Skip to content

Security Update 4.0 379

Mukul Sikka edited this page Jan 2, 2025 · 491 revisions

Critical Photon OS Security Update

Summary

Advisory Id : PHSA-2023-4.0-0379

Type : Security

Severity : ['Critical', 'Important']

Issue date : 2023-04-19

Affected Release: 4.0

Details

Updates of ['nghttp2', 'libevent'] packages of Photon OS have been released.

Affected Packages

Critical

libevent - ['CVE-2016-10195']

Important

nghttp2 - ['CVE-2019-9513']

libevent - ['CVE-2016-10197', 'CVE-2016-10196']

Solution

Update the affected packages (tdnf update package)

Updated Packages Information

nghttp2-1.41.0-4.ph4.x86_64.rpm | size : 92K , sha256 : 91fa4b1a5146758e20764b48d0f578f966212843e720d2fcc6a6b5807321b3c2 , build time : Tue, 18 Apr 2023 20:56:32 UTC

nghttp2-devel-1.41.0-4.ph4.x86_64.rpm | size : 76K , sha256 : a8f0eb3dd7a641912c4b0326da1655395dd6f2cbdb62fa741251bf6c756acd3f , build time : Tue, 18 Apr 2023 20:56:32 UTC

libevent-2.1.12-1.ph4.x86_64.rpm | size : 216K , sha256 : acf98c2bb17838fd30f7461e74b0a228b4e0824b8a0405011e1db1d953d4a6f1 , build time : Tue, 18 Apr 2023 20:55:30 UTC

libevent-devel-2.1.12-1.ph4.x86_64.rpm | size : 92K , sha256 : 68e27966da181626e0cc4d67c7649325d940125cef3e892a1636343980c0f500 , build time : Tue, 18 Apr 2023 20:55:30 UTC

Clone this wiki locally