--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-35347bf9f0
2025-03-20 00:15:21.054436+00:00
--------------------------------------------------------------------------------

Name        : iwd
Product     : Fedora 42
Version     : 3.4
Release     : 1.fc42
URL         : https://iwd.wiki.kernel.org/
Summary     : Wireless daemon for Linux
Description :
The daemon and utilities for controlling and configuring the Wi-Fi network
hardware.

--------------------------------------------------------------------------------
Update Information:

bluez 5.80:
Fix issue with handling address type for all types of keys.
Fix issue with handling maximum number of GATT channels.
Fix issue with handling MTU auto-tuning feature.
Fix issue with handling AVRCP volume in reconfigured transports.
Fix issue with handling VCP volume setting requests.
Fix issue with handling VCP connection management.
Fix issue with handling MAP qualification.
Fix issue with handling PBAP qualification.
Fix issue with handling BNEP qualification.
Add support for PreferredBearer device property.
Add support for SupportedTypes Message Access property.
Add support for HFP, A2DP, AVRCP, AVCTP and MAP latest versions.
iwd 3.4:
Add support for the Test Anything Protocol.
libell 0.74:
Add support for NIST P-192 curve usage with ECDH.
Add support for SHA-224 based checksums and HMACs.
libell 0.73:
Fix issue with parsing hwdb.bin child structures.
libell  0.72:
Add support for the Test Anything Protocol.
--------------------------------------------------------------------------------
ChangeLog:

* Mon Mar 17 2025 Peter Robinson <[email protected]> - 3.4-1
- Update to 3.4
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2278949 - CVE-2023-51596 bluez: phone book access profile 
heap-based buffer overflow remote code execution vulnerability [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2278949
  [ 2 ] Bug #2278957 - CVE-2023-51594 bluez: OBEX library out-of-bounds read 
information disclosure vulnerability [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2278957
  [ 3 ] Bug #2278963 - CVE-2023-51592 bluez: audio profile avrcp 
parse_media_folder out-of-bounds read information disclosure vulnerability 
[fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2278963
  [ 4 ] Bug #2278966 - CVE-2023-51589 bluez: audio profile avrcp 
parse_media_element out-of-bounds read information disclosure vulnerability 
[fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2278966
  [ 5 ] Bug #2278968 - CVE-2023-51580 bluez: avrcp_parse_attribute_list 
out-of-bounds read information disclosure vulnerability [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2278968
  [ 6 ] Bug #2278970 - CVE-2023-44431 bluez: AVRCP stack-based buffer overflow 
remote code execution vulnerability [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2278970
  [ 7 ] Bug #2344813 - iwd-3.4 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=2344813
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-35347bf9f0' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

-- 
_______________________________________________
package-announce mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to