--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2022-0739503432
2022-03-01 15:04:45.963226
--------------------------------------------------------------------------------
Name : flatpak
Product : Fedora 35
Version : 1.12.6
Release : 1.fc35
URL : http://flatpak.org/
Summary : Application deployment framework for desktop apps
Description :
flatpak is a system for building, distributing and running sandboxed desktop
applications on Linux. See https://wiki.gnome.org/Projects/SandboxedApps for
more information.
--------------------------------------------------------------------------------
Update Information:
* Fix a bug that sometimes caused repo corruption in case downloads are
interrupted or canceled, necessitating a "flatpak repair" to recover * More
reliably detect the GTK theme * Translation update: pt_BR
--------------------------------------------------------------------------------
ChangeLog:
* Fri Feb 25 2022 Debarshi Ray <rishi(a)fedoraproject.org> - 1.12.6-1
- Update to 1.12.6 (#2053655)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2053655 - flatpak-1.12.6 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2053655
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2022-0739503432' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2022-f8921a3891
2022-03-01 15:04:45.963215
--------------------------------------------------------------------------------
Name : libsolv
Product : Fedora 35
Version : 0.7.21
Release : 1.fc35
URL : https://github.com/openSUSE/libsolv
Summary : Package dependency solver
Description :
A free package dependency solver using a satisfiability algorithm. The
library is based on two major, but independent, blocks:
- Using a dictionary approach to store and retrieve package
and dependency information.
- Using satisfiability, a well known and researched topic, for
resolving package dependencies.
--------------------------------------------------------------------------------
Update Information:
Update to 0.7.21 (Linked CVEs should not affect even current version��� but as
somebody opened bunch of bugs���)
--------------------------------------------------------------------------------
ChangeLog:
* Fri Feb 25 2022 Igor Raits <igor.raits(a)gmail.com> 0.7.21-1
- Update to 0.7.21
* Thu Jan 27 2022 V��t Ondruch <vondruch(a)redhat.com> 0.7.20-3
- Rebuilt for https://fedoraproject.org/wiki/Changes/Ruby_3.1
* Thu Jan 20 2022 Fedora Release Engineering <releng(a)fedoraproject.org> 0.7.20-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_36_Mass_Rebuild
* Fri Oct 1 2021 Igor Raits <ignatenkobrain(a)fedoraproject.org> 0.7.20-1
- Update to 0.7.20
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #1878273 - libsolv-0.7.21 is available
https://bugzilla.redhat.com/show_bug.cgi?id=1878273
[ 2 ] Bug #2056776 - CVE-2021-44573 libsolv: Heap overflow [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2056776
[ 3 ] Bug #2056778 - CVE-2021-44574 libsolv: Heap overflow [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2056778
[ 4 ] Bug #2056781 - CVE-2021-44575 libsolv: Heap overflow [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2056781
[ 5 ] Bug #2056784 - CVE-2021-44576 libsolv: Heap overflow [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2056784
[ 6 ] Bug #2056785 - CVE-2021-44577 libsolv: Heap overflow [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2056785
[ 7 ] Bug #2056793 - CVE-2021-44569 libsolv: Heap overflow [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2056793
[ 8 ] Bug #2056795 - CVE-2021-44571 libsolv: Heap overflow [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2056795
[ 9 ] Bug #2056796 - CVE-2021-44570 libsolv: Heap overflow [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2056796
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2022-f8921a3891' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2022-11bfeae0fc
2022-03-01 15:04:45.963201
--------------------------------------------------------------------------------
Name : mold
Product : Fedora 35
Version : 1.1
Release : 1.fc35
URL : https://github.com/rui314/mold
Summary : A Modern Linker
Description :
mold is a faster drop-in replacement for existing Unix linkers.
It is several times faster than the LLVM lld linker.
mold is designed to increase developer productivity by reducing
build time, especially in rapid debug-edit-rebuild cycles.
--------------------------------------------------------------------------------
Update Information:
Bump version to 1.1
--------------------------------------------------------------------------------
ChangeLog:
* Mon Feb 21 2022 Christoph Erhardt <fedora(a)sicherha.de> - 1.1-1
- Bump version to 1.1
- Drop upstreamed patches
- Update description
* Thu Feb 17 2022 Christoph Erhardt <fedora(a)sicherha.de> - 1.0.2-2
- Rebuild due to mimalloc soname change
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #2058668 - mold has broken dependency on libmimalloc
https://bugzilla.redhat.com/show_bug.cgi?id=2058668
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2022-11bfeae0fc' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2022-5813fd753f
2022-03-01 15:04:45.963055
--------------------------------------------------------------------------------
Name : seamonkey
Product : Fedora 35
Version : 2.53.11
Release : 1.fc35
URL : http://www.seamonkey-project.org
Summary : Web browser, e-mail, news, IRC client, HTML editor
Description :
SeaMonkey is an all-in-one Internet application suite (previously made
popular by Netscape and Mozilla). It includes an Internet browser,
advanced e-mail, newsgroup and feed client, a calendar, IRC client,
HTML editor and a tool to inspect the DOM for web pages. It is derived
from the application formerly known as Mozilla Application Suite.
--------------------------------------------------------------------------------
Update Information:
Update to 2.53.11 Default version of Firefox for the User-Agent string has now
been changed to 68.0 . This should provide better compatibility with modern
sites. The value can be changed in Preferences-->Advanced-->HTTP Networking .
Besides that, an alternate site-specific override machanism is now activated.
(The idea comes from Waterfox-Classic project). The file ua-update.json in the
application dir is now additionally used for a list of overrides. You can copy
it into your profile and edit if needed (be careful with format.) The
"general.useragent.override.*" way continues to work and takes precedence. The
new mechanism can be toggled by "general.useragent.updates.enabled" prefs (in
about:config).
--------------------------------------------------------------------------------
ChangeLog:
* Wed Feb 23 2022 Dmitry Butskoy <Dmitry(a)Butskoy.name> 2.53.11-1
- update to 2.53.11
- use ua-update.json mechanism for site-specific user-agent overrides
- fix some minor issues
--------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2022-5813fd753f' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------