PaulHowarth/Blog/2023-12-21

Thursday 21st December 2023

Fedora Project

  • Updated perl-Business-ISBN-Data to 20231220.001 in Rawhide:

    • Data update for 20231220
  • Updated proftpd to 1.3.8b in Rawhide, F-39, F-38 and EPEL-9:

    • Compiling ProFTPD 1.3.8a mod_sftp, mod_tls using libressl 3.7.3 failed (GH#1735)

    • Build system failed for specific module names (GH#1756)

    • "Terrapin" Prefix Truncation Attacks in SSH Specification affected mod_sftp (CVE-2023-48795, GH#1760)

Local Packages

  • Updated proftpd to 1.3.8b as per the Fedora version

  • Updated proftpd (1.3.9) to 1.3.9rc2:

    • 1.3.9rc1 mod_sftp failed to compile if EVP_chacha20 was unavailable, as when using older OpenSSL versions (GH#1730)

    • Error resolving DNS name for implicit "server config" vhost lead to DelayTable not being found (GH#1746)

    • Log message for exceeding quota did not include the user/group/class quota type (GH#1749)

    • Build system failed for specific module names (GH#1756)

    • "Terrapin" Prefix Truncation Attacks in SSH Specification affected mod_sftp (CVE-2023-48795, GH#1760)


Recent