Update the sequoia-openpgp crate to version 1.21.1. Addresses RUSTSEC-2024-0345. Update the sequoia-keystore crate to version 0.5.1. Update the sequoia-gpg-agent crate to version 0.4.2. This update also includes rebuilds of all affected applications that are affected by RUSTSEC-2024-0345 and a regression in sequoia-openpgp 1.21.0.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2024-12f0caa904 2024-07-09 01:53:44.500907 -------------------------------------------------------------------------------- Name : rust-sequoia-gpg-agent Product : Fedora 40 Version : 0.4.2 Release : 1.fc40 URL : Summary : Library for interacting with GnuPG's gpg-agent Description : A library for interacting with GnuPG's gpg-agent. -------------------------------------------------------------------------------- Update Information: Update the sequoia-openpgp crate to version 1.21.1. Addresses RUSTSEC-2024-0345. Update the sequoia-keystore crate to version 0.5.1. Update the sequoia-gpg-agent crate to version 0.4.2. This update also includes rebuilds of all affected applications that are affected by RUSTSEC-2024-0345 and a regression in sequoia-openpgp 1.21.0. -------------------------------------------------------------------------------- ChangeLog: * Tue Jun 25 2024 Fabio Valentini - 0.4.2-1 - Update to version 0.4.2; Fixes RHBZ#2293569 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-12f0caa904' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list --
- Update the sequoia-openpgp crate to version 1.16.0. - Update the nettle crate to version 7.3.0. - Update the nettle-sys crate to version 2.2.0. - Update the buffered-reader crate to version 1.2.0. Version 1.16.0 of the sequoia-openpgp crate fixes some issues in parsing code, which could lead to attempted out-of- bounds accesses that result in crashes due to bounds checks which are included. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2023-1d0d71b6aa 2023-05-27 01:25:15.781100 --------------------------------------------------------------------------------Name : rust-sequoia-openpgp Product : Fedora 37 Version : 1.16.0 Release : 1.fc37 URL : Summary : OpenPGP data types and associated machinery Description : OpenPGP data types and associated machinery. --------------------------------------------------------------------------------Update Information: - Update the sequoia-openpgp crate to version 1.16.0. - Update the nettle crate to version 7.3.0. - Update the nettle-sys crate to version 2.2.0. - Update the buffered-reader crate to version 1.2.0. Version 1.16.0 of the sequoia-openpgp crate fixes some issues in parsing code, which could lead to attempted out-of-bounds accesses that result in crashes due to bounds checks which are included by default in Rust code. This update contains rebuilds of all applications that are based on sequoia-openpgp to address this issue. ---- Update to version 1.5.0. This release improves compatibility with the version of librnp that's bundled in recent versions of thunderbird. --------------------------------------------------------------------------------ChangeLog: * Wed May 17 2023 Fabio Valentini - 1.16.0-1 - Update to version 1.16.0; Fixes RHBZ#2207606 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisoryFEDORA-2023-1d0d71b6aa' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.