stable

borgbackup-1.2.6-1.fc39

FEDORA-2023-467632ecbe created by fschwarz 5 months ago for Fedora 39

fix for CVE-2023-36811: spoofed archive leads to data loss

Please note that starting with borgbackup 1.2.5 all borg repos must use TAM authentication: https://github.com/borgbackup/borg/blob/1.2.6/docs/changes.rst#pre-125-archives-spoofing-vulnerability-cve-2023-36811

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2023-467632ecbe

This update has been submitted for testing by fschwarz.

5 months ago

This update's test gating status has been changed to 'ignored'.

5 months ago

This update has been pushed to testing.

5 months ago

This update has been submitted for stable by bodhi.

There is an ongoing freeze; this will be pushed to stable after the freeze is over.

5 months ago

This update has been pushed to stable.

5 months ago

Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
0
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
3 days
Dates
submitted
5 months ago
in testing
5 months ago
in stable
5 months ago
approved
5 months ago
BZ#2236305 CVE-2023-36811 borgbackup: spoofed archive leads to data loss [fedora-all]
0
0

Automated Test Results