389 Directory Server is an LDAP version 3 (LDAPv3) compliant server. The base packages include the Lightweight Directory Access Protocol (LDAP) server and command-line utilities for server administration.Security Fix(es): 389-ds-base: Malformed userPassword hash may cause Denial of Service (CVE-2024-5953) 389-ds-base: unauthenticated user can trigger a DoS by sending a specific extended search request (CVE-2024-6237) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Moderate: golang security update
Moderate: kernel security update
Moderate: kernel security update
Moderate: openssh security update
Moderate: nodejs security update
Moderate: httpd security update
Moderate: openssh security update
Moderate: fence-agents security update
Moderate: kernel security and bug fix update
Moderate: golang security update
Moderate: samba security update
Moderate: dnsmasq security update
Moderate: curl security update
Expat is a C library for parsing XML documents.Security Fix(es): expat: parsing large tokens can trigger a denial of service (CVE-2023-52425) expat: XML Entity Expansion (CVE-2024-28757) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer the CVE page(s) listed in the References section.
Moderate: kernel security update
Moderate: python-idna security update
Moderate: gvisor-tap-vsock security and bug fix update
Moderate: buildah security and bug fix update
Moderate: fence-agents security update
Moderate: podman security and bug fix update
libnghttp2 is a library implementing the Hypertext Transfer Protocol version 2 (HTTP/2) protocol in C.Security Fix(es): nghttp2: CONTINUATION frames DoS (CVE-2024-28182,VU#421644.5) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Moderate: ruby:3.1 security, bug fix, and enhancement update
Moderate: ruby:3.3 security, bug fix, and enhancement update
Moderate: kernel security and bug fix update
Moderate: libxml2 security update
libnghttp2 is a library implementing the Hypertext Transfer Protocol version 2 (HTTP/2) protocol in C.Security Fix(es): nghttp2: CONTINUATION frames DoS (CVE-2024-28182) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Moderate: kernel security and bug fix update
Moderate: rpm-ostree security update
Moderate: modhttp2 security update