Aggregator

USN-7396-1: OVN vulnerability

3 days 21 hours ago
Marius Berntsberg, Trygve Vea, Tore Anderson, Rodolfo Alonso, Jay Faulkner, and Brian Haley discovered that OVN incorrectly handled certain crafted UDP packets. A remote attacker could possibly use this issue to bypass egress ACL rules.

USN-7395-1: WebKitGTK vulnerabilities

3 days 22 hours ago
Several security issues were discovered in the WebKitGTK Web and JavaScript engines. If a user were tricked into viewing a malicious website, a remote attacker could exploit a variety of issues related to web browser security, including cross-site scripting attacks, denial of service attacks, and arbitrary code execution.

USN-7376-2: MariaDB vulnerability

4 days ago
USN-7376-1 fixed vulnerabilities in MariaDB. This update provides the corresponding updates for Ubuntu 22.04 LTS and Ubuntu 24.04 LTS. Original advisory details: A security issue was discovered in MariaDB and this update includes a new upstream MariaDB version to fix the issue. In addition to security fixes, the updated packages contain bug and regression fixes, new features, and possibly incompatible changes.

USN-7394-1: Doorkeeper vulnerabilities

4 days 8 hours ago
Jonathan Clem and Justin Bull discovered that Doorkeeper could allow arbitrary token revocation and replay attacks. An attacker could possibly use this issue to gain unauthorized access to a system. (CVE-2016-6582) It was discovered that Doorkeeper incorrectly handled storing client names. An attacker could possibly use this issue to execute a cross-site scripting (XSS) attack. (CVE-2018-1000088)

perl-Data-Entropy-0.008-1.fc42

4 days 15 hours ago
FEDORA-2025-76dbde76fe Packages in this update:
  • perl-Data-Entropy-0.008-1.fc42
Update description:

Prior to version 0.008, the Perl module Data::Entropy relied on Perl's builtin rand function to choose an entropy source. Version 0.008 does away with this need.

perl-Data-Entropy-0.008-1.el8

4 days 15 hours ago
FEDORA-EPEL-2025-ed542e7452 Packages in this update:
  • perl-Data-Entropy-0.008-1.el8
Update description:

Prior to version 0.008, the Perl module Data::Entropy relied on Perl's builtin rand function to choose an entropy source. Version 0.008 does away with this need.

perl-Data-Entropy-0.008-1.fc40

4 days 15 hours ago
FEDORA-2025-52d7857536 Packages in this update:
  • perl-Data-Entropy-0.008-1.fc40
Update description:

Prior to version 0.008, the Perl module Data::Entropy relied on Perl's builtin rand function to choose an entropy source. Version 0.008 does away with this need.

perl-Data-Entropy-0.008-1.el9

4 days 15 hours ago
FEDORA-EPEL-2025-3ea9a27f9b Packages in this update:
  • perl-Data-Entropy-0.008-1.el9
Update description:

Prior to version 0.008, the Perl module Data::Entropy relied on Perl's builtin rand function to choose an entropy source. Version 0.008 does away with this need.

perl-Data-Entropy-0.008-1.fc41

4 days 15 hours ago
FEDORA-2025-8a7bd987fe Packages in this update:
  • perl-Data-Entropy-0.008-1.fc41
Update description:

Prior to version 0.008, the Perl module Data::Entropy relied on Perl's builtin rand function to choose an entropy source. Version 0.008 does away with this need.

cri-tools1.29-1.29.0-11.fc41

5 days 17 hours ago
FEDORA-2025-37c6639afe Packages in this update:
  • cri-tools1.29-1.29.0-11.fc41
Update description:
  • Resolve FTBFS
  • Resolves: rhbz#2352149
  • Adopt trivy for license detection to be consistent with cri- tools[1.29..1.32]

cri-tools1.29-1.29.0-11.fc42

5 days 17 hours ago
FEDORA-2025-adae8279e3 Packages in this update:
  • cri-tools1.29-1.29.0-11.fc42
Update description:
  • Resolve FTBFS
  • Resolves: rhbz#2352149
  • Adopt trivy for license detection to be consistent with cri- tools[1.29..1.32]

cri-tools1.29-1.29.0-11.fc43

5 days 18 hours ago
FEDORA-2025-5dbc7adb84 Packages in this update:
  • cri-tools1.29-1.29.0-11.fc43
Update description:

Automatic update for cri-tools1.29-1.29.0-11.fc43.

Changelog * Sat Mar 29 2025 Bradley G Smith <bradley.g.smith@gmail.com> - 1.29.0-11 - Resolve FTBFS - Resolves: rhbz#2352149 - Adopt trivy for license detection to be consistent with cri- tools[1.29..1.32]