diff --git a/changelog/security/2025-02-26-weekly-updates.md b/changelog/security/2025-02-26-weekly-updates.md new file mode 100644 index 0000000000..e8697a29f5 --- /dev/null +++ b/changelog/security/2025-02-26-weekly-updates.md @@ -0,0 +1,9 @@ +- binutils ([CVE-2024-53589](https://nvd.nist.gov/vuln/detail/CVE-2024-53589), [CVE-2025-1176](https://nvd.nist.gov/vuln/detail/CVE-2025-1176), [CVE-2025-1178](https://nvd.nist.gov/vuln/detail/CVE-2025-1178), [CVE-2025-1179](https://nvd.nist.gov/vuln/detail/CVE-2025-1179), [CVE-2025-1180](https://nvd.nist.gov/vuln/detail/CVE-2025-1180), [CVE-2025-1181](https://nvd.nist.gov/vuln/detail/CVE-2025-1181), [CVE-2025-1182](https://nvd.nist.gov/vuln/detail/CVE-2025-1182)) +- curl ([CVE-2025-0167](https://nvd.nist.gov/vuln/detail/CVE-2025-0167), [CVE-2025-0665](https://nvd.nist.gov/vuln/detail/CVE-2025-0665), [CVE-2025-0725](https://nvd.nist.gov/vuln/detail/CVE-2025-0725)) +- gnutls ([CVE-2024-12243](https://nvd.nist.gov/vuln/detail/CVE-2024-12243)) +- libarchive ([CVE-2024-57970](https://nvd.nist.gov/vuln/detail/CVE-2024-57970)) +- libcap ([CVE-2025-1390](https://nvd.nist.gov/vuln/detail/CVE-2025-1390)) +- libtasn1 ([CVE-2024-12133](https://nvd.nist.gov/vuln/detail/CVE-2024-12133)) +- mit-krb5 ([CVE-2025-24528](https://nvd.nist.gov/vuln/detail/CVE-2025-24528)) +- openssh ([CVE-2025-26465](https://nvd.nist.gov/vuln/detail/CVE-2025-26465), [CVE-2025-26466](https://nvd.nist.gov/vuln/detail/CVE-2025-26466)) +- podman ([CVE-2024-11218](https://nvd.nist.gov/vuln/detail/CVE-2024-11218)) diff --git a/changelog/updates/2025-02-26-weekly-updates.md b/changelog/updates/2025-02-26-weekly-updates.md new file mode 100644 index 0000000000..dc90dac8dc --- /dev/null +++ b/changelog/updates/2025-02-26-weekly-updates.md @@ -0,0 +1,15 @@ +- SDK: cmake ([3.31.5](https://cmake.org/cmake/help/v3.31/release/3.31.html)) +- SDK: rust ([1.84.1](https://releases.rs/docs/1.84.1/) (includes [1.84.0](https://releases.rs/docs/1.84.0/))) +- base, dev: binutils ([2.44](https://lists.gnu.org/archive/html/info-gnu/2025-02/msg00001.html)) +- base, dev: cracklib ([2.10.3](https://github.com/cracklib/cracklib/releases/tag/v2.10.3)) +- base, dev: curl ([8.12.1](https://curl.se/ch/8.12.1.html) (includes [8.12.0](https://curl.se/ch/8.12.0.html))) +- base, dev: e2fsprogs ([1.47.2](https://e2fsprogs.sourceforge.net/e2fsprogs-release.html#1.47.2)) +- base, dev: gnutls ([3.8.9](https://lists.gnupg.org/pipermail/gnutls-help/2025-February/004875.html)) +- base, dev: hwdata ([0.391](https://github.com/vcrhonek/hwdata/releases/tag/v0.391)) +- base, dev: libtasn1 ([4.20.0](https://lists.gnu.org/archive/html/info-gnu/2025-02/msg00004.html)) +- base, dev: linux-headers ([6.12](https://kernelnewbies.org/Linux_6.12)) +- base, dev: nettle ([3.10.1](https://lists.gnu.org/archive/html/info-gnu/2024-12/msg00008.html)) +- base, dev: openssh ([9.9_p2](https://www.openssh.com/txt/release-9.9p2)) +- base, dev: util-linux ([2.40.4](https://raw.githubusercontent.com/util-linux/util-linux/refs/tags/v2.40.4/Documentation/releases/v2.40.4-ReleaseNotes) (includes [2.40.3](https://raw.githubusercontent.com/util-linux/util-linux/refs/tags/v2.40.3/Documentation/releases/v2.40.3-ReleaseNotes))) +- sysext-podman: podman ([5.3.2](https://github.com/containers/podman/releases/tag/v5.3.2)) +- sysext-python: truststore ([0.10.1](https://github.com/sethmlarson/truststore/blob/v0.10.1/CHANGELOG.md))