-------------------------------------------------------------------------------- Fedora EPEL Update Notification FEDORA-EPEL-2023-73a16276bd 2023-04-21 02:27:52.231192 --------------------------------------------------------------------------------
Name : python-twisted Product : Fedora EPEL 8 Version : 19.10.0 Release : 4.el8 URL : http://twistedmatrix.com/ Summary : Twisted is a networking engine written in Python Description :
Twisted is a networking engine written in Python, supporting numerous protocols. It contains a web server, numerous chat clients, chat servers, mail servers and more.
-------------------------------------------------------------------------------- Update Information:
Backport fixes for CVE-2022-21716 and CVE-2022-24801. -------------------------------------------------------------------------------- ChangeLog:
* Wed Apr 12 2023 Carl George carl@george.computer - 19.10.0-4 - Backport fix for CVE-2022-24801, resolves: rhbz#2073116 * Mon Nov 28 2022 Diego Herrera dherrera@redhat.com - 19.10.0-3 - Backported CVE-2022-21716 fix from upstream -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2060973 - CVE-2022-21716 python-twisted: SSH client and server denial of service during SSH handshake [epel-8] https://bugzilla.redhat.com/show_bug.cgi?id=2060973 [ 2 ] Bug #2073116 - CVE-2022-24801 python-twisted: possible http request smuggling [epel-8] https://bugzilla.redhat.com/show_bug.cgi?id=2073116 --------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use su -c 'yum update python-twisted' at the command line. For more information, refer to "YUM", available at https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7%5C /html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys --------------------------------------------------------------------------------
epel-package-announce@lists.fedoraproject.org