-------------------------------------------------------------------------------- Fedora EPEL Update Notification FEDORA-EPEL-2018-5ae7f0e7c7 2018-05-17 12:42:44.314094 --------------------------------------------------------------------------------
Name : python-pygit2 Product : Fedora EPEL 7 Version : 0.26.4 Release : 1.el7 URL : http://www.pygit2.org Summary : Python bindings for libgit2 Description : pygit2 is a set of Python bindings to the libgit2 library, which implements the core of Git.
-------------------------------------------------------------------------------- Update Information:
Update to libgit2 0.26.3, fixing CVE-2018-8099 CVE-2018-8098. Update to python- pygit2 0.26.4. -------------------------------------------------------------------------------- References:
[ 1 ] Bug #1469187 - 0013533: pygit2/libgit2 incorrect results while diff'ing 2 commits https://bugzilla.redhat.com/show_bug.cgi?id=1469187 [ 2 ] Bug #1554367 - CVE-2018-8099 CVE-2018-8098 libgit2: denial of service (DoS) via crafted repository index files [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=1554367 --------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use su -c 'yum update python-pygit2' at the command line. For more information, refer to "YUM", available at https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/htm...
All packages are signed with the Fedora EPEL GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys --------------------------------------------------------------------------------
epel-package-announce@lists.fedoraproject.org