Fedora Linux 8577 Published by

A mediawiki security update has been released for Fedora 36.



SECURITY: Fedora 36 Update: mediawiki-1.37.2-1.fc36


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2022-69bc42d6cf
2022-06-26 01:18:26.720599
--------------------------------------------------------------------------------

Name : mediawiki
Product : Fedora 36
Version : 1.37.2
Release : 1.fc36
URL :   https://www.mediawiki.org/
Summary : A wiki engine
Description :
MediaWiki is the software used for Wikipedia and the other Wikimedia
Foundation websites. Compared to other wikis, it has an excellent
range of features and support for high-traffic websites using multiple
servers

This package supports wiki farms. Read the instructions for creating wiki
instances under /usr/share/doc/mediawiki/README.RPM.
Remember to remove the config dir after completing the configuration.

--------------------------------------------------------------------------------
Update Information:

  https://www.mediawiki.org/wiki/Release_notes/1.37#MediaWiki_1.37.2
--------------------------------------------------------------------------------
ChangeLog:

* Thu Jun 16 2022 Michael Cronenworth - 1.37.2-1
- Update to 1.37.2
-   https://www.mediawiki.org/wiki/Release_notes/1.37#MediaWiki_1.37.2
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #2075227 - CVE-2022-28202 mediawiki: xss due to incorrect escaping [fedora-all]
  https://bugzilla.redhat.com/show_bug.cgi?id=2075227
[ 2 ] Bug #2097578 - MediaWiki package ships broken version combination of guzzlehttp/guzzle and guzzlehttp/psr7
  https://bugzilla.redhat.com/show_bug.cgi?id=2097578
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2022-69bc42d6cf' at the command
line. For more information, refer to the dnf documentation available at
  http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
  https://fedoraproject.org/keys
--------------------------------------------------------------------------------
_______________________________________________