Resolve FTBFS Resolves: rhbz#2352149 Adopt trivy for license detection to be consistent with cri- tools[1.29..1.32]. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-adae8279e3 2025-04-11 18:19:12.061792+00:00 -------------------------------------------------------------------------------- Name : cri-tools1.29 Product : Fedora 42 Version : 1.29.0 Release : 11.fc42 URL : https://github.com/kubernetes-sigs/cri-tools Summary : CLI and validation tools for Kubelet Container Runtime Interface (CRI) Description : CLI and validation tools for Kubelet Container Runtime Interface (CRI) . -------------------------------------------------------------------------------- Update Information: Resolve FTBFS Resolves: rhbz#2352149 Adopt trivy for license detection to be consistent with cri- tools[1.29..1.32] -------------------------------------------------------------------------------- ChangeLog: * Sat Mar 29 2025 Bradley G Smith - 1.29.0-11 - Resolve FTBFS - Resolves: rhbz#2352149 - Adopt trivy for license detection to be consistent with cri- tools[1.29..1.32] -------------------------------------------------------------------------------- References: [ 1 ] Bug #2352149 - CVE-2025-22870 cri-tools1.29: HTTP Proxy bypass using IPv6 Zone IDs in golang.org/x/net [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2352149 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-adae8279e3' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Update the thread_local crate to version 1.1.4. This includes a fix for [RUSTSEC-2022-0006](https://rustsec.org/advisories/RUSTSEC-2022-0006.html) (possible memory corruption caused by a data race). All applications that statically link thread_local have been rebuilt for this version. Additionally, all rebuilt applications now include the fix for. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-c4071e3dc7 2022-01-29 06:37:20.624357 --------------------------------------------------------------------------------Name : rust-askalono-cli Product : Fedora 35 Version : 0.4.4 Release : 3.fc35 URL : Summary : Tool to detect the contents of license files Description : Tool to detect the contents of license files. --------------------------------------------------------------------------------Update Information: Update the thread_local crate to version 1.1.4. This includes a fix for [RUSTSEC-2022-0006](https://rustsec.org/advisories/RUSTSEC-2022-0006.html) (possible memory corruption caused by a data race). All applications that statically link thread_local have been rebuilt for this version. Additionally, all rebuilt applications now include the fix for [CVE-2022-21658](https://rustsec.org/advisories/CVE-2022-21658.html) (Time-of-check Time-of-use race condition in `std::fs::remove_dir_all` from the Rust standard library). --------------------------------------------------------------------------------ChangeLog: * Tue Jan 25 2022 Fabio Valentini 0.4.4-3 - Rebuild with thread_local 1.1.4 for RUSTSEC-2022-0006 * Fri Jan 21 2022 Fedora Release Engineering 0.4.4-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-c4071e3dc7' at the command line. For more information, refer to the dnfdocumentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.