Fedora Linux 8778 Published by

A mbedtls security update has been released for Fedora 30.



--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2020-8d3ea0fe8d
2020-02-19 01:27:49.629837
--------------------------------------------------------------------------------

Name : mbedtls
Product : Fedora 30
Version : 2.16.4
Release : 1.fc30
URL :   https://tls.mbed.org/
Summary : Light-weight cryptographic and SSL/TLS library
Description :
Mbed TLS is a light-weight open source cryptographic and SSL/TLS
library written in C. Mbed TLS makes it easy for developers to include
cryptographic and SSL/TLS capabilities in their (embedded)
applications with as little hassle as possible.
FOSS License Exception:   https://tls.mbed.org/foss-license-exception

--------------------------------------------------------------------------------
Update Information:

- Update to 2.16.4 - CVE-2019-18222 Release notes:   https://tls.mbed.org/tech-
updates/releases/mbedtls-2.16.4-and-2.7.13-released Security Advisory:
  https://tls.mbed.org/tech-updates/security-advisories/mbedtls-security-
advisory-2019-12
--------------------------------------------------------------------------------
ChangeLog:

* Mon Feb 10 2020 Morten Stevens - 2.16.4-1
- Update to 2.16.4
* Wed Jan 29 2020 Fedora Release Engineering - 2.16.3-2
- Rebuilt for   https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
* Sat Sep 28 2019 Morten Stevens - 2.16.3-1
- Update to 2.16.3
- Side channel attack on deterministic ECDSA (CVE-2019-16910)
* Tue Sep 3 2019 Morten Stevens - 2.16.2-4
- devel package needs pkcs11-helper-devel (#1748468)
* Sat Aug 3 2019 Morten Stevens - 2.16.2-3
- Fix building on RHEL8
* Thu Jul 25 2019 Fedora Release Engineering - 2.16.2-2
- Rebuilt for   https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
* Sat Jul 20 2019 Morten Stevens - 2.16.2-1
- Update to 2.16.2
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2020-8d3ea0fe8d' at the command
line. For more information, refer to the dnf documentation available at
  http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
  https://fedoraproject.org/keys