https://bugzilla.redhat.com/show_bug.cgi?id=2276800
Bug ID: 2276800
Summary: CVE-2024-32875 hugo: title arguments in Markdown for
links and images not escaped in internal render hooks
[fedora-all]
Product: Fedora
Version: 40
Status: NEW
Component: hugo
Keywords: Security, SecurityTracking
Severity: medium
Priority: medium
Assignee: athoscribeiro(a)gmail.com
Reporter: rkeshri(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: athoscribeiro(a)gmail.com,
epel-packagers-sig(a)lists.fedoraproject.org,
go-sig(a)lists.fedoraproject.org, neil(a)shrug.pw,
quantum.analyst(a)gmail.com, redhat(a)flyn.org
Target Milestone: ---
Classification: Fedora
More information about this security flaw is available in the following bug:
http://bugzilla.redhat.com/show_bug.cgi?id=2276799
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2276800
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2272681
Bug ID: 2272681
Summary: [abrt] gnome-calendar:
g_type_check_instance_is_fundamentally_a():
gnome-calendar killed by SIGSEGV
Product: Fedora
Version: 40
Hardware: x86_64
Status: NEW
Whiteboard: abrt_hash:2c721158b5e537cf6c943db83af7d4843fe1e1f1;VAR
IANT_ID=workstation;
Component: gnome-calendar
Assignee: gnome-sig(a)lists.fedoraproject.org
Reporter: dan.p.craw(a)gmail.com
QA Contact: extras-qa(a)fedoraproject.org
CC: epel-packagers-sig(a)lists.fedoraproject.org,
gnome-sig(a)lists.fedoraproject.org,
igor.raits(a)gmail.com, klember(a)redhat.com
Target Milestone: ---
Classification: Fedora
Description of problem:
I exit the application like I normally would using the X in the top right
Version-Release number of selected component:
gnome-calendar-46.0-1.fc40
Additional info:
reporter: libreport-2.17.15
type: CCpp
reason: gnome-calendar killed by SIGSEGV
journald_cursor:
s=907e1d0e7af84b4996007471e0e52560;i=e85e;b=c07dbd45ceb0489bb28fd7eed8474486;m=5e8237bb;t=6151e421587b6;x=ad10ac7c5eda6653
executable: /usr/bin/gnome-calendar
cmdline: /usr/bin/gnome-calendar --gapplication-service
cgroup:
0::/user.slice/user-1000.slice/user@1000.service/app.slice/dbus-:1.2-org.gnome.Calendar@0.service
rootdir: /
uid: 1000
kernel: 6.8.2-300.fc40.x86_64
package: gnome-calendar-46.0-1.fc40
runlevel: N 5
backtrace_rating: 4
crash_function: g_type_check_instance_is_fundamentally_a
comment: I exit the application like I normally would using the X in the
top right
Truncated backtrace:
Thread no. 1 (14 frames)
#0 g_type_check_instance_is_fundamentally_a at ../gobject/gtype.c:4154
#2 on_gclue_client_stopped_cb at ../src/weather/gcal-weather-service.c:810
#3 g_task_return_now at ../gio/gtask.c:1361
#4 g_task_return at ../gio/gtask.c:1430
#6 reply_cb at ../gio/gdbusproxy.c:2555
#7 g_task_return_now at ../gio/gtask.c:1361
#8 g_task_return at ../gio/gtask.c:1430
#10 g_dbus_connection_call_done at ../gio/gdbusconnection.c:5897
#11 g_task_return_now at ../gio/gtask.c:1361
#12 complete_in_idle_cb at ../gio/gtask.c:1375
#15 g_main_context_dispatch_unlocked at ../glib/gmain.c:4152
#16 g_main_context_iterate_unlocked.isra.0 at ../glib/gmain.c:4217
#17 g_main_context_iteration at ../glib/gmain.c:4282
#18 g_application_run at ../gio/gapplication.c:2712
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2272681
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2269647
Bug ID: 2269647
Summary: [abrt] cinnamon:
g_type_check_instance_is_fundamentally_a(): cinnamon
killed by SIGSEGV
Product: Fedora
Version: 40
Hardware: x86_64
Status: NEW
Whiteboard: abrt_hash:3910e2e3252c8b648322ce8386cf0e2b57ab4b9c;VAR
IANT_ID=cinnamon;
Component: cinnamon
Assignee: leigh123linux(a)googlemail.com
Reporter: fabiojlbc1982(a)gmail.com
QA Contact: extras-qa(a)fedoraproject.org
CC: epel-packagers-sig(a)lists.fedoraproject.org,
leigh123linux(a)googlemail.com, miketwebster(a)gmail.com,
riehecky(a)fnal.gov
Target Milestone: ---
Classification: Fedora
Version-Release number of selected component:
cinnamon-6.0.4-5.fc40
Additional info:
reporter: libreport-2.17.15
type: CCpp
reason: cinnamon killed by SIGSEGV
journald_cursor:
s=52d7c2eb2897498a9440d49a25feb194;i=31d9;b=2628598754e74631ba5b1ffb889ce96a;m=8cbd502;t=613ab67e8273b;x=b542357ba3e57f7a
executable: /usr/bin/cinnamon
cmdline: /usr/bin/cinnamon --replace
cgroup: 0::/user.slice/user-1000.slice/session-2.scope
rootdir: /
uid: 1000
kernel: 6.8.0-63.fc40.1.x86_64
package: cinnamon-6.0.4-5.fc40
runlevel: N 5
backtrace_rating: 4
crash_function: g_type_check_instance_is_fundamentally_a
Truncated backtrace:
Thread no. 1 (18 frames)
#0 g_type_check_instance_is_fundamentally_a at ../gobject/gtype.c:4153
#2 _cinnamon_app_remove_window at ../src/cinnamon-app.c:995
#5 signal_emit_unlocked_R.isra.0 at ../gobject/gsignal.c:3879
#6 signal_emit_valist_unlocked at ../gobject/gsignal.c:3511
#9 meta_window_unmanage at ../src/core/window.c:1679
#10 meta_wayland_shell_surface_destroy_window at
../src/wayland/meta-wayland-shell-surface.c:368
#11 xdg_toplevel_destructor.lto_priv at
../src/wayland/meta-wayland-xdg-shell.c:194
#12 destroy_resource at ../src/wayland-server.c:732
#13 wl_resource_destroy at ../src/wayland-server.c:749
#14 ffi_call_unix64 at ../src/x86/unix64.S:104
#15 ffi_call_int at ../src/x86/ffi64.c:673
#16 ffi_call at ../src/x86/ffi64.c:710
#17 wl_closure_invoke at ../src/connection.c:1025
#18 wl_client_connection_data at ../src/wayland-server.c:438
#19 wl_event_loop_dispatch at ../src/event-loop.c:1027
#20 wayland_event_source_dispatch at ../src/wayland/meta-wayland.c:94
#22 g_main_context_dispatch_unlocked at ../glib/gmain.c:4152
#23 g_main_context_iterate_unlocked.isra.0 at ../glib/gmain.c:4217
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2269647
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2260129
Bug ID: 2260129
Summary: Update Package Versioning Strategy & Version
Product: Fedora
Version: rawhide
Hardware: x86_64
OS: Linux
Status: NEW
Component: spirv-headers
Severity: medium
Assignee: airlied(a)redhat.com
Reporter: jonathansteffan(a)gmail.com
QA Contact: extras-qa(a)fedoraproject.org
CC: airlied(a)redhat.com, ajax(a)redhat.com,
epel-packagers-sig(a)lists.fedoraproject.org,
jexposit(a)redhat.com
Target Milestone: ---
Classification: Fedora
As part of the update to vulkan 1.3.275.0, spirv-headers also needs to be
updated. Please consider changing the versioning format to more closely match
the rest of the vulkan packages.
This patch adds an epoch and changes the versioning strategy. It also bumps the
version to prepare for the rest of the updates.
--- a/spirv-headers.spec
+++ b/spirv-headers.spec
@@ -1,15 +1,13 @@
-%global commit e867c06631767a2d96424cbec530f9ee5e78180f
-%global shortcommit %(c=%{commit}; echo ${c:0:7})
-
Name: spirv-headers
-Version: 1.5.5
+Version: 1.3.275.0
+Epoch: 1
Release: %autorelease
Summary: Header files from the SPIR-V registry
License: MIT
URL: https://github.com/KhronosGroup/SPIRV-Headers/
-Source0: %{url}/archive/%{commit}/%{name}-%{shortcommit}.tar.gz
+Source0:
%url/archive/vulkan-sdk-%{version}.tar.gz#/SPIRV-Headers-sdk-%{version}.tar.gz
BuildArch: noarch
@@ -42,7 +40,7 @@ This includes:
* The XML registry fil
%prep
-%autosetup -n SPIRV-Headers-%{commit}
+%autosetup -n SPIRV-Headers-vulkan-sdk-%{version}
chmod a-x include/spirv/1.2/spirv.py
Reproducible: Always
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2260129
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2254021
Bug ID: 2254021
Summary: Why is cinnamon package summary / description "Window
management and application launching for GNOME"?
Product: Fedora
Version: rawhide
Hardware: All
OS: Linux
Status: NEW
Component: cinnamon
Severity: low
Assignee: leigh123linux(a)googlemail.com
Reporter: rdkracz(a)gmail.com
QA Contact: extras-qa(a)fedoraproject.org
CC: epel-packagers-sig(a)lists.fedoraproject.org,
leigh123linux(a)googlemail.com, miketwebster(a)gmail.com,
riehecky(a)fnal.gov
Target Milestone: ---
Classification: Fedora
"Window management and application launching for GNOME". GNOME? I looked over
at pkgs.org and Fedora is the only distribution that uses the word GNOME in the
package description/summary
Reproducible: Always
Steps to Reproduce:
dnf se cinnamon
Actual Results:
cinnamon.x86_64 : Window management and application launching for GNOME
Expected Results:
cinnamon.x86_64 : Window management and application launching for Cinnamon
or "Fork of GNOME Shell with layout similar to GNOME 2" / "GNOME3 fork of Linux
Mint with GNOME2 aspect"
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2254021
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…