stable

borgbackup-1.2.6-1.fc38

FEDORA-2023-555f9fac30 created by fschwarz a year ago for Fedora 38

fix for CVE-2023-36811: spoofed archive leads to data loss

Please note that starting with borgbackup 1.2.5 all borg repos must use TAM authentication: https://github.com/borgbackup/borg/blob/1.2.6/docs/changes.rst#pre-125-archives-spoofing-vulnerability-cve-2023-36811

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2023-555f9fac30

This update has been submitted for testing by fschwarz.

a year ago

This update's test gating status has been changed to 'ignored'.

a year ago

This update has been pushed to testing.

a year ago
karma

This update has been submitted for stable by bodhi.

12 months ago

This update has been pushed to stable.

12 months ago

Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
1
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
a year ago
in testing
a year ago
in stable
12 months ago
approved
12 months ago
BZ#2236305 CVE-2023-36811 borgbackup: spoofed archive leads to data loss [fedora-all]
0
0

Automated Test Results