stable

yajl-2.1.0-21.fc37

FEDORA-2023-852b377773 created by berrange 2 years ago for Fedora 37

Security fix for memory leak(s) leading to denial of service (CVE-2023-33460). Security fix for integer overflow leading to heap corruption (CVE-2022-24795)

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2023-852b377773

This update has been submitted for testing by berrange.

2 years ago

This update's test gating status has been changed to 'waiting'.

2 years ago

This update's test gating status has been changed to 'passed'.

2 years ago

This update has been pushed to testing.

2 years ago
User Icon filiperosset commented & provided feedback 2 years ago
karma

no regressions noted

This update has been submitted for stable by bodhi.

2 years ago

This update has been pushed to stable.

2 years ago

Please log in to add feedback.

Metadata
Type
security
Severity
medium
Karma
1
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Dates
submitted
2 years ago
in testing
2 years ago
in stable
2 years ago
approved
2 years ago
BZ#2072912 CVE-2022-24795 yajl: heap-based buffer overflow when handling large inputs due to an integer overflow
0
0
BZ#2072916 CVE-2022-24795 yajl: heap-based buffer overflow when handling large inputs due to an integer overflow [fedora-all]
0
0
BZ#2221249 CVE-2023-33460 yajl: Memory leak in yajl_tree_parse function
0
0
BZ#2221250 TRIAGE-CVE-2023-33460 yajl: Memory leak in yajl_tree_parse function [fedora-all]
0
0

Automated Test Results