Comments

24 Comments

This should go directly to stable unless the relevant code is unreachable in Fedora.

karma

Works and needs to be pushed to stable ASAP.

karma
BZ#2142447 wlroots crashes with assertion failure
BZ#2103242 Status line injection via long notation name
BZ#2031924 log4j-2.16.0 is available
karma

Works for me!

karma

Thanks you, Panu Matilainen!

BZ#1927741 CVE-2021-20266 rpm: missing length checks in hdrblobInit()
BZ#1933867 CVE-2021-3421 rpm: unsigned signature header leads to string injection into an rpm database [fedora-33]
BZ#1934125 CVE-2021-20271 rpm: Signature checks bypass via corrupted rpm package
BZ#1938022 CVE-2021-20266 rpm: missing length checks in hdrblobInit() [fedora-all]
BZ#1938027 CVE-2021-20271 rpm: Signature checks bypass via corrupted rpm package [fedora-all]
BZ#1913624 CVE-2021-21106 chromium-browser: Use after free in autofill
BZ#1913625 CVE-2021-21107 chromium-browser: Use after free in drag and drop
BZ#1913626 CVE-2021-21108 chromium-browser: Use after free in media
BZ#1913627 CVE-2021-21109 chromium-browser: Use after free in payments
BZ#1913629 CVE-2021-21110 chromium-browser: Use after free in safe browsing
BZ#1913630 CVE-2021-21111 chromium-browser: Insufficient policy enforcement in WebUI
BZ#1913631 CVE-2021-21112 chromium-browser: Use after free in Blink
BZ#1913632 CVE-2021-21113 chromium-browser: Heap buffer overflow in Skia
BZ#1913633 CVE-2020-16043 chromium-browser: Insufficient data validation in networking
BZ#1913634 CVE-2021-21114 chromium-browser: Use after free in audio
BZ#1913635 CVE-2020-15995 chromium-browser: Out of bounds write in V8
BZ#1913636 CVE-2021-21115 chromium-browser: Use after free in safe browsing
BZ#1913637 CVE-2021-21116 chromium-browser: Heap buffer overflow in audio
BZ#1913638 CVE-2020-15995 CVE-2020-16043 CVE-2021-21106 CVE-2021-21107 CVE-2021-21108 CVE-2021-21109 CVE-2021-21110 CVE-2021-21111 CVE-2021-21112 CVE-2021-21113 CVE-2021-21114 CVE-2021-21115 CVE-2021-21116 chromium: various flaws [fedora-all]
BZ#1768464 CVE-2019-17455 libntlm: stack-based buffer overflow in buildSmbNtlmAuthRequest in smbutil.c [fedora-all]
BZ#1825591 libntlm-1.6 is available
BZ#1895368 thunderbird-78.5.0 is available