Comments

62 Comments

Thank you @adamwill

tested similar build on COPR/f39 and it works to me.

yes push to stable please

BZ#2178823 CVE-2023-27590 rizin: stack-based buffer overflow [fedora-all]
BZ#2182162 rizin-0.5.2 is available
BZ#2203912 cutter-re-2.2.1 is available

yes please ... push to stable

BZ#2112239 CVE-2022-34612 rizin: integer overflow in get_long_object() further leads to heap-overflow causing a crash [fedora-all]
BZ#2124769 CVE-2022-36042 rizin: rizin: Out-of-bounds Write in dyld cache binary plugin [fedora-all]
BZ#2125888 cutter-re-2.2.0 is available
BZ#2126126 CVE-2022-36040 rizin: Out-of-bounds Write in pyc/marshal.c [fedora-all]
BZ#2126129 CVE-2022-36041 rizin: Out-of-bounds Write in Mach-O binary plugin [fedora-all]
BZ#2126130 CVE-2022-36043 rizin: Double Free in bobj.c when using QNX binary plugin [fedora-all]
BZ#2126131 CVE-2022-36044 rizin: Out-of-bounds Write in Lua binary plugin [fedora-all]
BZ#2171271 rizin-0.5.1 is available
BZ#2178823 CVE-2023-27590 rizin: stack-based buffer overflow [fedora-all]
BZ#2182162 rizin-0.5.2 is available
BZ#2203912 cutter-re-2.2.1 is available

This update has been unpushed.

This update has been unpushed.

thank you for testing, compiled with wrong version indeed. I guess the override went somehow wrong.

Thank you for feedback. The rubygem-addressable package is now in EPEL8

Hello, please note that each patch should have upstream bug link https://docs.fedoraproject.org/en-US/packaging-guidelines/#_all_patches_should_have_an_upstream_bug_link_or_comment

"Comment only" is allowed only if there is no bug tracking.

Link makes it easy to follow-up whether the patch was already accepted upstream or not.

regarding the iaito - please can you try https://koji.fedoraproject.org/koji/buildinfo?buildID=1931148 FEDORA-2022-aeeeb12fa6 It should fix BZ#2055092 F34FailsToInstall: iaito ( https://bugzilla.redhat.com/show_bug.cgi?id=2055092 )

This update has been unpushed.

This update has been unpushed.

This update has been unpushed.

This update has been unpushed.

new bugfix version was just released today

new bugfix version was just released today

new bugfix version was just released today

new bugfix version was just released today