Removing dependencies on systemd-units ---- New version 3.1.3, includes security fix for CVE-2018-5764. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-034101216d 2018-02-05 14:38:50.161453 --------------------------------------------------------------------------------Name : rsync Product : Fedora 26 Version : 3.1.3 Release : 2.fc26 URL : Summary : A program for synchronizing files over a network Description : Rsync uses a reliable algorithm to bring remote and host files into sync very quickly. Rsync is fast because it just sends the differences in the files over the network instead of sending the complete files. Rsync is often used as a very powerful mirroring process or just as a more capable replacement for the rcp command. A technical report which describes the rsync algorithm is included in this package. --------------------------------------------------------------------------------Update Information: Removing dependencies on systemd-units ---- New version 3.1.3, includes security fix for CVE-2018-5764 --------------------------------------------------------------------------------References: [ 1 ] Bug #1536662 - CVE-2018-5764 rsync: sanitization bypass in parse_argument in oprions.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1536662 [ 2 ] Bug #1539466 - rsync-3.1.3 is available https://bugzilla.redhat.com/show_bug.cgi?id=1539466 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade rsync' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
This update addresses multiple security problems and fixes systemd dependencies.. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-8acc6b66f1 2016-11-19 18:59:18.539894 -------------------------------------------------------------------------------- Name : quagga Product : Fedora 25 Version : 0.99.24.1 Release : 4.fc25 URL : Summary : Routing daemon Description : Quagga is free software that operates TCP/IP-based routing protocols. It takes a multi-server and multi-threaded approach to resolving the current complexity of the Internet. Quagga supports Babel, BGP4, BGP4+, BGP4-, IS-IS (experimental), OSPFv2, OSPFv3, RIPv1, RIPv2, and RIPng. Quagga is intended to be used as a Route Server and a Route Reflector. It is not a toolkit; it provides full routing power under a new architecture. Quagga by design has a process for each protocol. Quagga is a fork of GNU Zebra. -------------------------------------------------------------------------------- Update Information: This update addresses multiple security problems and fixes systemd dependencies. -------------------------------------------------------------------------------- References: [ 1 ] Bug #1387654 - quagga daemons should pull in network.target into the boot transaction https://bugzilla.redhat.com/show_bug.cgi?id=1387654 [ 2 ] Bug #1386110 - CVE-2016-1245 quagga: Buffer Overflow in IPv6 RA handling [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1386110 [ 3 ] Bug #1331373 - CVE-2016-4049 quagga: denial of service vulnerability in BGP routing daemon [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1331373 [ 4 ] Bug #1316572 - CVE-2016-2342 quagga: VPNv4 NLRI parses memcpys to stack on unchecked length [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1316572 -------------------------------------------------------------------------------- This update can be installed with the "dnf"update program. Use su -c 'dnf upgrade quagga' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Get the latest Linux and open source security news straight to your inbox.