--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-719f4a7313
2025-06-07 05:42:23.006361+00:00
--------------------------------------------------------------------------------

Name        : mod_security
Product     : Fedora 41
Version     : 2.9.9
Release     : 1.fc41
URL         : http://www.modsecurity.org/
Summary     : Security module for the Apache HTTP Server
Description :
ModSecurity is an open source intrusion detection and prevention engine
for web applications. It operates embedded into the web server, acting
as a powerful umbrella - shielding web applications from attacks.

--------------------------------------------------------------------------------
Update Information:

This update includes mod_security version 2.9.9 which addresses CVE-2025-47947
and includes various bug fixes. See https://github.com/owasp-
modsecurity/ModSecurity/releases/tag/v2.9.9 for more information on the changes
in this release.
--------------------------------------------------------------------------------
ChangeLog:

* Thu May 29 2025 Joe Orton  <[email protected]> - 2.9.9-1
- update to 2.9.9 (#2367908)
- add bconds for yajl, ssdeep dependencies
* Wed May 21 2025 Joe Orton  <[email protected]> - 2.9.8-3
- updated warning fixes, synced with upstream PR 3372
* Fri May  9 2025 Joe Orton  <[email protected]> - 2.9.8-2
- fix variety of compiler warnings
* Fri May  9 2025 Joe Orton  <[email protected]> - 2.9.8-1
- rebase to 2.9.8
* Fri May  9 2025 Joe Orton  <[email protected]> - 2.9.7-10
- fix issues with piped logging (by Tomas Korbar, upstream #2823)
* Sat Feb  1 2025 Björn Esser <[email protected]> - 2.9.7-9
- Add explicit BR: libxcrypt-devel
* Fri Jan 17 2025 Fedora Release Engineering <[email protected]> - 
2.9.7-8
- Rebuilt for https://fedoraproject.org/wiki/Fedora_42_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2367907 - CVE-2025-47947 mod_security: ModSecurity Has Possible 
DoS Vulnerability [fedora-41]
        https://bugzilla.redhat.com/show_bug.cgi?id=2367907
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-719f4a7313' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

-- 
_______________________________________________
package-announce mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to