Update to 0.12.7: fix pointer overflow in STRING_CAT; fix a few more stack buffer overflows.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-deddae25dd 2024-04-19 01:17:18.086513 -------------------------------------------------------------------------------- Name : editorconfig Product : Fedora 39 Version : 0.12.7 Release : 1.fc39 URL : https://github.com/editorconfig/editorconfig-core-c Summary : Parser for EditorConfig files written in C Description : EditorConfig makes it easy to maintain the correct coding style when switching between different text editors and between different projects. The EditorConfig project maintains a file format and plugins for various text editors which allow this file format to be read and used by those editors. -------------------------------------------------------------------------------- Update Information: Update to 0.12.7: fix pointer overflow in STRING_CAT; fix a few more stack buffer overflows. -------------------------------------------------------------------------------- ChangeLog: * Wed Apr 3 2024 Benjamin A. Beasley - 0.12.7-1 - Update to 0.12.7 (close RHBZ#2272370) * Fri Mar 8 2024 Yaakov Selkowitz - 0.12.6-5 - Use bundled uthash in RHEL builds * Wed Jan 24 2024 Fedora Release Engineering - 0.12.6-4 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild * Fri Jan 19 2024 Fedora Release Engineering - 0.12.6-3 - Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild -------------------------------------------------------------------------------- References: [ 1 ] Bug #2272370 - editorconfig-0.12.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=2272370 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-deddae25dd' at thecommand line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
CVE-2019-6250: fix a remote execution vulnerability due to pointer arithmetic overflow References: - https://bugs.mageia.org/show_bug.cgi?id=24186 . MGASA-2019-0054 - Updated zeromq packages fix security vulnerability Publication date: 30 Jan 2019 URL: https://advisories.mageia.org/MGASA-2019-0054.html Type: security Affected Mageia releases: 6 CVE: CVE-2019-6250 CVE-2019-6250: fix a remote execution vulnerability due to pointer arithmetic overflow References: - https://bugs.mageia.org/show_bug.cgi?id=24186 - https://www.cve.org/CVERecord?id=CVE-2019-6250 SRPMS: - 6/core/zeromq-4.2.2-1.1.mga6 . MGASA-2019-0054 - Updated zeromq packages fix security vulnerability Publication date: 30 Jan 2019 U. cve-2019-6250, remote, execution, vulnerability, pointer, arithmetic, overflow. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.