Category Archives: Fedora

Fedora – Security Updates

tomcat-7.0.75-1.el6

This updates includes a rebase from tomcat 7.0.73 up to 7.0.75. The update resolves a single CVE and one bug:

* rhbz#1420223 – CVE-2016-6325 tomcat writable config files allow privilege escalation
* rhbz#1372789 – init script status gives incorrect results

xen-4.6.4-7.fc24

memory leak when destroying guest without PT devices [XSA-207] (#1422492)
update patches for XSA-208 after upstream revision (no functional change)

—-

Qemu: net: mcf_fec: infinite loop while receiving data in mcf_fec_receive
[CVE-2016-9776]
Qemu: audio: memory leakage in ac97 [CVE-2017-5525] (#1414111)
Qemu: audio: memory leakage in es1370 device [CVE-2017-5526] (#1414211)
oob access in cirrus bitblt copy [XSA-208, CVE-2017-2615] (#1418243)

suricata-3.2.1-1.fc24

This is a new upstream feature and security release. Improvements include: bypass; pre-filter — fast packet keywords; TLS improvements; ICS protocol additions: DNP3 CIP/ENIP; SHA1/SHA256 for file matching, logging & extraction; NIC offloading disabled by default; unix socket enabled by default; and App Layer stats. Documentation: http://suricata.readthedocs.io/en/suricata-3.2/

suricata-3.2.1-1.fc25

This is a new upstream feature and security release. Improvements include: bypass; pre-filter — fast packet keywords; TLS improvements; ICS protocol additions: DNP3 CIP/ENIP; SHA1/SHA256 for file matching, logging & extraction; NIC offloading disabled by default; unix socket enabled by default; and App Layer stats. Documentation: http://suricata.readthedocs.io/en/suricata-3.2/

suricata-3.2.1-1.el7

This is a new upstream feature and security release. Improvements include: bypass; pre-filter — fast packet keywords; TLS improvements; ICS protocol additions: DNP3 CIP/ENIP; SHA1/SHA256 for file matching, logging & extraction; NIC offloading disabled by default; unix socket enabled by default; and App Layer stats. Documentation: http://suricata.readthedocs.io/en/suricata-3.2/