Resolves: #1715758 - CVE-2019-9946. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-d2b57d3b19 2019-06-12 14:47:01.833170 --------------------------------------------------------------------------------Name : containernetworking-plugins Product : Fedora 30 Version : 0.7.5 Release : 1.fc30 URL : https://github.com/containernetworking/plugins Summary : Libraries for writing CNI plugin Description : The CNI (Container Network Interface) project consists of a specification and libraries for writing plugins to configure network interfaces in Linux containers, along with a number of supported plugins. CNI concerns itself only with network connectivity of containers and removing allocated resources when the container is deleted. --------------------------------------------------------------------------------Update Information: Resolves: #1715758 - CVE-2019-9946 --------------------------------------------------------------------------------ChangeLog: * Fri May 31 2019 Lokesh Mandvekar - 0.7.5-1 - Resolves: #1715758 - CVE-2019-9946 - bump to v0.7.5 - BR: git - remove ExcludeArch: ppc64 --------------------------------------------------------------------------------References: [ 1 ] Bug #1715758 - CVE-2019-9946 containernetworking-plugins: kubernetes: Incorrect rule injection in CNI portmap plugin [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1715758 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-d2b57d3b19' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.