Fix for CVE-2024-31497. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-0489e7ba1e 2024-04-25 01:36:14.911592 -------------------------------------------------------------------------------- Name : libfilezilla Product : Fedora 38 Version : 0.47.0 Release : 1.fc38 URL : https://lib.filezilla-project.org/ Summary : C++ Library for FileZilla Description : libfilezilla is a small and modern C++ library, offering some basic functionality to build high-performing, platform-independent programs. -------------------------------------------------------------------------------- Update Information: Fix for CVE-2024-31497 -------------------------------------------------------------------------------- ChangeLog: * Mon Apr 15 2024 Gwyn Ciesla - 0.47.0-1 - 0.47.0 * Tue Feb 6 2024 Gwyn Ciesla - 0.46.0-1 - 0.46.0 * Thu Jan 25 2024 Fedora Release Engineering - 0.45.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Sun Jan 21 2024 Fedora Release Engineering - 0.45.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2275187 - CVE-2024-31497 filezilla: putty: secret key recovery of NIST P-521 private keys Through Biased ECDSA Nonces in PuTTY Client [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2275187 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-0489e7ba1e' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Fix for CVE-2024-31497. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-ff9a2fb31c 2024-04-23 16:40:40.221676 -------------------------------------------------------------------------------- Name : libfilezilla Product : Fedora 40 Version : 0.47.0 Release : 1.fc40 URL : https://lib.filezilla-project.org/ Summary : C++ Library for FileZilla Description : libfilezilla is a small and modern C++ library, offering some basic functionality to build high-performing, platform-independent programs. -------------------------------------------------------------------------------- Update Information: Fix for CVE-2024-31497 -------------------------------------------------------------------------------- ChangeLog: * Mon Apr 15 2024 Gwyn Ciesla - 0.47.0-1 - 0.47.0 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2275187 - CVE-2024-31497 filezilla: putty: secret key recovery of NIST P-521 private keys Through Biased ECDSA Nonces in PuTTY Client [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2275187 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-ff9a2fb31c' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Fix for CVE-2024-31497. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-8401d42de6 2024-04-18 01:11:31.874318 -------------------------------------------------------------------------------- Name : libfilezilla Product : Fedora 39 Version : 0.47.0 Release : 1.fc39 URL : https://lib.filezilla-project.org/ Summary : C++ Library for FileZilla Description : libfilezilla is a small and modern C++ library, offering some basic functionality to build high-performing, platform-independent programs. -------------------------------------------------------------------------------- Update Information: Fix for CVE-2024-31497 -------------------------------------------------------------------------------- ChangeLog: * Mon Apr 15 2024 Gwyn Ciesla - 0.47.0-1 - 0.47.0 * Tue Feb 6 2024 Gwyn Ciesla - 0.46.0-1 - 0.46.0 * Thu Jan 25 2024 Fedora Release Engineering - 0.45.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Sun Jan 21 2024 Fedora Release Engineering - 0.45.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2275187 - CVE-2024-31497 filezilla: putty: secret key recovery of NIST P-521 private keys Through Biased ECDSA Nonces in PuTTY Client [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2275187 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-8401d42de6' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Fix for terrapin vulnerability. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-7934efb5e3 2023-12-23 04:33:53.210999 -------------------------------------------------------------------------------- Name : libfilezilla Product : Fedora 38 Version : 0.45.0 Release : 1.fc38 URL : https://lib.filezilla-project.org/ Summary : C++ Library for FileZilla Description : libfilezilla is a small and modern C++ library, offering some basic functionality to build high-performing, platform-independent programs. -------------------------------------------------------------------------------- Update Information: Fix for terrapin vulnerability -------------------------------------------------------------------------------- ChangeLog: * Thu Oct 26 2023 Gwyn Ciesla - 0.45.0-1 - 0.45.0 * Thu Jul 20 2023 Fedora Release Engineering - 0.41.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2255454 - TRIAGE filezilla: terrapin vulnerability fixed in 3.66.4 [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2255454 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-7934efb5e3' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
3.48.1. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-74dd64990b 2020-07-04 01:11:41.275625 --------------------------------------------------------------------------------Name : libfilezilla Product : Fedora 32 Version : 0.22.0 Release : 1.fc32 URL : https://lib.filezilla-project.org/ Summary : C++ Library for FileZilla Description : libfilezilla is a small and modern C++ library, offering some basic functionality to build high-performing, platform-independent programs. --------------------------------------------------------------------------------Update Information: 3.48.1 --------------------------------------------------------------------------------ChangeLog: * Tue May 12 2020 Gwyn Ciesla - 0.22.0-1 - 0.22.0 * Mon Apr 20 2020 Gwyn Ciesla - 0.21.0-1 - 0.21.0 * Tue Mar 10 2020 Gwyn Ciesla - 0.20.2-1 - 0.20.2 * Mon Feb 24 2020 Gwyn Ciesla - 0.20.1-1 - 0.20.1 * Fri Feb 14 2020 Gwyn Ciesla - 0.20.0-1 - 0.20.0 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-74dd64990b' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Bugfixes, and a security fix: Fixed vulnerabilities: Filenames containing double-quotation marks were not escaped correctly when selected for opening/editing. Depending on the associated program, parts of the filename could be interpreted as commands.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-6e77507660 2019-07-06 05:07:52.250928 --------------------------------------------------------------------------------Name : libfilezilla Product : Fedora 29 Version : 0.17.1 Release : 1.fc29 URL : https://lib.filezilla-project.org/ Summary : C++ Library for FileZilla Description : libfilezilla is a small and modern C++ library, offering some basic functionality to build high-performing, platform-independent programs. --------------------------------------------------------------------------------Update Information: Bugfixes, and a security fix: Fixed vulnerabilities: Filenames containing double-quotation marks were not escaped correctly when selected for opening/editing. Depending on the associated program, parts of the filename could be interpreted as commands. --------------------------------------------------------------------------------ChangeLog: * Thu Jun 27 2019 Gwyn Ciesla - 0.17.1-1 - 0.17.1 * Tue Apr 30 2019 Gwyn Ciesla - 0.16.0-1 - 0.16.0 * Fri Feb 1 2019 Fedora Release Engineering - 0.15.1-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild * Mon Nov 26 2018 Gwyn Ciesla - 0.15.1-1 - 0.15.1 * Fri Oct 19 2018 Gwyn Ciesla - 0.15.0-1 - 0.15.0 * Fri Oct 5 2018 Gwyn Ciesla - 0.14.0-1 - 0.14.0 --------------------------------------------------------------------------------References: [ 1 ] Bug #1724743 - filezilla-3.43.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1724743 --------------------------------------------------------------------------------This update can be installed with the "dnf" updateprogram. Use su -c 'dnf upgrade --advisory FEDORA-2019-6e77507660' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Bugfixes, and a security fix: Fixed vulnerabilities: Filenames containing double-quotation marks were not escaped correctly when selected for opening/editing. Depending on the associated program, parts of the filename could be interpreted as commands.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-7b9af09b17 2019-07-06 04:08:39.474885 --------------------------------------------------------------------------------Name : libfilezilla Product : Fedora 30 Version : 0.17.1 Release : 1.fc30 URL : https://lib.filezilla-project.org/ Summary : C++ Library for FileZilla Description : libfilezilla is a small and modern C++ library, offering some basic functionality to build high-performing, platform-independent programs. --------------------------------------------------------------------------------Update Information: Bugfixes, and a security fix: Fixed vulnerabilities: Filenames containing double-quotation marks were not escaped correctly when selected for opening/editing. Depending on the associated program, parts of the filename could be interpreted as commands. --------------------------------------------------------------------------------ChangeLog: * Thu Jun 27 2019 Gwyn Ciesla - 0.17.1-1 - 0.17.1 * Tue Apr 30 2019 Gwyn Ciesla - 0.16.0-1 - 0.16.0 --------------------------------------------------------------------------------References: [ 1 ] Bug #1724743 - filezilla-3.43.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=1724743 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-7b9af09b17' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPGkeys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Fix for CVE-2019-5429. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-d109db9c8a 2019-05-09 01:41:30.047427 --------------------------------------------------------------------------------Name : libfilezilla Product : Fedora 28 Version : 0.15.1 Release : 1.fc28 URL : https://lib.filezilla-project.org/ Summary : C++ Library for FileZilla Description : libfilezilla is a small and modern C++ library, offering some basic functionality to build high-performing, platform-independent programs. --------------------------------------------------------------------------------Update Information: Fix for CVE-2019-5429 --------------------------------------------------------------------------------ChangeLog: * Mon Nov 26 2018 Gwyn Ciesla - 0.15.1-1 - 0.15.1 * Fri Oct 19 2018 Gwyn Ciesla - 0.15.0-1 - 0.15.0 * Fri Oct 5 2018 Gwyn Ciesla - 0.14.0-1 - 0.14.0 * Fri Sep 21 2018 Gwyn Ciesla - 0.13.2-1 - 0.13.2. * Tue Sep 11 2018 Gwyn Ciesla - 0.13.1-1 - Latest upstream. * Tue Jul 17 2018 Gwyn Ciesla - 0.13.0-1 - Latest upstream. * Fri Jul 13 2018 Fedora Release Engineering - 0.12.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild * Mon Jun 11 2018 Gwyn Ciesla - 0.12.3-1 - Latest upstream. * Mon May 7 2018 Gwyn Ciesla - 0.12.2-1 - Latest upstream. --------------------------------------------------------------------------------References: [ 1 ] Bug #1704603 - CVE-2019-5429 filezilla: Privileges escalation via malicious 'fzsftp' binary in home directory. [fedora-28] https://bugzilla.redhat.com/show_bug.cgi?id=1704603 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-d109db9c8a' at the command line. For more information, refer to the dnf documentation availableat https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.