1.6.4-3 - Remove the filemanager and _samples directories from the embedded FCKeditor, they contain code with know security vulnerabilities, even though that code probably couldn't be invoked when moin was used with the default settings. - Fixes rhbz #509924, related to CVE-2009-2265 * Sat Jun 13 2009 Ville-Pekka Vainio 1.6.4-2 - Hierarchical ACL security fix from 1.8.4, 1.8 HG 897cdbe9e8f2 - Details athttp://moinmo.in/SecurityFixes#moin_1.8.3 - Convert CHANGES to UTF-8 * Mon Apr 20 2009 Ville-Pekka Vainio 1.6.4-1 - Update to 1.6.4 - CVE-2008-3381 fixed upstream - Re-fix CVE-2008-0781, upstream seems to have dropped the fix in 1.6, used part of upstream 1.5 db212dfc58ef, backported upstream 1.7 5f51246a4df1 and 269a1fbc3ed7 - Fix CVE-2009-0260, patch from Debian etch - Fix CVE-2009-0312 - Fix AttachFile escaping problems, backported upstream 1.7 5c4043e651b3 -------------------------------------------------------------------------------- References: [ 1 ] Bug #509924 - CVE-2009-2265 moin: embedded fckeditor multiple directory traversal vulns https://bugzilla.redhat.com/show_bug.cgi?id=509924 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update moin' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list
https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-3.0/. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-3893 2009-04-22 19:42:31 -------------------------------------------------------------------------------- Name : gnome-web-photo Product : Fedora 10 Version : 0.3 Release : 17.fc10 URL : https://download.gnome.org/sources/gnome-web-photo/0.3/ Summary : HTML pages thumbnailer Description : gnome-web-photo contains a thumbnailer that will be used by GNOME applications, including the file manager, to generate screenshots of web pages. -------------------------------------------------------------------------------- Update Information: https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-3.0/ -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 21 2009 Christopher Aillon - 0.3-17 - Rebuild against newer gecko * Fri Mar 27 2009 Christopher Aillon - 0.3-16 - Rebuild against newer gecko * Fri Mar 6 2009 Jan Horak - 0.3-15 - Rebuild against newer gecko * Wed Feb 4 2009 Christopher Aillon - 0.3-14 - Rebuild against newer gecko * Wed Dec 17 2008 Christopher Aillon - 0.3-13 - Rebuild against newer gecko -------------------------------------------------------------------------------- References: [ 1 ] Bug #496252 - CVE-2009-1302 Firefox 3 Layout engine crashes https://bugzilla.redhat.com/show_bug.cgi?id=496252 [ 2 ] Bug #496253 - CVE-2009-1303 Firefox 2 and 3 Layout engine crash https://bugzilla.redhat.com/show_bug.cgi?id=496253 [ 3 ] Bug #496255 - CVE-2009-1304 Firefox 3 JavaScript engine crashes https://bugzilla.redhat.com/show_bug.cgi?id=496255 [ 4 ] Bug #496256 - CVE-2009-1305 Firefox 2 and 3 JavaScript engine crash https://bugzilla.redhat.com/show_bug.cgi?id=496256 [ 5 ] Bug #486704 - CVE-2009-0652 firefox: does not properly prevent the literal rendering of homoglyphcharacters in IDN domain names (spoof URLs and conduct phishing attacks) https://bugzilla.redhat.com/show_bug.cgi?id=486704 [ 6 ] Bug #496262 - CVE-2009-1306 Firefox jar: scheme ignores the content-disposition: header on the inner URI https://bugzilla.redhat.com/show_bug.cgi?id=496262 [ 7 ] Bug #496263 - CVE-2009-1307 Firefox Same-origin violations when Adobe Flash loaded via view-source: protocol https://bugzilla.redhat.com/show_bug.cgi?id=496263 [ 8 ] Bug #496266 - CVE-2009-1308 Firefox XSS hazard using third-party stylesheets and XBL bindings https://bugzilla.redhat.com/show_bug.cgi?id=496266 [ 9 ] Bug #496267 - CVE-2009-1309 Firefox Same-origin violations in XMLHttpRequest and XPCNativeWrapper.toString https://bugzilla.redhat.com/show_bug.cgi?id=496267 [ 10 ] Bug #496270 - CVE-2009-1310 Firefox Malicious search plugins can inject code into arbitrary sites https://bugzilla.redhat.com/show_bug.cgi?id=496270 [ 11 ] Bug #496271 - CVE-2009-1311 Firefox POST data sent to wrong site when saving web page with embedded frame https://bugzilla.redhat.com/show_bug.cgi?id=496271 [ 12 ] Bug #496274 - CVE-2009-1312 Firefox allows Refresh header to redirect to javascript: URIs https://bugzilla.redhat.com/show_bug.cgi?id=496274 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update gnome-web-photo' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailinglist
https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-3.0/. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-3893 2009-04-22 19:42:31 -------------------------------------------------------------------------------- Name : devhelp Product : Fedora 10 Version : 0.22 Release : 7.fc10 URL : Summary : API document browser Description : An API document browser for GNOME 2. -------------------------------------------------------------------------------- Update Information: https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-3.0/ -------------------------------------------------------------------------------- ChangeLog: * Tue Apr 21 2009 Christopher Aillon - 0.22-7 - Rebuild against newer gecko * Fri Mar 27 2009 Christopher Aillon - 0.22-6 - Rebuild against newer gecko * Fri Mar 6 2009 Jan Horak - 0.22-5 - Rebuild against newer gecko * Mon Feb 16 2009 - Bastien Nocera - 0.22-4 - Remove gecko BRs - Fix displaying web pages, WebKit doesn't like local filenames as URIs * Wed Feb 4 2009 Christopher Aillon - 0.22-3 - Rebuild against newer gecko * Wed Dec 17 2008 Christopher Aillon - 0.22-2 - Rebuild against newer gecko * Mon Dec 1 2008 Matthew Barnes - 0.22-1 - Update to 0.22 - Add BR: WebKit-gtk-devel -------------------------------------------------------------------------------- References: [ 1 ] Bug #496252 - CVE-2009-1302 Firefox 3 Layout engine crashes https://bugzilla.redhat.com/show_bug.cgi?id=496252 [ 2 ] Bug #496253 - CVE-2009-1303 Firefox 2 and 3 Layout engine crash https://bugzilla.redhat.com/show_bug.cgi?id=496253 [ 3 ] Bug #496255 - CVE-2009-1304 Firefox 3 JavaScript engine crashes https://bugzilla.redhat.com/show_bug.cgi?id=496255 [ 4 ] Bug #496256 - CVE-2009-1305 Firefox 2 and 3 JavaScript engine crash https://bugzilla.redhat.com/show_bug.cgi?id=496256 [ 5 ] Bug #486704 - CVE-2009-0652 firefox: does notproperly prevent the literal rendering of homoglyph characters in IDN domain names (spoof URLs and conduct phishing attacks) https://bugzilla.redhat.com/show_bug.cgi?id=486704 [ 6 ] Bug #496262 - CVE-2009-1306 Firefox jar: scheme ignores the content-disposition: header on the inner URI https://bugzilla.redhat.com/show_bug.cgi?id=496262 [ 7 ] Bug #496263 - CVE-2009-1307 Firefox Same-origin violations when Adobe Flash loaded via view-source: protocol https://bugzilla.redhat.com/show_bug.cgi?id=496263 [ 8 ] Bug #496266 - CVE-2009-1308 Firefox XSS hazard using third-party stylesheets and XBL bindings https://bugzilla.redhat.com/show_bug.cgi?id=496266 [ 9 ] Bug #496267 - CVE-2009-1309 Firefox Same-origin violations in XMLHttpRequest and XPCNativeWrapper.toString https://bugzilla.redhat.com/show_bug.cgi?id=496267 [ 10 ] Bug #496270 - CVE-2009-1310 Firefox Malicious search plugins can inject code into arbitrary sites https://bugzilla.redhat.com/show_bug.cgi?id=496270 [ 11 ] Bug #496271 - CVE-2009-1311 Firefox POST data sent to wrong site when saving web page with embedded frame https://bugzilla.redhat.com/show_bug.cgi?id=496271 [ 12 ] Bug #496274 - CVE-2009-1312 Firefox allows Refresh header to redirect to javascript: URIs https://bugzilla.redhat.com/show_bug.cgi?id=496274 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update devhelp' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailinglist
Get the latest Linux and open source security news straight to your inbox.