Comments

67 Comments
karma

tested, it works fo f40 (probably other releases as well)

BZ#1547484 Encryption password disclosure
BZ#2316073 7z wrapper jeopardizing the effort to hide password from commandline parameters

Pushing openscap alone is breaking the scap-workbench dependencies. Please re-compile scap-workbench and push it as well. BZ#2305056

Pushing openscap alone is breaking the scap-workbench dependencies. Please re-compile scap-workbench and push it as well. BZ#2305056

karma

in the meanwhile rizin 0.7.3 was pushed to stable f40 , this build is obsoleted by cutter-re-2.3.4-3.fc40

karma

works to me .. thx

BZ#2250039 cabextract is the wrong release

Thank you @adamwill

tested similar build on COPR/f39 and it works to me.

yes push to stable please

BZ#2178823 CVE-2023-27590 rizin: stack-based buffer overflow [fedora-all]
BZ#2182162 rizin-0.5.2 is available
BZ#2203912 cutter-re-2.2.1 is available

yes please ... push to stable

BZ#2112239 CVE-2022-34612 rizin: integer overflow in get_long_object() further leads to heap-overflow causing a crash [fedora-all]
BZ#2124769 CVE-2022-36042 rizin: rizin: Out-of-bounds Write in dyld cache binary plugin [fedora-all]
BZ#2125888 cutter-re-2.2.0 is available
BZ#2126126 CVE-2022-36040 rizin: Out-of-bounds Write in pyc/marshal.c [fedora-all]
BZ#2126129 CVE-2022-36041 rizin: Out-of-bounds Write in Mach-O binary plugin [fedora-all]
BZ#2126130 CVE-2022-36043 rizin: Double Free in bobj.c when using QNX binary plugin [fedora-all]
BZ#2126131 CVE-2022-36044 rizin: Out-of-bounds Write in Lua binary plugin [fedora-all]
BZ#2171271 rizin-0.5.1 is available
BZ#2178823 CVE-2023-27590 rizin: stack-based buffer overflow [fedora-all]
BZ#2182162 rizin-0.5.2 is available
BZ#2203912 cutter-re-2.2.1 is available

This update has been unpushed.

This update has been unpushed.

thank you for testing, compiled with wrong version indeed. I guess the override went somehow wrong.

Thank you for feedback. The rubygem-addressable package is now in EPEL8

Hello, please note that each patch should have upstream bug link https://docs.fedoraproject.org/en-US/packaging-guidelines/#_all_patches_should_have_an_upstream_bug_link_or_comment

"Comment only" is allowed only if there is no bug tracking.

Link makes it easy to follow-up whether the patch was already accepted upstream or not.

regarding the iaito - please can you try https://koji.fedoraproject.org/koji/buildinfo?buildID=1931148 FEDORA-2022-aeeeb12fa6 It should fix BZ#2055092 F34FailsToInstall: iaito ( https://bugzilla.redhat.com/show_bug.cgi?id=2055092 )

This update has been unpushed.

This update has been unpushed.

This update has been unpushed.