FEDORA-2019-8a437d5c2f created by kdudka 5 months ago for Fedora 29
stable
  • update to the latest upstream release (fixes CVE-2019-9511 and CVE-2019-9513)

How to install

sudo dnf upgrade --advisory=FEDORA-2019-8a437d5c2f

This update has been submitted for testing by kdudka.

5 months ago

This update's test gating status has been changed to 'waiting'.

5 months ago

This update's test gating status has been changed to 'ignored'.

5 months ago

This update has been pushed to testing.

5 months ago
User Icon sdgathman provided feedback 5 months ago
karma
User Icon kwizart commented & provided feedback 5 months ago
karma

This package is needed by nodejs/npm currently in stable for f29. Please push ASAP.

This update can be pushed to stable now if the maintainer wishes

5 months ago

sgallagh edited this update.

5 months ago
User Icon sgallagh provided feedback 5 months ago
karma
BZ#1745636 unable to update nodejs/npm due to conflict with libnghttp2

This update has been submitted for stable by bodhi.

5 months ago
User Icon kdudka commented & provided feedback 5 months ago

Thank you for testing the update!

User Icon fcami provided feedback 5 months ago
karma
BZ#1741947 CVE-2019-9511 HTTP/2: large amount of data request leads to denial of service [fedora-all]
BZ#1742011 CVE-2019-9513 nghttp2: HTTP/2: flood using PRIORITY frames resulting in excessive resource consumption [fedora-all]
BZ#1745636 unable to update nodejs/npm due to conflict with libnghttp2

This update has been pushed to stable.

5 months ago

Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
4
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Dates
submitted
5 months ago
in testing
5 months ago
in stable
5 months ago
modified
5 months ago
BZ#1741947 CVE-2019-9511 HTTP/2: large amount of data request leads to denial of service [fedora-all]
0
1
BZ#1742011 CVE-2019-9513 nghttp2: HTTP/2: flood using PRIORITY frames resulting in excessive resource consumption [fedora-all]
0
1
BZ#1745636 unable to update nodejs/npm due to conflict with libnghttp2
0
2

Automated Test Results