stable

transifex-client-0.13.4-1.fc28

FEDORA-2018-8da2d73634 created by lbazan 6 years ago for Fedora 28

New upstream version

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2018-8da2d73634

This update has been submitted for testing by lbazan.

6 years ago
User Icon lnie commented & provided feedback 6 years ago
karma

works

This update has been pushed to testing.

6 years ago

lbazan edited this update.

6 years ago

Hallo @lbazan, thanks for the update.

Can You please comment on why CVE-2013-7110 is mentioned here? I went through the 0.13.4-tagged commits at https://github.com/transifex/transifex-client/ and found that the vulnerability was fixed as https://github.com/transifex/transifex-client/issues/42 with commit https://github.com/transifex/transifex-client/commit/e0d1f8b38ec1a24e2999d63420554d8393206f58 at the end of 2013 (Version 0.10 I guess).

The changelog here reads: * Wed Jan 15 2014 - 0.10-1 - New Upstream version

but the three year old commit is tagged with 0.13.4 now. Was the CVE never fixed or has this new occurrence of the CVE something to do with Python 3.7 support of 0.13.4 that I just don't get? I'm trying to understand the patching process, I'm not trying to say that something's wrong here.

Best

lbazan edited this update.

6 years ago

@lewassec my apologies I put to close the BZ.

Regards!

User Icon bt0dotninja commented & provided feedback 6 years ago
karma

Works for me

User Icon alexove provided feedback 6 years ago
karma

This update has been submitted for batched by bodhi.

6 years ago

This update has been submitted for stable by lbazan.

6 years ago

This update has been pushed to stable.

6 years ago

Please login to add feedback.

Metadata
Type
security
Karma
3
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
disabled
Dates
submitted
6 years ago
in testing
6 years ago
in stable
6 years ago
modified
6 years ago
BZ#1594046 Cannot install due to missing dependency: python3-backports-ssl_match_hostname
0
0

Automated Test Results