stable

varnish-6.6.2-3.fc35

FEDORA-2022-99c5ddb2ae created by ingvar a year ago for Fedora 35

This is a security update adding fixes for the following issues

  • VSV00009 aka CVE-2022-38150: Denial of service
  • VSV00010 aka CVE-2022-45059: Request smuggling
  • VSV00011 aka CVE-2022-45060: Request forgery

For details, see https://varnish-cache.org/security

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2022-99c5ddb2ae

This update's test gating status has been changed to 'waiting'.

a year ago

This update has been submitted for testing by bodhi.

a year ago

This update's test gating status has been changed to 'ignored'.

a year ago

This update has been pushed to testing.

a year ago

This update has been submitted for stable by bodhi.

a year ago

This update has been pushed to stable.

a year ago

Please login to add feedback.

Metadata
Type
security
Severity
high
Karma
0
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
a year ago
in testing
a year ago
in stable
a year ago
BZ#2118570 CVE-2022-38150 varnish: denial of service via colon-starting reason phrase [fedora-all]
0
0
BZ#2141842 CVE-2022-45059 varnish: Request Smuggling Vulnerability [fedora-all]
0
0
BZ#2141847 CVE-2022-45060 varnish: Request Forgery Vulnerability [fedora-all]
0
0

Automated Test Results