Update to version 1.8.6.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-7227c166f0 2025-05-30 01:14:13.237104+00:00 -------------------------------------------------------------------------------- Name : maturin Product : Fedora 42 Version : 1.8.6 Release : 1.fc42 URL : https://github.com/PyO3/maturin Summary : Build and publish Rust crates as Python packages Description : Build and publish crates with pyo3, rust-cpython and cffi bindings as well as rust binaries as python packages. -------------------------------------------------------------------------------- Update Information: Update to version 1.8.6. -------------------------------------------------------------------------------- ChangeLog: * Wed May 21 2025 Fabio Valentini - 1.8.6-1 - Update to version 1.8.6; Fixes RHBZ#2365325 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2366567 - CVE-2025-4574 maturin: crossbeam-channel Vulnerable to Double Free on Drop [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2366567 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-7227c166f0' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
An update that solves one vulnerability, contains two features and has 6 fixes is now available. . SUSE Security Update: Security update for aws-cli, python-boto3, python-botocore, python-service_identity, python-trustme, python-urllib3 ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:2817-1 Rating: moderate References: #1102408 #1138715 #1138746 #1176389 #1177120 #1182421 #1182422 ECO-3352 PM-2485 Cross-References: CVE-2020-26137 CVSS scores: CVE-2020-26137 (NVD) : 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N CVE-2020-26137 (SUSE): 5.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N Affected Products: SUSE MicroOS 5.0 SUSE Manager Server 4.0 SUSE Manager Retail Branch Server 4.0 SUSE Manager Proxy 4.0 SUSE Linux Enterprise Server for SAP 15-SP1 SUSE Linux Enterprise Server 15-SP1-LTSS SUSE Linux Enterprise Server 15-SP1-BCL SUSE Linux Enterprise Module for Python2 15-SP3 SUSE Linux Enterprise Module for Python2 15-SP2 SUSE Linux Enterprise Module for Public Cloud 15-SP3 SUSE Linux Enterprise Module for Public Cloud 15-SP2 SUSE Linux Enterprise Module for Public Cloud 15-SP1 SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP3 SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP2 SUSE Linux Enterprise Module for Basesystem 15-SP3 SUSE Linux Enterprise Module for Basesystem 15-SP2 SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS SUSE Enterprise Storage 6 SUSE CaaS Platform4.0 ______________________________________________________________________________ An update that solves one vulnerability, contains two features and has 6 fixes is now available. Description: This patch updates the Python AWS SDK stack in SLE 15: General: # aws-cli - Version updated to upstream release v1.19.9 For a detailed list of all changes, please refer to the changelog file of this package. # python-boto3 - Version updated to upstream release 1.17.9 For a detailed list of all changes, please refer to the changelog file of this package. # python-botocore - Version updated to upstream release 1.20.9 For a detailed list of all changes, please refer to the changelog file of this package. # python-urllib3 - Version updated to upstream release 1.25.10 For a detailed list of all changes, please refer to the changelog file of this package. # python-service_identity - Added this new package to resolve runtime dependencies for other packages. Version: 18.1.0 # python-trustme - Added this new package to resolve runtime dependencies for other packages. Version: 0.6.0 Security fixes: # python-urllib3: - CVE-2020-26137: urllib3 before 1.25.9 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of putrequest() (bsc#1177120) Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE MicroOS 5.0: zypper in -t patch SUSE-SUSE-MicroOS-5.0-2021-2817=1 - SUSE Manager Server 4.0: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.0-2021-2817=1 - SUSE Manager Retail Branch Server 4.0: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Retail-Branch-Server-4.0-2021-2817=1 - SUSE Manager Proxy 4.0: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.0-2021-2817=1 - SUSE Linux Enterprise Server for SAP 15-SP1: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP1-2021-2817=1 - SUSE Linux Enterprise Server 15-SP1-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-SP1-LTSS-2021-2817=1 - SUSE Linux Enterprise Server 15-SP1-BCL: zypper in -t patch SUSE-SLE-Product-SLES-15-SP1-BCL-2021-2817=1 - SUSE Linux Enterprise Module for Python2 15-SP3: zypper in -t patch SUSE-SLE-Module-Python2-15-SP3-2021-2817=1 - SUSE Linux Enterprise Module for Python2 15-SP2: zypper in -t patch SUSE-SLE-Module-Python2-15-SP2-2021-2817=1 - SUSE Linux Enterprise Module for Public Cloud 15-SP3: zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP3-2021-2817=1 - SUSE Linux Enterprise Module for Public Cloud 15-SP2: zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP2-2021-2817=1 - SUSE Linux Enterprise Module for Public Cloud 15-SP1: zypper in -t patch SUSE-SLE-Module-Public-Cloud-15-SP1-2021-2817=1 - SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP3: zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP3-2021-2817=1 - SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP2: zypper in -t patch SUSE-SLE-Module-Packagehub-Subpackages-15-SP2-2021-2817=1 - SUSE Linux Enterprise Module for Basesystem 15-SP3: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP3-2021-2817=1 - SUSE Linux Enterprise Module for Basesystem 15-SP2: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP2-2021-2817=1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP1-LTSS-2021-2817=1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP1-ESPOS-2021-2817=1 - SUSE Enterprise Storage 6: zypper in -t patch SUSE-Storage-6-2021-2817=1 - SUSE CaaS Platform 4.0: To install this update, use the SUSE CaaS Platform 'skuba' tool. It will inform you if it detects new updates and let you then trigger updating of the complete cluster in a controlled way. Package List: - SUSE MicroOS 5.0 (aarch64 x86_64): python3-cffi-1.13.2-3.2.5 python3-cryptography-2.8-10.1 - SUSE MicroOS 5.0 (noarch): python3-asn1crypto-0.24.0-3.2.1 python3-pyOpenSSL-17.5.0-8.3.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 - SUSE Manager Server 4.0 (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 - SUSE Manager Retail Branch Server 4.0 (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 - SUSE Manager Proxy 4.0 (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 - SUSE Linux Enterprise Server for SAP 15-SP1 (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 - SUSE Linux Enterprise Server 15-SP1-LTSS (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 - SUSE Linux Enterprise Server 15-SP1-BCL (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 - SUSE Linux Enterprise Module for Python2 15-SP3 (aarch64 ppc64le s390x x86_64): python-cffi-debuginfo-1.13.2-3.2.5 python-cffi-debugsource-1.13.2-3.2.5 python-cryptography-debuginfo-2.8-10.1 python-cryptography-debugsource-2.8-10.1 python2-cffi-1.13.2-3.2.5 python2-cffi-debuginfo-1.13.2-3.2.5 python2-cryptography-2.8-10.1 python2-cryptography-debuginfo-2.8-10.1 - SUSE Linux Enterprise Module for Python2 15-SP3 (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 - SUSE Linux Enterprise Module for Python2 15-SP2 (aarch64 ppc64le s390x x86_64): python-cffi-debuginfo-1.13.2-3.2.5 python-cffi-debugsource-1.13.2-3.2.5 python-cryptography-debuginfo-2.8-10.1 python-cryptography-debugsource-2.8-10.1 python2-cffi-1.13.2-3.2.5 python2-cffi-debuginfo-1.13.2-3.2.5 python2-cryptography-2.8-10.1 python2-cryptography-debuginfo-2.8-10.1 - SUSE Linux Enterprise Module for Python215-SP2 (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyOpenSSL-17.5.0-8.3.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 - SUSE Linux Enterprise Module for Public Cloud 15-SP3 (noarch): aws-cli-1.19.9-26.1 - SUSE Linux Enterprise Module for Public Cloud 15-SP2 (noarch): aws-cli-1.19.9-26.1 - SUSE Linux Enterprise Module for Public Cloud 15-SP1 (noarch): aws-cli-1.19.9-26.1 python3-botocore-1.20.9-33.1 python3-service_identity-18.1.0-3.3.1 python3-trustme-0.6.0-3.3.1 - SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP3 (noarch): python2-boto3-1.17.9-19.1 python2-botocore-1.20.9-33.1 - SUSE Linux Enterprise Module for Packagehub Subpackages 15-SP2 (noarch): python2-boto3-1.17.9-19.1 python2-botocore-1.20.9-33.1 - SUSE Linux Enterprise Module for Basesystem 15-SP3 (aarch64 ppc64le s390x x86_64): python-cffi-debuginfo-1.13.2-3.2.5 python-cffi-debugsource-1.13.2-3.2.5 python-cryptography-debuginfo-2.8-10.1 python-cryptography-debugsource-2.8-10.1 python3-cffi-1.13.2-3.2.5 python3-cffi-debuginfo-1.13.2-3.2.5 python3-cryptography-2.8-10.1 python3-cryptography-debuginfo-2.8-10.1 - SUSE Linux Enterprise Module for Basesystem 15-SP3 (noarch): python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 - SUSE Linux Enterprise Module for Basesystem 15-SP2 (aarch64 ppc64le s390x x86_64): python-cffi-debuginfo-1.13.2-3.2.5 python-cffi-debugsource-1.13.2-3.2.5 python-cryptography-debuginfo-2.8-10.1 python-cryptography-debugsource-2.8-10.1 python3-cffi-1.13.2-3.2.5 python3-cffi-debuginfo-1.13.2-3.2.5 python3-cryptography-2.8-10.1 python3-cryptography-debuginfo-2.8-10.1 - SUSE Linux Enterprise Module for Basesystem 15-SP2 (noarch): python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyOpenSSL-17.5.0-8.3.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 - SUSE Enterprise Storage 6 (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 - SUSE CaaS Platform 4.0 (noarch): python2-asn1crypto-0.24.0-3.2.1 python2-pyasn1-0.4.2-3.2.1 python2-pycparser-2.17-3.2.1 python2-urllib3-1.25.10-9.14.1 python3-asn1crypto-0.24.0-3.2.1 python3-boto3-1.17.9-19.1 python3-botocore-1.20.9-33.1 python3-pyasn1-0.4.2-3.2.1 python3-pycparser-2.17-3.2.1 python3-urllib3-1.25.10-9.14.1 References: https://www.suse.com/security/cve/CVE-2020-26137.html https://bugzilla.suse.com/1102408 https://bugzilla.suse.com/1138715 https://bugzilla.suse.com/1138746 https://bugzilla.suse.com/1176389 https://bugzilla.suse.com/1177120 https://bugzilla.suse.com/1182421 https://bugzilla.suse.com/1182422 . A new SUSE Security Update tackles a vulnerability of moderate severity within the aws-cli, impacting multiple Python libraries.. SUSE Linux Enterprise Update, aws-cli Security Advisory, Python Packages Vulnerability. . LinuxSecurity.com Team
Update to Firefox 3.0.10 fixing one security issue: https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-3.0/ Depending packages rebuilt against new Firefox are also included in this update. Additional bugs fixed in other packages: - totem: Fix YouTube plugin following web site changes. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-4083 2009-04-28 00:41:58 -------------------------------------------------------------------------------- Name : gnome-python2-extras Product : Fedora 10 Version : 2.19.1 Release : 30.fc10 URL : https://gnome.pages.gitlab.gnome.org/pygobject/ Summary : The sources for additional. PyGNOME Python extension modules. Description : The gnome-python-extra package contains the source packages for additional Python bindings for GNOME. It should be used together with gnome-python. -------------------------------------------------------------------------------- Update Information: Update to Firefox 3.0.10 fixing one security issue: https://www.mozilla.org/en-US/security/known-vulnerabilities/firefox-3.0/ Depending packages rebuilt against new Firefox are also included in this update. Additional bugs fixed in other packages: - totem: Fix YouTube plugin following web site changes -------------------------------------------------------------------------------- ChangeLog: * Mon Apr 27 2009 Christopher Aillon - 2.19.1-30 - Rebuild against newer gecko * Tue Apr 21 2009 Christopher Aillon - 2.19.1-29 - Rebuild against newer gecko * Fri Mar 27 2009 Christopher Aillon - 2.19.1-28 - Rebuild against newer gecko * Fri Mar 6 2009 Jan Horak - 2.19.1-27 - Rebuild against newer gecko * Wed Feb 4 2009 Christopher Aillon - 2.19.1-26 - Rebuild against newer gecko * Wed Dec 17 2008 Christopher Aillon - 2.19.1-25 - Rebuild against newer gecko -------------------------------------------------------------------------------- References: [ 1 ] Bug #497447 -CVE-2009-1313 Firefox crash in nsTextFrame::ClearTextRun() https://bugzilla.redhat.com/show_bug.cgi?id=497447 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update gnome-python2-extras' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list
Get the latest Linux and open source security news straight to your inbox.