New version 4.6.0. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-54df0e65ea 2025-10-23 01:56:57.483636+00:00 -------------------------------------------------------------------------------- Name : wireshark Product : Fedora 41 Version : 4.4.10 Release : 1.fc41 URL : http://www.wireshark.org/ Summary : Network traffic analyzer Description : Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources. It supports dozens of protocol capture file formats and understands more than a thousand protocols. It has many powerful features including a rich display filter language and the ability to reassemble multiple protocol packets in order to, for example, view a complete TCP stream, save the contents of a file which was transferred over HTTP or CIFS, or play back an RTP audio stream. -------------------------------------------------------------------------------- Update Information: New version 4.6.0 -------------------------------------------------------------------------------- ChangeLog: * Mon Oct 13 2025 Michal Ruprich - 1:4.4.10-1 - New version 4.4.10 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2402623 - wireshark-4.6.0 is available https://bugzilla.redhat.com/show_bug.cgi?id=2402623 [ 2 ] Bug #2403469 - CVE-2025-11626 wireshark: Loop with Unreachable Exit Condition ('Infinite Loop') [fedora-41] https://bugzilla.redhat.com/show_bug.cgi?id=2403469 [ 3 ] Bug #2403470 - CVE-2025-11626 wireshark: Loop with Unreachable Exit Condition ('Infinite Loop') [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2403470 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c'dnf upgrade --advisory FEDORA-2025-54df0e65ea' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Update the git2 crate to version 0.18.2. Update the libgit2-sys crate to version 0.16.2. Version 0.16.2 of the libgit2-sys crate includes an update of the bundled copy of libgit2 to version 1.7.2 to address CVE-2024-24575 and CVE-2024-24577. Since the libgit2 bindings cause applications that use them to statically link. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-993d3a78dd 2024-02-22 02:22:22.545942 -------------------------------------------------------------------------------- Name : rust-git-absorb Product : Fedora 38 Version : 0.6.11 Release : 3.fc38 URL : Summary : Git commit --fixup, but automatic Description : Git commit --fixup, but automatic. -------------------------------------------------------------------------------- Update Information: Update the git2 crate to version 0.18.2. Update the libgit2-sys crate to version 0.16.2. Version 0.16.2 of the libgit2-sys crate includes an update of the bundled copy of libgit2 to version 1.7.2 to address CVE-2024-24575 and CVE-2024-24577. Since the libgit2 bindings cause applications that use them to statically link libgit2, this update also includes rebuilds of all affected applications. -------------------------------------------------------------------------------- ChangeLog: * Tue Feb 13 2024 Fabio Valentini - 0.6.11-3 - Rebuild for CVE-2024-24575 and CVE-2024-24577 in libgit2 * Fri Jan 26 2024 Fedora Release Engineering - 0.6.11-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2263100 - TRIAGE CVE-2024-24577 rust-libgit2-sys: libgit2: arbitrary code execution due to heap corruption in git_index_add [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2263100 [ 2 ] Bug #2263105 - TRIAGE CVE-2024-24575 rust-libgit2-sys: libgit2: potential infiniate loop condition ingit_revparse_single [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2263105 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-993d3a78dd' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.