stable

varnish-6.6.2-3.fc35

FEDORA-2022-99c5ddb2ae created by ingvar 4 months ago for Fedora 35

This is a security update adding fixes for the following issues

  • VSV00009 aka CVE-2022-38150: Denial of service
  • VSV00010 aka CVE-2022-45059: Request smuggling
  • VSV00011 aka CVE-2022-45060: Request forgery

For details, see https://varnish-cache.org/security

How to install

sudo dnf upgrade --refresh --advisory=FEDORA-2022-99c5ddb2ae

This update's test gating status has been changed to 'waiting'.

4 months ago

This update has been submitted for testing by bodhi.

4 months ago

This update's test gating status has been changed to 'ignored'.

4 months ago

This update has been pushed to testing.

4 months ago

This update has been submitted for stable by bodhi.

4 months ago

This update has been pushed to stable.

4 months ago

Please login to add feedback.

Metadata
Type
security
Severity
high
Karma
0
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
4 months ago
in testing
4 months ago
in stable
4 months ago
BZ#2118570 CVE-2022-38150 varnish: denial of service via colon-starting reason phrase [fedora-all]
0
0
BZ#2141842 CVE-2022-45059 varnish: Request Smuggling Vulnerability [fedora-all]
0
0
BZ#2141847 CVE-2022-45060 varnish: Request Forgery Vulnerability [fedora-all]
0
0

Automated Test Results

ignored