update to version 2.25.2. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-20ca419536 2025-12-02 00:48:12.507353+00:00 -------------------------------------------------------------------------------- Name : python-spotipy Product : Fedora 43 Version : 2.25.2 Release : 1.fc43 URL : https://github.com/spotipy-dev/spotipy Summary : A light weight Python library for the Spotify Web API Description : A light weight Python library for the Spotify Web API -------------------------------------------------------------------------------- Update Information: update to version 2.25.2 -------------------------------------------------------------------------------- ChangeLog: * Wed Nov 26 2025 Bill Pemberton - 2.25.2-1 - update to version 2.25.2 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-20ca419536' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Update to 2.28.1. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-1dd9dc5140 2022-11-10 22:04:44.632877 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 37 Version : 2.28.1 Release : 1.fc37 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ --------------------------------------------------------------------------------Update Information: Update to 2.28.1 --------------------------------------------------------------------------------ChangeLog: * Sat Oct 22 2022 Morten Stevens - 2.28.1-1 - Update to 2.28.1 --------------------------------------------------------------------------------References: [ 1 ] Bug #2037309 - CVE-2021-45450 mbedtls: policy bypass or oracle-based decryption [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2037309 [ 2 ] Bug #2037320 - CVE-2021-45451 mbedtls: policy bypass/oracle-based decryption in psa_aead_generate_nonce [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2037320 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-1dd9dc5140' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
- Update to 2.16.8. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-8b0d59bac6 2020-09-23 17:11:23.561290 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 32 Version : 2.16.8 Release : 1.fc32 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ --------------------------------------------------------------------------------Update Information: - Update to 2.16.8 --------------------------------------------------------------------------------ChangeLog: * Tue Sep 8 2020 Morten Stevens - 2.16.8-1 - Update to 2.16.8 * Thu Aug 20 2020 Morten Stevens - 2.16.7-4 - Switch to cmake_build, cmake_install and ctest - FTBFS in Fedora rawhide/f33 (#1864124) * Sat Aug 1 2020 Fedora Release Engineering - 2.16.7-3 - Second attempt - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild * Tue Jul 28 2020 Fedora Release Engineering - 2.16.7-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #1875047 - CVE-2020-16150 mbedtls: local side channel attack on classical CBC decryption in (D)TLS https://bugzilla.redhat.com/show_bug.cgi?id=1875047 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-8b0d59bac6' at the command line. For more information, refer to thednf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
- Update to 2.16.7 Security advisory: . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-5b60029fe2 2020-07-23 01:17:08.656086 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 31 Version : 2.16.7 Release : 1.fc31 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ --------------------------------------------------------------------------------Update Information: - Update to 2.16.7 Security advisory: --------------------------------------------------------------------------------ChangeLog: * Tue Jul 14 2020 Morten Stevens - 2.16.7-1 - Update to 2.16.7 - Security Advisory 2020-07 --------------------------------------------------------------------------------References: [ 1 ] Bug #1851867 - CVE-2020-10941 mbedtls: cache attack against RSA key import in SGX https://bugzilla.redhat.com/show_bug.cgi?id=1851867 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-5b60029fe2' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
- Update to 2.16.4 - CVE-2019-18222 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security Advisory: . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-8d3ea0fe8d 2020-02-19 01:27:49.629837 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 30 Version : 2.16.4 Release : 1.fc30 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ --------------------------------------------------------------------------------Update Information: - Update to 2.16.4 - CVE-2019-18222 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security Advisory: --------------------------------------------------------------------------------ChangeLog: * Mon Feb 10 2020 Morten Stevens - 2.16.4-1 - Update to 2.16.4 * Wed Jan 29 2020 Fedora Release Engineering - 2.16.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild * Sat Sep 28 2019 Morten Stevens - 2.16.3-1 - Update to 2.16.3 - Side channel attack on deterministic ECDSA (CVE-2019-16910) * Tue Sep 3 2019 Morten Stevens - 2.16.2-4 - devel package needs pkcs11-helper-devel (#1748468) * Sat Aug 3 2019 Morten Stevens - 2.16.2-3 - Fix building on RHEL8 * Thu Jul 25 2019 Fedora Release Engineering - 2.16.2-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild * Sat Jul 20 2019 Morten Stevens - 2.16.2-1 - Update to 2.16.2 --------------------------------------------------------------------------------This update can be installedwith the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-8d3ea0fe8d' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
- Update to 2.6.0 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security Advisory: . --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-382c240580 2017-09-02 19:24:01.578663 --------------------------------------------------------------------------------Name : mbedtls Product : Fedora 26 Version : 2.6.0 Release : 1.fc26 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ --------------------------------------------------------------------------------Update Information: - Update to 2.6.0 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security Advisory: --------------------------------------------------------------------------------References: [ 1 ] Bug #1487120 - CVE-2017-14032 mbedtls: Bypass peer authentication https://bugzilla.redhat.com/show_bug.cgi?id=1487120 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade mbedtls' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
- Update to 2.4.2 - CVE-2017-2784 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security notes: . -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2017-922652dd9c 2017-03-24 12:41:24.087100 -------------------------------------------------------------------------------- Name : mbedtls Product : Fedora 24 Version : 2.4.2 Release : 1.fc24 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ -------------------------------------------------------------------------------- Update Information: - Update to 2.4.2 - CVE-2017-2784 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ Security notes: -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade mbedtls' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
- Update to 2.2.1 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ ---- - Update to 2.2.0 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-b3784096ef 2016-01-19 19:15:35.971264 -------------------------------------------------------------------------------- Name : mbedtls Product : Fedora 23 Version : 2.2.1 Release : 1.fc23 URL : https://www.trustedfirmware.org/projects/mbed-tls/ Summary : Light-weight cryptographic and SSL/TLS library Description : Mbed TLS is a light-weight open source cryptographic and SSL/TLS library written in C. Mbed TLS makes it easy for developers to include cryptographic and SSL/TLS capabilities in their (embedded) applications with as little hassle as possible. FOSS License Exception: https://www.trustedfirmware.org/projects/mbed-tls/ -------------------------------------------------------------------------------- Update Information: - Update to 2.2.1 Release notes: ---- - Update to 2.2.0 Release notes: https://www.trustedfirmware.org/projects/mbed-tls/ -------------------------------------------------------------------------------- References: [ 1 ] Bug #1297437 - mbedtls, polarssl: potential double free during certificate generation https://bugzilla.redhat.com/show_bug.cgi?id=1297437 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update mbedtls' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailinglist
Get the latest Linux and open source security news straight to your inbox.