30.03.2024 06:16 * bsc#1218487 * bsc#1218610 Cross-References: * CVE-2023-51779
30.03.2024 06:16 Andres Freund discovered that the upstream source tarballs for xz-utils, the XZ-format compression utilities, are compromised and inject malicious code, at build time, into the resulting liblzma5 library.
29.03.2024 19:31 The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
29.03.2024 19:31 Version 6.7.4 Upgrade tcpdf tag encryption algorithm. Version 6.7.3 Fix regression issue #699. Version 6.7.2
29.03.2024 19:31 podman-tui release v1.0.0
29.03.2024 19:31 This update contains security fixes for CVE-2024-29131 and CVE-2024-29133. See https://github.com/apache/commons-configuration/blob/master/RELEASE- NOTES.txt for changes in versions 2.10.0 and 2.10.1.
29.03.2024 19:31 CVE-2024-2004: Usage of disabled protocol If all protocols are disabled at run-time with none being added, curl/libcurl would still allow communication with the default set of allowed protocols, including some that are unencrypted. CVE-2024-2398: HTTP/2 push headers memory-leak
29.03.2024 19:31 update to 123.0.6312.86 Critical CVE-2024-2883: Use after free in ANGLE High CVE-2024-2885: Use after free in Dawn High CVE-2024-2886: Use after free in WebCodecs High CVE-2024-2887: Type Confusion in WebAssembly
29.03.2024 08:46 update to 123.0.6312.86 Critical CVE-2024-2883: Use after free in ANGLE High CVE-2024-2885: Use after free in Dawn High CVE-2024-2886: Use after free in WebCodecs High CVE-2024-2887: Type Confusion in WebAssembly
29.03.2024 08:46 update to latest upstream
29.03.2024 08:46 Security fix for CVE-2024-27318 and CVE-2024-27319
29.03.2024 08:46 Backport upstream fixes for CVE-2023-4233 and CVE-2023-4234
29.03.2024 08:46 update to 123.0.6312.86 Critical CVE-2024-2883: Use after free in ANGLE High CVE-2024-2885: Use after free in Dawn High CVE-2024-2886: Use after free in WebCodecs High CVE-2024-2887: Type Confusion in WebAssembly
29.03.2024 08:46 Security fix for CVE-2023-35936 and CVE-2023-38745 pandoc: backport fixes for CVE-2023-35936 and CVE-2023-38745 pandoc-cli: new package for pandoc binary
28.03.2024 22:16 * bsc#1209138 * bsc#1218544 Cross-References: * CVE-2024-0217