An update that contains security fixes can now be installed. . openSUSE Security Update: Security update for stunnel ______________________________________________________________________________ Announcement ID: openSUSE-SU-2021:0160-1 Rating: moderate References: #1177580 #1178533 Affected Products: openSUSE Leap 15.2 ______________________________________________________________________________ An update that contains security fixes can now be installed. Description: This update for stunnel fixes the following issues: Security issue fixed: - The "redirect" option was fixed to properly handle "verifyChain = yes" (bsc#1177580). Non-security issues fixed: - Fix startup problem of the stunnel daemon (bsc#1178533) - update to 5.57: * Security bugfixes * New features - New securityLevel configuration file option. - Support for modern PostgreSQL clients - TLS 1.3 configuration updated for better compatibility. * Bugfixes - Fixed a transfer() loop bug. - Fixed memory leaks on configuration reloading errors. - DH/ECDH initialization restored for client sections. - Delay startup with systemd until network is online. - A number of testing framework fixes and improvements. - update to 5.56: - Various text files converted to Markdown format. - Support for realpath(3) implementations incompatible with POSIX.1-2008, such as 4.4BSD or Solaris. - Support for engines without PRNG seeding methods (thx to Petr Mikhalitsyn). - Retry unsuccessful port binding on configuration file reload. - Thread safety fixes in SSL_SESSION object handling. - Terminate clients on exit in the FORK threading model. - Fixup stunnel.conf handling: * Remove old static openSUSE provided stunnel.conf. * Use upstream stunnel.conf and tailor it for openSUSE using sed. * Don't show README.openSUSE when installing. - enable/etc/stunnel/conf.d - re-enable openssl.cnf This update was imported from the SUSE:SLE-15-SP2:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.2: zypper in -t patch openSUSE-2021-160=1 Package List: - openSUSE Leap 15.2 (noarch): stunnel-doc-5.57-lp152.2.3.1 - openSUSE Leap 15.2 (x86_64): stunnel-5.57-lp152.2.3.1 stunnel-debuginfo-5.57-lp152.2.3.1 stunnel-debugsource-5.57-lp152.2.3.1 References: https://bugzilla.suse.com/1177580 https://bugzilla.suse.com/1178533 . This CentOS upgrade includes critical security patches for OpenSSH, boosting system integrity and connectivity.. openSUSE, network security, stunnel security. . LinuxSecurity.com Team
This update works around older and 3rd-party drivers that report wireless network names incorrectly, causing wpa_supplicant to prematurely terminate a wireless connection.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2006-264 2006-04-03 ---------------------------------------------------------------------Product : Fedora Core 5 Name : wpa_supplicant Version : 0.4.8 Release : 7.fc5 Summary : WPA/WPA2/IEEE 802.1X Supplicant Description : wpa_supplicant is a WPA Supplicant for Linux, BSD and Windows with support for WPA and WPA2 (IEEE 802.11i / RSN). Supplicant is the IEEE 802.1X/WPA component that is used in the client stations. It implements key negotiation with a WPA Authenticator and it controls the roaming and IEEE 802.11 authentication/association of the wlan driver. ---------------------------------------------------------------------Update Information: This update works around older and 3rd-party drivers that report wireless network names incorrectly, causing wpa_supplicant to prematurely terminate a wireless connection. ---------------------------------------------------------------------* Sun Apr 2 2006 Dan Williams - 0.4.8-7 - Work around older & incorrect drivers that return null-terminated SSIDs ---------------------------------------------------------------------This update can be downloaded from: 2c44fd857138c0274904925cbf98f908bf8be403 SRPMS/wpa_supplicant-0.4.8-7.fc5.src.rpm d6ee34e13d647000b58876d5038a3cd819fb84b7 ppc/wpa_supplicant-0.4.8-7.fc5.ppc.rpm 09dd66eea2868cf8a3bcf6a97db6c95acf135ab4 ppc/wpa_supplicant-gui-0.4.8-7.fc5.ppc.rpm 5f24b38d407bdbd8ea24919055d1b1d74038222e ppc/debug/wpa_supplicant-debuginfo-0.4.8-7.fc5.ppc.rpm 6e10a585572c1441ef50d00ada4bb04c32e0328f x86_64/wpa_supplicant-0.4.8-7.fc5.x86_64.rpm b31cd1cc517fd498ae2bef6d1471eafb97790d49 x86_64/wpa_supplicant-gui-0.4.8-7.fc5.x86_64.rpm e97025c608ad4bd3dbf268c6dd032639e984040c x86_64/debug/wpa_supplicant-debuginfo-0.4.8-7.fc5.x86_64.rpm 68b4011d34e5575cf7362ab93c05e2061fd759b4 i386/wpa_supplicant-0.4.8-7.fc5.i386.rpm d6e5d53f85f7098375ef17087a28f1fe12b61fdc i386/wpa_supplicant-gui-0.4.8-7.fc5.i386.rpm 6b3437edbe7a889c2edaa945f37cbc491e7eb655 i386/debug/wpa_supplicant-debuginfo-0.4.8-7.fc5.i386.rpm This update can be installed with the 'yum' update program. Use 'yum update package-name' at the command line. For more information, refer to 'Managing Software with yum,' available at . ----------------------------------------------------------------------- fedora-announce-list mailing list
Get the latest Linux and open source security news straight to your inbox.