diff --git a/changelog/security/2024-02-21-weekly-updates.md b/changelog/security/2024-02-21-weekly-updates.md new file mode 100644 index 0000000000..28e8d38aa4 --- /dev/null +++ b/changelog/security/2024-02-21-weekly-updates.md @@ -0,0 +1,4 @@ +- coreutils ([CVE-2024-0684](https://nvd.nist.gov/vuln/detail/CVE-2024-0684)) +- libuv ([CVE-2024-24806](https://nvd.nist.gov/vuln/detail/CVE-2024-24806)) +- libxml2 ([CVE-2024-25062](https://nvd.nist.gov/vuln/detail/CVE-2024-25062)) +- openssl ([CVE-2023-5678](https://nvd.nist.gov/vuln/detail/CVE-2023-5678), [CVE-2023-6129](https://nvd.nist.gov/vuln/detail/CVE-2023-6129), [CVE-2023-6237](https://nvd.nist.gov/vuln/detail/CVE-2023-6237), [CVE-2024-0727](https://nvd.nist.gov/vuln/detail/CVE-2024-0727)) diff --git a/changelog/updates/2024-02-21-weekly-updates.md b/changelog/updates/2024-02-21-weekly-updates.md new file mode 100644 index 0000000000..6956d40229 --- /dev/null +++ b/changelog/updates/2024-02-21-weekly-updates.md @@ -0,0 +1,20 @@ +- bind-tools ([9.16.48](https://bind9.readthedocs.io/en/v9.16.48/notes.html#notes-for-bind-9-16-48)) +- cJSON ([1.7.17](https://github.com/DaveGamble/cJSON/releases/tag/v1.7.17)) +- checkpolicy ([3.6](https://github.com/SELinuxProject/selinux/releases/tag/3.6)) +- curl ([8.6.0](https://curl.se/changes.html#8_6_0)) +- libbsd ([0.11.8](https://lists.freedesktop.org/archives/libbsd/2024-January/000377.html)) +- libcap-ng ([0.8.4](https://github.com/stevegrubb/libcap-ng/releases/tag/v0.8.4)) +- libgcrypt ([1.10.3](https://git.gnupg.org/cgi-bin/gitweb.cgi?p=libgcrypt.git;a=blob;f=NEWS;h=b767dc1170eb479b9a311cca4074c58e4eedaf0b;hb=aa1610866f8e42bdc272584f0a717f32ee050a22)) +- libidn2 ([2.3.7](https://gitlab.com/libidn/libidn2/-/blob/v2.3.7/NEWS)) +- libnvme ([1.7.1](https://github.com/linux-nvme/libnvme/releases/tag/v1.7.1) (includes [1.7](https://github.com/linux-nvme/libnvme/releases/tag/v1.7))) +- libselinux ([3.6](https://github.com/SELinuxProject/selinux/releases/tag/3.6)) +- libsepol ([3.6](https://github.com/SELinuxProject/selinux/releases/tag/3.6)) +- libuv ([1.48.0](https://github.com/libuv/libuv/releases/tag/v1.48.0)) +- libxml2 ([2.12.5](https://gitlab.gnome.org/GNOME/libxml2/-/releases/v2.12.5)) +- lsof ([4.99.3](https://github.com/lsof-org/lsof/releases/tag/4.99.3) (includes [4.99.2](https://github.com/lsof-org/lsof/releases/tag/4.99.2) and [4.99.1](https://github.com/lsof-org/lsof/releases/tag/4.99.1))) +- nvme-cli ([2.7.1](https://github.com/linux-nvme/nvme-cli/releases/tag/v2.7.1) (includes [2.7](https://github.com/linux-nvme/nvme-cli/releases/tag/v2.7))) +- openssl ([3.2.1](https://github.com/openssl/openssl/blob/openssl-3.2.1/CHANGES.md)) +- SDK: qemu ([8.1.5](https://wiki.qemu.org/ChangeLog/8.1)) +- semodule-utils ([3.6](https://github.com/SELinuxProject/selinux/releases/tag/3.6)) +- thin-provisioning-tools ([1.0.10](https://github.com/jthornber/thin-provisioning-tools/commits/v1.0.10/)) +- traceroute ([2.1.5](https://sourceforge.net/projects/traceroute/files/traceroute/traceroute-2.1.5/) (includes [2.1.4](https://sourceforge.net/projects/traceroute/files/traceroute/traceroute%202.1.4/)))