Fedora Linux 8572 Published by

The following updates are available for Fedora Linux:

Fedora 39 Update: python-reportlab-4.2.0-1.fc39
Fedora 38 Update: chromium-124.0.6367.78-1.fc38
Fedora 40 Update: python-dunamai-1.20.0-1.fc40



Fedora 39 Update: python-reportlab-4.2.0-1.fc39


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2024-6ec4e78241
2024-04-28 03:28:52.503533
--------------------------------------------------------------------------------

Name : python-reportlab
Product : Fedora 39
Version : 4.2.0
Release : 1.fc39
URL : https://www.reportlab.com/opensource/
Summary : Library for generating PDFs and graphics
Description :
This is the ReportLab PDF Toolkit. It allows rapid creation of rich PDF
documents, and also creation of charts in a variety of bitmap and vector
formats.

--------------------------------------------------------------------------------
Update Information:

Release 4.2.0
--------------------------------------------------------------------------------
ChangeLog:

* Fri Apr 19 2024 Antonio Trande [sagitter@fedoraproject.org] - 4.2.0-1
- Release 4.2.0
* Sat Feb 24 2024 Antonio Trande [sagitter@fedoraproject.org] - 4.1.0-2
- Rebuild for f41 mass rebuild
* Tue Feb 13 2024 Antonio Trande [sagitter@fedoraproject.org] - 4.1.0-1
- Release 4.1.0
* Fri Jan 26 2024 Fedora Release Engineering [releng@fedoraproject.org] - 4.0.9-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Mon Jan 22 2024 Fedora Release Engineering [releng@fedoraproject.org] - 4.0.9-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild
* Tue Jan 16 2024 Antonio Trande [sagitter@fedoraproject.org] - 4.0.9-1
- Release 4.0.9
* Thu Dec 14 2023 Antonio Trande [sagitter@fedoraproject.org] - 4.0.8-2
- Add missing BR package
* Thu Dec 14 2023 Antonio Trande [sagitter@fedoraproject.org] - 4.0.8-1
- Release 4.0.8
* Sat Nov 11 2023 Antonio Trande [sagitter@fedoraproject.org] - 4.0.7-1
- Release 4.0.7
* Fri Oct 13 2023 Antonio Trande [sagitter@fedoraproject.org] - 4.0.6-1
- Release 4.0.6
* Tue Sep 26 2023 Antonio Trande [sagitter@fedoraproject.org] - 4.0.5-1
- Release 4.0.5
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #2240153 - TRIAGE-CVE-2019-19450 python-reportlab: code injection in paraparser.py allows code execution [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2240153
[ 2 ] Bug #2275924 - python-reportlab-4.2.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2275924
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2024-6ec4e78241' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--



Fedora 38 Update: chromium-124.0.6367.78-1.fc38


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2024-2c9be9d949
2024-04-28 03:28:39.931796
--------------------------------------------------------------------------------

Name : chromium
Product : Fedora 38
Version : 124.0.6367.78
Release : 1.fc38
URL : http://www.chromium.org/Home
Summary : A WebKit (Blink) powered web browser that Google doesn't want you to use
Description :
Chromium is an open-source web browser, powered by WebKit (Blink).

--------------------------------------------------------------------------------
Update Information:

update to 124.0.6367.78
* Critical CVE-2024-4058: Type Confusion in ANGLE
* High CVE-2024-4059: Out of bounds read in V8 API
* High CVE-2024-4060: Use after free in Dawn
--------------------------------------------------------------------------------
ChangeLog:

* Wed Apr 24 2024 Than Ngo [than@redhat.com] - 124.0.6367.78-1
- update to 124.0.6367.78
* Critical CVE-2024-4058: Type Confusion in ANGLE
* High CVE-2024-4059: Out of bounds read in V8 API
* High CVE-2024-4060: Use after free in Dawn
* Sat Apr 20 2024 Than Ngo [than@redhat.com] - 124.0.6367.60-2
- fix waylang regression
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #2275548 - CVE-2024-3833 CVE-2024-3834 CVE-2024-3837 CVE-2024-3839 CVE-2024-3840 CVE-2024-3841 CVE-2024-3843 CVE-2024-3844 CVE-2024-3845 CVE-2024-3846 CVE-2024-3847 chromium: various flaws [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2275548
[ 2 ] Bug #2275815 - CVE-2024-3914 chromium: chromium-browser: use after free in V8 [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2275815
[ 3 ] Bug #2276890 - CVE-2024-4058 chromium: chromium-browser: Type Confusion in ANGLE [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2276890
[ 4 ] Bug #2276891 - CVE-2024-4058 chromium: chromium-browser: Type Confusion in ANGLE [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2276891
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2024-2c9be9d949' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--



Fedora 40 Update: python-dunamai-1.20.0-1.fc40


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2024-b9f712d01b
2024-04-28 03:15:21.869831
--------------------------------------------------------------------------------

Name : python-dunamai
Product : Fedora 40
Version : 1.20.0
Release : 1.fc40
URL : https://pypi.org/pypi/dunamai
Summary : Dynamic version generation
Description :
Dunamai is a Python 3.5+ library and command line tool for producing dynamic,
standards-compliant version strings, derived from tags in your version control
system. This facilitates uniquely identifying nightly or per-commit builds in
continuous integration and releasing new versions of your software simply by
creating a tag.

--------------------------------------------------------------------------------
Update Information:

Update to latest upstream release
--------------------------------------------------------------------------------
ChangeLog:

* Fri Apr 12 2024 Packit [hello@packit.dev] - 1.20.0-1
- Update to 1.20.0 upstream release
- Resolves: rhbz#2274730
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #2274730 - python-dunamai-1.20.0 is available
https://bugzilla.redhat.com/show_bug.cgi?id=2274730
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2024-b9f712d01b' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
--