. _______________________________________________ package-announce mailing
Contains updates to address CVE-2022-{28357,41717}. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2023-f122ea1b3e 2023-10-04 15:50:14.488468 -------------------------------------------------------------------------------- Name : golang-github-envoyproxy-control-plane Product : Fedora 38 Version : 0.11.1 Release : 1.fc38 URL : https://github.com/envoyproxy/go-control-plane Summary : Go implementation of data-plane-api Description : Go implementation of data-plane-api. -------------------------------------------------------------------------------- Update Information: Contains updates to address CVE-2022-{28357,41717} -------------------------------------------------------------------------------- ChangeLog: * Sat Sep 9 2023 Mark E. Fuller - 0.11.1-1 - update to v0.11.1 * Thu Jul 20 2023 Fedora Release Engineering - 0.10.3-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-f122ea1b3e' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Update the thread_local crate to version 1.1.4. This includes a fix for [RUSTSEC-2022-0006](https://rustsec.org/advisories/RUSTSEC-2022-0006.html) (possible memory corruption caused by a data race). All applications that statically link thread_local have been rebuilt for this version. Additionally, all rebuilt applications now include the fix for. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-c4071e3dc7 2022-01-29 06:37:20.624357 --------------------------------------------------------------------------------Name : rust-ripgrep Product : Fedora 35 Version : 13.0.0 Release : 4.fc35 URL : Summary : Line oriented search tool Description : Line-oriented search tool that recursively searches the current directory for a regex pattern while respecting gitignore rules. ripgrep has first class support on Windows, macOS and Linux. --------------------------------------------------------------------------------Update Information: Update the thread_local crate to version 1.1.4. This includes a fix for [RUSTSEC-2022-0006](https://rustsec.org/advisories/RUSTSEC-2022-0006.html) (possible memory corruption caused by a data race). All applications that statically link thread_local have been rebuilt for this version. Additionally, all rebuilt applications now include the fix for [CVE-2022-21658](https://rustsec.org/advisories/CVE-2022-21658.html) (Time-of-check Time-of-use race condition in `std::fs::remove_dir_all` from the Rust standard library). --------------------------------------------------------------------------------ChangeLog: * Tue Jan 25 2022 Fabio Valentini - 13.0.0-4 - Rebuild with thread_local 1.1.4 for RUSTSEC-2022-0006. * Fri Jan 21 2022 Fedora Release Engineering - 13.0.0-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild --------------------------------------------------------------------------------This update can be installed with the "dnf" updateprogram. Use su -c 'dnf upgrade --advisory FEDORA-2022-c4071e3dc7' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
[Python 3.5.10](https://www.python.org/downloads/release/python-3510/). [Changelog](https://docs.python.org/3.5/whatsnew/changelog.html#python-3-5-10). ---- Update to 3.5.10rc1. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2020-16167a66a2 2020-09-16 14:43:48.852906 --------------------------------------------------------------------------------Name : python35 Product : Fedora 32 Version : 3.5.10 Release : 1.fc32 URL : https://www.python.org/ Summary : Version 3.5 of the Python programming language Description : Python 3.5 package for developers. This package exists to allow developers to test their code against an older version of Python. This is not a full Python stack and if you wish to run your applications with Python 3.5, see other distributions that support it, such as CentOS or RHEL with Software Collections or older Fedora releases. --------------------------------------------------------------------------------Update Information: [Python 3.5.10](https://www.python.org/downloads/release/python-3510/). [Changelog](https://docs.python.org/3.5/whatsnew/changelog.html#python-3-5-10). ---- Update to 3.5.10rc1 --------------------------------------------------------------------------------ChangeLog: * Mon Sep 7 2020 Tomas Hrnciar - 3.5.10-1 - Update to 3.5.10 * Tue Aug 25 2020 Tomas Hrnciar - 3.5.10rc1-1 - Update to 3.5.10rc1 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2020-16167a66a2' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.