You are here
Home > Preporuke > Sigurnosni nedostatak programskog paketa rust

Sigurnosni nedostatak programskog paketa rust

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2019-e39d4910c6
2019-05-25 01:04:18.279079
——————————————————————————–

Name : rust
Product : Fedora 30
Version : 1.34.2
Release : 1.fc30
URL : https://www.rust-lang.org
Summary : The Rust Programming Language
Description :
Rust is a systems programming language that runs blazingly fast, prevents
segfaults, and guarantees thread safety.

This package includes the Rust compiler and documentation generator.

——————————————————————————–
Update Information:

Security fix for CVE-2019-12083
——————————————————————————–
ChangeLog:

* Tue May 14 2019 Josh Stone <jistone@redhat.com> – 1.34.2-1
– Update to 1.34.2 — fixes CVE-2019-12083.
* Thu Apr 25 2019 Josh Stone <jistone@redhat.com> – 1.34.1-1
– Update to 1.34.1.
– Add a ThinLTO fix for rhbz1701339.
* Thu Apr 11 2019 Josh Stone <jistone@redhat.com> – 1.34.0-1
– Update to 1.34.0.
* Fri Mar 1 2019 Josh Stone <jistone@redhat.com> – 1.33.0-2
– Fix deprecations for self-rebuild
——————————————————————————–
References:

[ 1 ] Bug #1709709 – CVE-2019-12083 rust: overriden stabilized method `Error::type_id` can violate Rust’s safety guarantees leading to out-of-bounds write or read
https://bugzilla.redhat.com/show_bug.cgi?id=1709709
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2019-e39d4910c6’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

——————————————————————————–
Fedora Update Notification
FEDORA-2019-f76f0e11b3
2019-05-25 03:34:29.627631
——————————————————————————–

Name : rust
Product : Fedora 29
Version : 1.34.2
Release : 1.fc29
URL : https://www.rust-lang.org
Summary : The Rust Programming Language
Description :
Rust is a systems programming language that runs blazingly fast, prevents
segfaults, and guarantees thread safety.

This package includes the Rust compiler and documentation generator.

——————————————————————————–
Update Information:

Security fix for CVE-2019-12083
——————————————————————————–
ChangeLog:

* Tue May 14 2019 Josh Stone <jistone@redhat.com> – 1.34.2-1
– Update to 1.34.2 — fixes CVE-2019-12083.
* Thu Apr 25 2019 Josh Stone <jistone@redhat.com> – 1.34.1-1
– Update to 1.34.1.
– Add a ThinLTO fix for rhbz1701339.
* Thu Apr 11 2019 Josh Stone <jistone@redhat.com> – 1.34.0-1
– Update to 1.34.0.
* Fri Mar 1 2019 Josh Stone <jistone@redhat.com> – 1.33.0-2
– Fix deprecations for self-rebuild
* Thu Feb 28 2019 Josh Stone <jistone@redhat.com> – 1.33.0-1
– Update to 1.33.0.
* Sat Feb 2 2019 Fedora Release Engineering <releng@fedoraproject.org> – 1.32.0-2
– Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
* Thu Jan 17 2019 Josh Stone <jistone@redhat.com> – 1.32.0-1
– Update to 1.32.0.
* Mon Jan 7 2019 Josh Stone <jistone@redhat.com> – 1.31.1-9
– Update to 1.31.1 for RLS fixes.
* Thu Dec 6 2018 Josh Stone <jistone@redhat.com> – 1.31.0-8
– Update to 1.31.0 — Rust 2018!
– clippy/rls/rustfmt are no longer -preview
* Thu Nov 8 2018 Josh Stone <jistone@redhat.com> – 1.30.1-7
– Update to 1.30.1.
* Thu Oct 25 2018 Josh Stone <jistone@redhat.com> – 1.30.0-6
– Update to 1.30.0.
* Fri Oct 12 2018 Josh Stone <jistone@redhat.com> – 1.29.2-3
– Update to 1.29.2.
——————————————————————————–
References:

[ 1 ] Bug #1709709 – CVE-2019-12083 rust: overriden stabilized method `Error::type_id` can violate Rust’s safety guarantees leading to out-of-bounds write or read
https://bugzilla.redhat.com/show_bug.cgi?id=1709709
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2019-f76f0e11b3’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

AutorZvonimir Bosnjak
Cert idNCERT-REF-2019-05-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa thunderbird

Otkriveni su sigurnosni nedostaci u programskom paketu thunderbird za operacijski sustav Debian. Otkriveni nedostaci potencijalnim napadačima omogućuju izazivanje DoS stanja,...

Close