MGAA-2025-0103 - Updated guayadeque packages fix bug. MGAA-2025-0103 - Updated guayadeque packages fix bug Publication date: 01 Dec 2025 URL: https://advisories.mageia.org/MGAA-2025-0103.html Type: bugfix Affected Mageia releases: 9 Description: This package corrects several minor bugs that appeared since version 0.7.0 (must of these bugs only appeared when using particular settings, not for default settings). References: - https://bugs.mageia.org/show_bug.cgi?id=34780 - https://github.com/thothix/guayadeque SRPMS: - 9/core/guayadeque-0.7.4-0.git20251129.mga9 . Updated guayadeque packages in Mageia fix several minor bugs affecting version 0.7.0 with specific settings.. Mageia, Guayadeque, Bugfix, Security Advisory, Software Update. . Severity: Informational. LinuxSecurity.com Team
This update contains builds from a mini-mass-rebuild for Rust applications (and some C-style libraries). Rebuilding with the Rust 1.78 toolchain should fix incomplete debug information for the Rust standard library (and the resulting low-quality stack traces). Additionally, builds will have picked up fixes for some minor low-priority. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-40ee18b2e7 2024-06-02 03:36:56.060441 -------------------------------------------------------------------------------- Name : rust-rbspy Product : Fedora 39 Version : 0.17.0 Release : 5.fc39 URL : Summary : Sampling CPU profiler for Ruby Description : Sampling CPU profiler for Ruby. -------------------------------------------------------------------------------- Update Information: This update contains builds from a mini-mass-rebuild for Rust applications (and some C-style libraries). Rebuilding with the Rust 1.78 toolchain should fix incomplete debug information for the Rust standard library (and the resulting low-quality stack traces). Additionally, builds will have picked up fixes for some minor low-priority security and / or safety fixes in crate dependencies that had not yet been handled via a separate (targeted) rebuild: h2 v0.3.26+ (denial-of-service): https://rustsec.org/advisories/RUSTSEC-2024-0332.html glib v0.19.4+ and backports (UB): core/pull/1343 hashbrown v0.14.5+ (UB): https://github.com/rust-lang/hashbrown/pull/511 rustls v0.22.4+, v0.21.11+ (denial-of-service): https://rustsec.org/advisories/RUSTSEC-2024-0336.html -------------------------------------------------------------------------------- ChangeLog: * Thu May 23 2024 Fabio Valentini - 0.17.0-5 - Rebuild with Rust 1.78 to fix incomplete debuginfo and backtraces * Fri Jan 26 2024 Fedora Release Engineering - 0.17.0-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Fri Jul 21 2023 Fedora ReleaseEngineering - 0.17.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-40ee18b2e7' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
This update contains builds from a mini-mass-rebuild for Rust applications (and some C-style libraries). Rebuilding with the Rust 1.78 toolchain should fix incomplete debug information for the Rust standard library (and the resulting low-quality stack traces). Additionally, builds will have picked up fixes for some minor low-priority. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-40ee18b2e7 2024-06-02 03:36:56.060441 -------------------------------------------------------------------------------- Name : rust-hadolint-sarif Product : Fedora 39 Version : 0.4.2 Release : 2.fc39 URL : Summary : Convert hadolint output to SARIF Description : Convert hadolint output to SARIF. -------------------------------------------------------------------------------- Update Information: This update contains builds from a mini-mass-rebuild for Rust applications (and some C-style libraries). Rebuilding with the Rust 1.78 toolchain should fix incomplete debug information for the Rust standard library (and the resulting low-quality stack traces). Additionally, builds will have picked up fixes for some minor low-priority security and / or safety fixes in crate dependencies that had not yet been handled via a separate (targeted) rebuild: h2 v0.3.26+ (denial-of-service): https://rustsec.org/advisories/RUSTSEC-2024-0332.html glib v0.19.4+ and backports (UB): core/pull/1343 hashbrown v0.14.5+ (UB): https://github.com/rust-lang/hashbrown/pull/511 rustls v0.22.4+, v0.21.11+ (denial-of-service): https://rustsec.org/advisories/RUSTSEC-2024-0336.html -------------------------------------------------------------------------------- ChangeLog: * Thu May 23 2024 Fabio Valentini - 0.4.2-2 - Rebuild with Rust 1.78 to fix incomplete debuginfo and backtraces -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program.Use su -c 'dnf upgrade --advisory FEDORA-2024-40ee18b2e7' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
**Version 0.90.3** * security update to prevent a minor vulnerability * fix issues with post-only ticket form See [changelog](https://github.com/glpi-project/glpi/issues?q=milestone:0.90.3) for more details. ---- **Version 0.90.2** Include bugfixes and some minor features : * An alert in central page when some of your mysql tables are marked as crashed * A better . -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-657a4a658e 2016-04-21 21:26:59.080086 -------------------------------------------------------------------------------- Name : glpi Product : Fedora 22 Version : 0.90.3 Release : 1.fc22 URL : https://www.glpi-project.org/en/ Summary : Free IT asset management software Description : GLPI is the Information Resource-Manager with an additional Administration- Interface. You can use it to build up a database with an inventory for your company (computer, software, printers...). It has enhanced functions to make the daily life for the administrators easier, like a job-tracking-system with mail-notification and methods to build a database with basic information about your network-topology. -------------------------------------------------------------------------------- Update Information: **Version 0.90.3** * security update to prevent a minor vulnerability * fix issues with post-only ticket form See [changelog](https://github.com/glpi-project/glpi/issues?q=milestone:0.90.3) for more details. ---- **Version 0.90.2** Include bugfixes and some minor features : * An alert in central page when some of your mysql tables are marked as crashed * A better flexibility in splitted layout for small screens * More fields in Search- engine (Document comments, ticket id for Changes) * Redirect to previous page after a profile switching (when it is possible) * An icon for default document type * A better compatibility when collecting emails from office365 See[changelog](https://github.com/glpi-project/glpi/issues?q=milestone:0.90.2) This package also fix the logrotate configuration. -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update glpi' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
**Version 0.90.3** * security update to prevent a minor vulnerability * fix issues with post-only ticket form See [changelog](https://github.com/glpi-project/glpi/issues?q=milestone:0.90.3) for more details. ---- **Version 0.90.2** Include bugfixes and some minor features : * An alert in central page when some of your mysql tables are marked as crashed * A better . -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-a099d11840 2016-04-21 21:27:32.204299 -------------------------------------------------------------------------------- Name : glpi Product : Fedora 23 Version : 0.90.3 Release : 1.fc23 URL : https://www.glpi-project.org/en/ Summary : Free IT asset management software Description : GLPI is the Information Resource-Manager with an additional Administration- Interface. You can use it to build up a database with an inventory for your company (computer, software, printers...). It has enhanced functions to make the daily life for the administrators easier, like a job-tracking-system with mail-notification and methods to build a database with basic information about your network-topology. -------------------------------------------------------------------------------- Update Information: **Version 0.90.3** * security update to prevent a minor vulnerability * fix issues with post-only ticket form See [changelog](https://github.com/glpi-project/glpi/issues?q=milestone:0.90.3) for more details. ---- **Version 0.90.2** Include bugfixes and some minor features : * An alert in central page when some of your mysql tables are marked as crashed * A better flexibility in splitted layout for small screens * More fields in Search- engine (Document comments, ticket id for Changes) * Redirect to previous page after a profile switching (when it is possible) * An icon for default document type * A better compatibility when collecting emails from office365 See[changelog](https://github.com/glpi-project/glpi/issues?q=milestone:0.90.2) This package also fix the logrotate configuration. -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update glpi' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
**Version 0.90.3** * security update to prevent a minor vulnerability * fix issues with post-only ticket form See [changelog](https://github.com/glpi-project/glpi/issues?q=milestone:0.90.3) for more details. ---- **Version 0.90.2** Include bugfixes and some minor features : * An alert in central page when some of your mysql tables are marked as crashed * A better . -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-9db4add326 2016-04-17 23:40:12.300984 -------------------------------------------------------------------------------- Name : glpi Product : Fedora 24 Version : 0.90.3 Release : 1.fc24 URL : https://www.glpi-project.org/en/ Summary : Free IT asset management software Description : GLPI is the Information Resource-Manager with an additional Administration- Interface. You can use it to build up a database with an inventory for your company (computer, software, printers...). It has enhanced functions to make the daily life for the administrators easier, like a job-tracking-system with mail-notification and methods to build a database with basic information about your network-topology. -------------------------------------------------------------------------------- Update Information: **Version 0.90.3** * security update to prevent a minor vulnerability * fix issues with post-only ticket form See [changelog](https://github.com/glpi-project/glpi/issues?q=milestone:0.90.3) for more details. ---- **Version 0.90.2** Include bugfixes and some minor features : * An alert in central page when some of your mysql tables are marked as crashed * A better flexibility in splitted layout for small screens * More fields in Search- engine (Document comments, ticket id for Changes) * Redirect to previous page after a profile switching (when it is possible) * An icon for default document type * A better compatibility when collecting emails from office365 See[changelog](https://github.com/glpi-project/glpi/issues?q=milestone:0.90.2) This package also fix the logrotate configuration. -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update glpi' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
A minor security issue and a severe packaging bug have been fixed in tinyproxy, a lightweight http proxy daemon. . Package : tinyproxy Version : 1.8.3-3+deb8u1 CVE ID : CVE-2017-11747 Debian Bug : 870307 948283 A minor security issue and a severe packaging bug have been fixed in tinyproxy, a lightweight http proxy daemon. CVE-2017-11747 main.c in Tinyproxy created a /var/run/tinyproxy/tinyproxy.pid file after dropping privileges to a non-root account, which might have allowed local users to kill arbitrary processes by leveraging access to this non-root account for tinyproxy.pid modification before a root script executed a "kill `cat /run/tinyproxy/tinyproxy.pid`" command. OTHER Furthermore, a severe flaw had been discovered by Tim Duesterhus in Debian's init script for tinyproxy. With the tiny.conf configuration file having the PidFile option removed, the next run of logrotate (if installed) would have changed the owner of the system's base directory ("/") to tinyproxy:tinyproxy. For Debian 8 "Jessie", this problem has been fixed in version 1.8.3-3+deb8u1. These fixes were prepared by Mike Gabriel. We recommend that you upgrade your tinyproxy packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS Best, Utkarsh . Enhance your tinyproxy installation to resolve a significant security vulnerability alongside a critical bug in Debian LTS. Get crucial updates today!. tinyproxy Security Update, Debian LTS, HTTP Proxy Daemon, Packaging Bug, Minor Security Fix. . LinuxSecurity.com Team
Minor security update release 1.1.0g.. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2017-4cf72e2c11 2017-11-21 20:38:55.507657 --------------------------------------------------------------------------------Name : openssl Product : Fedora 27 Version : 1.1.0g Release : 1.fc27 URL : https://www.openssl.org:443/ Summary : Utilities from the general purpose cryptography library with TLS implementation Description : The OpenSSL toolkit provides support for secure communications between machines. OpenSSL includes a certificate management tool and shared libraries which provide various cryptographic algorithms and protocols. --------------------------------------------------------------------------------Update Information: Minor security update release 1.1.0g. --------------------------------------------------------------------------------References: [ 1 ] Bug #1486146 - CVE-2017-3735 CVE-2017-3736 openssl: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1486146 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade openssl' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.