Fedora Linux 8779 Published by

A cJSON security update for Fedora Linux 40 has been released:

[SECURITY] Fedora 40 Update: cjson-1.7.18-1.fc40




[SECURITY] Fedora 40 Update: cjson-1.7.18-1.fc40


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2024-5db248f2a0
2024-09-29 01:37:02.164163
--------------------------------------------------------------------------------

Name : cjson
Product : Fedora 40
Version : 1.7.18
Release : 1.fc40
URL : https://github.com/DaveGamble/cJSON
Summary : Ultralightweight JSON parser in ANSI C
Description :
cJSON aims to be the dumbest possible parser that you can get your job
done with. It's a single file of C, and a single header file.

--------------------------------------------------------------------------------
Update Information:

Update to new upstream version (closes rhbz#2237124)
--------------------------------------------------------------------------------
ChangeLog:

* Thu Sep 26 2024 Fabian Affolter - 1.7.18-1
- Update to new upstream version (closes rhbz#2237124)
- Fix rhbz#2277268, closes rhbz#2277269
* Wed Jul 17 2024 Fedora Release Engineering [releng@fedoraproject.org] - 1.7.17-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_41_Mass_Rebuild
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #2277268 - CVE-2024-31755 cjson: segmentation violation trigger through the second parameter of function cJSON_SetValuestring at cJSON.c
https://bugzilla.redhat.com/show_bug.cgi?id=2277268
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2024-5db248f2a0' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

--