Mageia Security

Feed
Mageia Advisories
Updated: hace 1 día 8 horas

MGASA-2024-0279 - Updated roundcubemail packages fix security vulnerabilities

15 Agosto, 2024 - 18:48
Publication date: 15 Aug 2024
Type: security
Affected Mageia releases : 9
CVE: CVE-2024-42010 , CVE-2024-42009 , CVE-2024-42008 Description Fix XSS vulnerability in post-processing of sanitized HTML content [CVE-2024-42009] Fix XSS vulnerability in serving of attachments other than HTML or SVG [CVE-2024-42008] Fix information leak (access to remote content) via insufficient CSS filtering [CVE-2024-42010] References SRPMS 9/core
  • roundcubemail-1.6.8-1.mga9

MGAA-2024-0181 - Updated yt-dlp packages fix support for sites

15 Agosto, 2024 - 18:48
Publication date: 15 Aug 2024
Type: bugfix
Affected Mageia releases : 9
Description yt-dlp has long since ceased working correctly on many sites including YouTube. This update fixes the reported behavior. References SRPMS 9/core
  • yt-dlp-2024.08.06-1.mga9

MGAA-2024-0180 - Updated pdfarranger packages fix bugs

15 Agosto, 2024 - 18:48
Publication date: 15 Aug 2024
Type: bugfix
Affected Mageia releases : 9
Description Since the current version in Mageia 9, upstream has fixed some bugs and provided enhancements. References SRPMS 9/core
  • pdfarranger-1.11.0-1.mga9