The following Fedora EPEL 6 Security updates need testing:
Age URL
6 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-c3bf4a8f31
php-horde-Horde-Data-2.1.5-1.el6
5 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-06ccd2148b
tomcat-7.0.99-1.el6
1 https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2020-42e4c7d470
mbedtls-2.7.13-1.el6
The following builds have been pushed to Fedora EPEL 6 updates-testing
libstoragemgmt-1.8.3-1.el6
pam_radius-1.4.0-4.el6
Details about builds:
================================================================================
libstoragemgmt-1.8.3-1.el6 (FEDORA-EPEL-2020-7d88c6311f)
Storage array management library
--------------------------------------------------------------------------------
Update Information:
* Bug fix: https://github.com/libstorage/libstoragemgmt/issues/410 * Update:
JSON library * Few other misc. fixes
--------------------------------------------------------------------------------
ChangeLog:
* Wed Feb 12 2020 Tony Asleson <[email protected]> 1.8.3-1
- New upstream release 1.8.3
--------------------------------------------------------------------------------
================================================================================
pam_radius-1.4.0-4.el6 (FEDORA-EPEL-2020-dd6b868b6d)
PAM Module for RADIUS Authentication
--------------------------------------------------------------------------------
Update Information:
Security fix for CVE-2015-9542
--------------------------------------------------------------------------------
ChangeLog:
* Mon Apr 22 2019 Alexander Scheel <[email protected]> - 1.4.0-4
- Fix NULL-termination of password buffer, garbage contents prior to hashing
* Mon Mar 11 2019 Alexander Scheel <[email protected]> 1.4.0-3
- Fix buffer overflow when hashing password
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1686980 - CVE-2015-9542 pam_radius: buffer overflow in password
field
https://bugzilla.redhat.com/show_bug.cgi?id=1686980
--------------------------------------------------------------------------------
_______________________________________________
epel-devel mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct:
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives:
https://lists.fedoraproject.org/archives/list/[email protected]