uv / python-uv-build 0.9.5 https://github.com/astral-sh/uv/blob/0.9.5/CHANGELOG.md ruff 0.14.2 https://github.com/astral-sh/ruff/blob/0.14.2/CHANGELOG.md Pydantic 2.12.3. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-4154ea83d0 2025-11-05 02:09:57.817569+00:00 -------------------------------------------------------------------------------- Name : gherkin Product : Fedora 43 Version : 35.1.0 Release : 2.fc43 URL : https://github.com/cucumber/gherkin Summary : A parser and compiler for the Gherkin language Description : Gherkin is a parser and compiler for the Gherkin language. -------------------------------------------------------------------------------- Update Information: uv / python-uv-build 0.9.5 https://github.com/astral-sh/uv/blob/0.9.5/CHANGELOG.md ruff 0.14.2 https://github.com/astral-sh/ruff/blob/0.14.2/CHANGELOG.md Pydantic 2.12.3 Blog post maturin 1.9.6 https://github.com/PyO3/maturin/blob/v1.9.6/Changelog.md python-typing-inspection 0.4.2 (2025-10-01) Add typing_objects.is_noextraitems() python-jiter 0.11.0 https://github.com/pydantic/jiter/releases/tag/v0.11.0 python-pydantic-extra-types 2.10.6 https://github.com/pydantic/pydantic-extra-types/releases/tag/v2.10.6 Typer 0.20.0 Features \u2728 Enable command suggestions on typo by default. Upgrades \u2b06\ufe0f Add (official) support for Python 3.14. Internal Assorted small enhancements. FastAPI 0.120.1 Upgrades \u2b06\ufe0f Bump Starlette to
Multiple vulnerabilities have been discovered in OpenJDK, the worst of which can lead to remote code execution.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 202401-25 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: OpenJDK: Multiple Vulnerabilities Date: January 17, 2024 Bugs: #859376, #859400, #877597, #891323, #908243 ID: 202401-25 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======== Multiple vulnerabilities have been discovered in OpenJDK, the worst of which can lead to remote code execution. Background ========== OpenJDK is an open source implementation of the Java programming language. Affected packages ================= Package Vulnerable Unaffected ------------------------ --------------- ---------------- dev-java/openjdk < 11.0.19_p7:11 > = 11.0.19_p7:11 < 17.0.7_p7:17 > = 17.0.7_p7:17 < 8.372_p07:8 > = 8.372_p07:8 dev-java/openjdk-bin < 11.0.19_p7:11 > = 11.0.19_p7:11 < 17.0.7_p7:17 > = 17.0.7_p7:17 < 8.372_p07:8 > = 8.372_p07:8 dev-java/openjdk-jre-bin < 11.0.19_p7:11 > = 11.0.19_p7:11 < 17.0.7_p7:17 > = 17.0.7_p7:17 < 8.372_p07:8 > = 8.372_p07:8 Description =========== Multiple vulnerabilities have been discovered in OpenJDK. Please review the CVE identifiers referenced below for details. Impact ====== Please review the referenced CVE identifiers for details. Workaround ========== There is no known workaround at this time. Resolution ========== All OpenJDK users should upgrade to the latest versions: # emerge --sync # emerge --ask--oneshot --verbose "> =dev-java/openjdk-8.372_p07" # emerge --ask --oneshot --verbose "> =dev-java/openjdk-11.0.19_p7" # emerge --ask --oneshot --verbose "> =dev-java/openjdk-17.0.7_p7" All OpenJDK JRE binary users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =dev-java/openjdk-jre-bin-8.372_p07" # emerge --ask --oneshot --verbose "> =dev-java/openjdk-jre-bin-11.0.19_p7" # emerge --ask --oneshot --verbose "> =dev-java/openjdk-jre-bin-17.0.7_p7" All OpenJDK binary users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =dev-java/openjdk-bin-8.372_p07" # emerge --ask --oneshot --verbose "> =dev-java/openjdk-bin-11.0.19_p7" # emerge --ask --oneshot --verbose "> =dev-java/openjdk-bin-17.0.7_p7" References ========== [ 1 ] CVE-2022-21540 https://nvd.nist.gov/vuln/detail/CVE-2022-21540 [ 2 ] CVE-2022-21541 https://nvd.nist.gov/vuln/detail/CVE-2022-21541 [ 3 ] CVE-2022-21549 https://nvd.nist.gov/vuln/detail/CVE-2022-21549 [ 4 ] CVE-2022-21618 https://nvd.nist.gov/vuln/detail/CVE-2022-21618 [ 5 ] CVE-2022-21619 https://nvd.nist.gov/vuln/detail/CVE-2022-21619 [ 6 ] CVE-2022-21624 https://nvd.nist.gov/vuln/detail/CVE-2022-21624 [ 7 ] CVE-2022-21626 https://nvd.nist.gov/vuln/detail/CVE-2022-21626 [ 8 ] CVE-2022-21628 https://nvd.nist.gov/vuln/detail/CVE-2022-21628 [ 9 ] CVE-2022-34169 https://nvd.nist.gov/vuln/detail/CVE-2022-34169 [ 10 ] CVE-2022-39399 https://nvd.nist.gov/vuln/detail/CVE-2022-39399 [ 11 ] CVE-2022-42920 https://nvd.nist.gov/vuln/detail/CVE-2022-42920 [ 12 ] CVE-2023-21830 https://nvd.nist.gov/vuln/detail/CVE-2023-21830 [ 13 ] CVE-2023-21835 https://nvd.nist.gov/vuln/detail/CVE-2023-21835 [ 14 ] CVE-2023-21843 https://nvd.nist.gov/vuln/detail/CVE-2023-21843 Availability ============ This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/202401-25 Concerns? ========= Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressed to
- https:// - https:// - https:// - [Less critical - Cross site scripting - SA-CONTRIB-2019-036](https://) - [Moderately critical - Information disclosure - SA-. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-18bbafb4d8 2019-06-02 00:53:19.135349 --------------------------------------------------------------------------------Name : drupal7-views Product : Fedora 30 Version : 3.23 Release : 1.fc30 URL : https:// Summary : Create customized lists and queries from your database Description : You need Views if: * You like the default front page view, but you find you want to sort it differently. * You like the default taxonomy/term view, but you find you want to sort it differently; for example, alphabetically. * You use /tracker, but you want to restrict it to posts of a certain type. * You like the idea of the 'article' module, but it doesn't display articles the way you like. * You want a way to display a block with the 5 most recent posts of some particular type. * You want to provide 'unread forum posts'. * You want a monthly archive similar to the typical Movable Type/Wordpress archives that displays a link to the in the form of "Month, YYYY (X)" where X is the number of posts that month, and displays them in a block. The links lead to a simple list of posts for that month. Views can do a lot more than that, but those are some of the obvious uses of Views. This package provides the following Drupal 7 modules: * views * views_ui --------------------------------------------------------------------------------Update Information: - https:// -https:// -https:// - [Less critical -Cross site scripting - SA-CONTRIB-2019-036](https://) - [Moderately critical - Information disclosure - SA-CONTRIB-2019-035](https://) - [Moderately critical - Information Disclosure - SA-CONTRIB-2019-034](https://) -https://-https:// --------------------------------------------------------------------------------ChangeLog: * Fri May 24 2019 Shawn Iwinski - 3.23-1 - Updated to 3.23 (RHBZ #1566277 / SA-CONTRIB-2019-034 / SA-CONTRIB-2019-034 / SA-CONTRIB-2019-036) - https:// - https:// - https:// --------------------------------------------------------------------------------References: [ 1 ] Bug #1566277 - drupal7-views-3.23 is available https://bugzilla.redhat.com/show_bug.cgi?id=1566277 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-18bbafb4d8' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Upstream details at : https://access.redhat.com/errata/RHSA-2017:1208.html. CentOS Errata and Security Advisory 2017:1208 Important Upstream details at : https://access.redhat.com/errata/RHSA-2017:1208.html The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) i386: 065e0d1bf12c76b8c069e195cc766f413513de631fc2068102c6274bf32a5331 jasper-1.900.1-21.el6_9.i686.rpm fb061499b5f77715cc8edcb8be8bb9e7be45a5471eafcec4f2b108a8a66a6caf jasper-devel-1.900.1-21.el6_9.i686.rpm 2e159a9085ea69dc5494e61caa75a2baad3b313d4c9aaa28d210019d39e1dcc1 jasper-libs-1.900.1-21.el6_9.i686.rpm 6bff2a512a3a02648e7a7e576430def2da83ce3b9e04d9d4645d272028bf74b5 jasper-utils-1.900.1-21.el6_9.i686.rpm x86_64: f2796377490accb35ffc0e76528f712659d30add0842887ce504b8d6645fd220 jasper-1.900.1-21.el6_9.x86_64.rpm fb061499b5f77715cc8edcb8be8bb9e7be45a5471eafcec4f2b108a8a66a6caf jasper-devel-1.900.1-21.el6_9.i686.rpm c5df9adf35d20e7a849fbf7e377cb0cb8902f01f2bcb94c94e31001c9ca058ab jasper-devel-1.900.1-21.el6_9.x86_64.rpm 2e159a9085ea69dc5494e61caa75a2baad3b313d4c9aaa28d210019d39e1dcc1 jasper-libs-1.900.1-21.el6_9.i686.rpm 2d59e1277757dc31c39400a7276f08d8afd03504ce8440facce1f84bb4be714f jasper-libs-1.900.1-21.el6_9.x86_64.rpm b61bc76d97dad867740d8774637fc055cc28289fa4f02b3e6dcaf5d8b3ffa76c jasper-utils-1.900.1-21.el6_9.x86_64.rpm Source: ef8e5d52a2bc6ad50c48ef1ebe4490a67bb92df075afacc102b16d8f076fb162 jasper-1.900.1-21.el6_9.src.rpm -- Johnny Hughes CentOS Project { https://www.centos.org/ } irc: hughesjr, #
Get the latest Linux and open source security news straight to your inbox.