Menu

Quote

An update that fixes three vulnerabilities is now available.

Red Hat OpenStack Platform 16.2 (Train) director operator containers, with several Important security fixes, are available for technology preview. 2. Description: Release osp-director-operator images

Apache XML Security for Java could be made to expose sensitive information.

An update that fixes one vulnerability is now available.

Several security issues were fixed in FreeType.

Several security issues were fixed in Checkmk.

The container suse-sles-15-sp3-chost-byos-v20220718-hvm-ssd-x86_64 was updated. The following patches have been included in this update:

An update that fixes one vulnerability is now available.

HarfBuzz could be made to crash if it opened specially crafted data.

The container sles-15-sp2-chost-byos-v20220718-x86-64 was updated. The following patches have been included in this update:

The container suse-sles-15-sp2-chost-byos-v20220718-hvm-ssd-x86_64 was updated. The following patches have been included in this update:

The container suse-sles-15-sp2-chost-byos-v20220718-x86_64-gen2 was updated. The following patches have been included in this update:

Several security issues were fixed in LibTIFF.

HTTP-Daemon could allow HTTP Request Smuggling attacks.

An update that solves 11 vulnerabilities and has 44 fixes is now available.

An update that fixes four vulnerabilities is now available.

An update that solves 10 vulnerabilities, contains one feature and has 43 fixes is now available.

An update that solves 9 vulnerabilities and has 9 fixes is now available.

The container sles-15-sp1-chost-byos-v20220715-x86-64 was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

The container bci/python was updated. The following patches have been included in this update:

The container bci/bci-minimal was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

Rebuild for CVE-2022-{24675,28327,29526} in golang and other go ecosystem CVEs — This contains the result from the mass rebuild in F35 for all packages that require `golang` and provide binaries to mitigate the following CVEs: `golang` itself: – CVE-2022-24675 golang: encoding/pem: fix stack overflow in Decode – CVE-2022-28327 golang: crypto/elliptic: panic caused by oversized scalar […]

Rebuild for CVE-2022-{24675,28327,29526} in golang and other go ecosystem CVEs — This contains the result from the mass rebuild in F35 for all packages that require `golang` and provide binaries to mitigate the following CVEs: `golang` itself: – CVE-2022-24675 golang: encoding/pem: fix stack overflow in Decode – CVE-2022-28327 golang: crypto/elliptic: panic caused by oversized scalar […]

security update

security update

An update that fixes 5 vulnerabilities is now available.

The container suse/sle15 was updated. The following patches have been included in this update:

The container bci/bci-micro was updated. The following patches have been included in this update:

The container bci/bci-init was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

**Version 2.13.0** Enhancement * 106: Refined types as per laminas/laminas- coding-standard:2.3.x upgrades thanks to @Ocramius * 103: Update to laminas/laminas-coding-standard:2.3.x, improved types and internal API thanks to @gsteel —- **Version 2.12.0** Bug * 99: Merge release 2.11.3 into 2.12.x thanks to @github-actions[bot] * 92: Fix typo in property name in

An update that solves 15 vulnerabilities and has one errata is now available.

An update that fixes one vulnerability is now available.

The container bci/dotnet-sdk was updated. The following patches have been included in this update:

The container suse/sle15 was updated. The following patches have been included in this update:

security update

security update

The 5.18.11 stable kernel update contains a number of important fixes across the tree. In addition to the 5.18.11 stable patches, this build contains the retbleed patches scheduled for 5.18.12 kernels.

– fix unpreserved file permissions (CVE-2022-32207) – fix Set-Cookie denial of service (CVE-2022-32205) – fix HTTP compression denial of service (CVE-2022-32206) – fix FTP-KRB bad message verification (CVE-2022-32208)

security update

An update that solves one vulnerability and has three fixes is now available.

An update that solves 21 vulnerabilities and has 6 fixes is now available.

An update that fixes one vulnerability is now available.

An update that contains security fixes can now be installed.

Python could be made to run arbitrary code if it received a specially crafted input.

HTTP-Daemon could allow HTTP Request Smuggling attacks.

An update that solves 9 vulnerabilities and has four fixes is now available.

An update that solves 15 vulnerabilities and has 22 fixes is now available.

An update that fixes one vulnerability is now available.

uriparser could be made to crash if it received specially crafted input.

The container bci/ruby was updated. The following patches have been included in this update:

The container bci/python was updated. The following patches have been included in this update:

security update

Several security issues were fixed in X.Org X Server.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

GnuPG could allow forged signatures.

AES OCB mode for 32-bit x86 platforms using the AES-NI assembly optimised implementation will not encrypt the entirety of the data under some circumstances. This could reveal sixteen bytes of data that was preexisting in the memory that wasn’t written. In the special case of “in place” encryption, sixteen bytes of the plaintext would be […]

security update

Multiple security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

An update that contains security fixes can now be installed.

An update that fixes two vulnerabilities is now available.

An update that fixes one vulnerability is now available.

The container sles-15-sp3-chost-byos-v20220708-x86-64 was updated. The following patches have been included in this update:

The container suse-sles-15-sp3-chost-byos-v20220708-hvm-ssd-x86_64 was updated. The following patches have been included in this update:

The container suse/sles12sp4 was updated. The following patches have been included in this update:

The 5.18.10 stable kernel update contains a number of important fixes across the tree.

The 5.18.10 stable kernel update contains a number of important fixes across the tree.

**Changelog** “` * Tue Jul 05 2022 Clemens Lang – 1:3.0.5-1 – Rebase to upstream version 3.0.5 Related: rhbz#2099972, CVE-2022-2097 “`

upstream release 2.9.2

An update that fixes one vulnerability is now available.

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

An update that fixes one vulnerability is now available.

An update that contains security fixes can now be installed.

An update that contains security fixes can now be installed.

An update that contains security fixes can now be installed.

An update that fixes one vulnerability is now available.

security update

An update that contains security fixes can now be installed.

An update that fixes two vulnerabilities is now available.

An update that fixes 10 vulnerabilities is now available.

An update that contains security fixes can now be installed.

An update that contains security fixes can now be installed.

Several security issues were fixed in NSS.

security update

An update that fixes one vulnerability is now available.

An update that contains security fixes can now be installed.

An update that fixes one vulnerability is now available.

An update that fixes 9 vulnerabilities is now available.

An update that fixes one vulnerability is now available.

An update that fixes one vulnerability is now available.

security update

security update

GnuPG could allow forged signatures.

OpenSSL could be made to expose sensitive information over the network.