Fedora 40 Update: rsync-3.4.0-1.fc40
Fedora 40 Update: seamonkey-2.53.20-2.fc40
Fedora 41 Update: seamonkey-2.53.20-2.fc41
[SECURITY] Fedora 40 Update: rsync-3.4.0-1.fc40
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-73c1f25730
2025-01-16 02:17:14.085993+00:00
--------------------------------------------------------------------------------
Name : rsync
Product : Fedora 40
Version : 3.4.0
Release : 1.fc40
URL : https://rsync.samba.org/
Summary : A program for synchronizing files over a network
Description :
Rsync uses a reliable algorithm to bring remote and host files into
sync very quickly. Rsync is fast because it just sends the differences
in the files over the network instead of sending the complete
files. Rsync is often used as a very powerful mirroring process or
just as a more capable replacement for the rcp command. A technical
report which describes the rsync algorithm is included in this
package.
--------------------------------------------------------------------------------
Update Information:
New version 3.4.0. Contains fixes for CVE-2024-12084, CVE-2024-12085,
CVE-2024-12086, CVE-2024-12087, CVE-2024-12088, CVE-2024-12747.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Jan 14 2025 Michal Ruprich [mruprich@redhat.com] - 3.4.0-1
- New version 3.4.0
- Fix for CVE-2024-12084, CVE-2024-12085, CVE-2024-12086
- Fix for CVE-2024-12087, CVE-2024-12088, CVE-2024-12747
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2337961 - [Minor Incident] CVE-2024-12084 rsync: Heap Buffer Overflow in Rsync due to Improper Checksum Length Handling [fedora-40]
https://bugzilla.redhat.com/show_bug.cgi?id=2337961
[ 2 ] Bug #2337967 - [Minor Incident] CVE-2024-12085 rsync: Info Leak via Uninitialized Stack Contents [fedora-40]
https://bugzilla.redhat.com/show_bug.cgi?id=2337967
[ 3 ] Bug #2337972 - [Minor Incident] CVE-2024-12086 rsync: rsync server leaks arbitrary client files [fedora-40]
https://bugzilla.redhat.com/show_bug.cgi?id=2337972
[ 4 ] Bug #2337977 - [Minor Incident] CVE-2024-12087 rsync: Path traversal vulnerability in rsync [fedora-40]
https://bugzilla.redhat.com/show_bug.cgi?id=2337977
[ 5 ] Bug #2337982 - [Minor Incident] CVE-2024-12088 rsync: --safe-links option bypass leads to path traversal [fedora-40]
https://bugzilla.redhat.com/show_bug.cgi?id=2337982
[ 6 ] Bug #2337988 - [Minor Incident] CVE-2024-12747 rsync: Race Condition in rsync Handling Symbolic Links [fedora-40]
https://bugzilla.redhat.com/show_bug.cgi?id=2337988
[ 7 ] Bug #2338024 - rsync-3.4.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2338024
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-73c1f25730' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--
[SECURITY] Fedora 40 Update: seamonkey-2.53.20-2.fc40
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-4945eb6eeb
2025-01-16 02:17:14.085982+00:00
--------------------------------------------------------------------------------
Name : seamonkey
Product : Fedora 40
Version : 2.53.20
Release : 2.fc40
URL : http://www.seamonkey-project.org
Summary : Web browser, e-mail, news, IRC client, HTML editor
Description :
SeaMonkey is an all-in-one Internet application suite (previously made
popular by Netscape and Mozilla). It includes an Internet browser,
advanced e-mail, newsgroup and feed client, a calendar, IRC client,
HTML editor and a tool to inspect the DOM for web pages. It is derived
from the application formerly known as Mozilla Application Suite.
--------------------------------------------------------------------------------
Update Information:
Fix bookmarks restoring from file.
Update to 2.53.20
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jan 8 2025 Dmitry Butskoy [Dmitry@Butskoy.name] 2.53.20-2
- add fix for mozbz 1894423 and 1940204
- add appstream metadata file (#2336121)
* Mon Jan 6 2025 Dmitry Butskoy [Dmitry@Butskoy.name] 2.53.20-1
- update to 2.53.20
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2336121 - SeaMonkey has missing AppStream metadata
https://bugzilla.redhat.com/show_bug.cgi?id=2336121
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-4945eb6eeb' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--
[SECURITY] Fedora 41 Update: seamonkey-2.53.20-2.fc41
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-135cf1b7f3
2025-01-16 01:58:44.084177+00:00
--------------------------------------------------------------------------------
Name : seamonkey
Product : Fedora 41
Version : 2.53.20
Release : 2.fc41
URL : http://www.seamonkey-project.org
Summary : Web browser, e-mail, news, IRC client, HTML editor
Description :
SeaMonkey is an all-in-one Internet application suite (previously made
popular by Netscape and Mozilla). It includes an Internet browser,
advanced e-mail, newsgroup and feed client, a calendar, IRC client,
HTML editor and a tool to inspect the DOM for web pages. It is derived
from the application formerly known as Mozilla Application Suite.
--------------------------------------------------------------------------------
Update Information:
Fix bookmarks restoring from file.
Update to 2.53.20
--------------------------------------------------------------------------------
ChangeLog:
* Wed Jan 8 2025 Dmitry Butskoy [Dmitry@Butskoy.name] 2.53.20-2
- add fix for mozbz 1894423 and 1940204
- add appstream metadata file (#2336121)
* Mon Jan 6 2025 Dmitry Butskoy [Dmitry@Butskoy.name] 2.53.20-1
- update to 2.53.20
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2336121 - SeaMonkey has missing AppStream metadata
https://bugzilla.redhat.com/show_bug.cgi?id=2336121
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-135cf1b7f3' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--