stable

libsoup3-3.4.4-5.fc40

FEDORA-2024-bd09057dd2 created by mcrha 2 months ago for Fedora 40

Add patches to fix:

  • CVE-2024-52530 libsoup3: HTTP request smuggling via stripping null bytes from the ends of header names (bug #2325358)
  • CVE-2024-52532 libsoup3: infinite loop while reading websocket data (bug #2325356)

Logout Required
After installing this update it is required that you logout of your current user session and log back in to ensure the changes supplied by this update are applied properly.

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2024-bd09057dd2

This update has been submitted for testing by mcrha.

2 months ago

This update's test gating status has been changed to 'waiting'.

2 months ago

This update's test gating status has been changed to 'waiting'.

2 months ago

This update's test gating status has been changed to 'passed'.

2 months ago

This update has been pushed to testing.

2 months ago
User Icon filiperosset commented & provided feedback 2 months ago
karma

no regressions noted here

User Icon derekenz commented & provided feedback 2 months ago
karma

Works

This update can be pushed to stable now if the maintainer wishes

2 months ago

This update has been submitted for stable by bodhi.

a month ago
karma

This update has been pushed to stable.

a month ago

Please login to add feedback.

Metadata
Type
security
Karma
3
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Dates
submitted
2 months ago
in testing
2 months ago
in stable
a month ago
approved
2 months ago
BZ#2325356 CVE-2024-52532 libsoup3: infinite loop while reading websocket data [fedora-all]
0
0
BZ#2325358 CVE-2024-52530 libsoup3: HTTP request smuggling via stripping null bytes from the ends of header names [fedora-all]
0
0

Automated Test Results