-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2022-35b698150c 2022-07-23 01:59:14.445905 --------------------------------------------------------------------------------
Name : python-notebook Product : Fedora 36 Version : 6.4.11 Release : 3.fc36 URL : https://jupyter.org Summary : A web-based notebook environment for interactive computing Description : The Jupyter Notebook is a web application that allows you to create and share documents that contain live code, equations, visualizations, and explanatory text. The Notebook has support for multiple programming languages, sharing, and interactive widgets.
-------------------------------------------------------------------------------- Update Information:
Security fix for CVE-2022-24785 and CVE-2022-31129. -------------------------------------------------------------------------------- ChangeLog:
* Wed Jul 13 2022 Miro Hron��ok mhroncok@redhat.com - 6.4.11-3 - Fix CVE-2022-24785 and CVE-2022-31129 in bundled moment - Fixes: rhbz#2075263 * Thu Jun 16 2022 Python Maint python-maint@redhat.com - 6.4.11-2 - Rebuilt for Python 3.11 * Mon May 30 2022 Miro Hron��ok mhroncok@redhat.com - 6.4.11-1 - Update to 6.4.11 * Tue Mar 22 2022 Miro Hron��ok mhroncok@redhat.com - 6.4.10-1 - Update to 6.4.10 -------------------------------------------------------------------------------- References:
[ 1 ] Bug #2072009 - CVE-2022-24785 Moment.js: Path traversal in moment.locale https://bugzilla.redhat.com/show_bug.cgi?id=2072009 [ 2 ] Bug #2105075 - CVE-2022-31129 moment: inefficient parsing algorithim resulting in DoS https://bugzilla.redhat.com/show_bug.cgi?id=2105075 --------------------------------------------------------------------------------
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-35b698150c' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys --------------------------------------------------------------------------------
package-announce@lists.fedoraproject.org