[SECURITY] Fedora 38 Update: fbthrift-2023.10.16.00-1.fc38

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2023-17efd3f2cd
2023-10-24 01:21:22.156597
--------------------------------------------------------------------------------

Name        : fbthrift
Product     : Fedora 38
Version     : 2023.10.16.00
Release     : 1.fc38
URL         : https://github.com/facebook/fbthrift
Summary     : Facebook's branch of Apache Thrift, including a new C++ server
Description :
Thrift is a serialization and RPC framework for service communication. Thrift
enables these features in all major languages, and there is strong support for
C++, Python, Hack, and Java. Most services at Facebook are written using Thrift
for RPC, and some storage systems use Thrift for serializing records on disk.

Facebook Thrift is not a distribution of Apache Thrift. This is an evolved
internal branch of Thrift that Facebook re-released to open source community in
February 2014. Facebook Thrift was originally released closely tracking Apache
Thrift but is now evolving in new directions. In particular, the compiler was
rewritten from scratch and the new implementation features a fully asynchronous
Thrift server.

--------------------------------------------------------------------------------
Update Information:

Update Folly stack to the latest 2023.10.16.00 tag  proxygen: Security fix for
CVE-2023-44487
--------------------------------------------------------------------------------
ChangeLog:

* Wed Oct 18 2023 Michel Lind <salimma@xxxxxxxxxxxxxxxxx> - 2023.10.16.00-1
- Update to 2023.10.16.00
* Tue Oct 17 2023 Michel Lind <salimma@xxxxxxxxxxxxxxxxx> - 2023.10.09.00-1
- Update to 2023.10.09.00
* Thu Oct  5 2023 Remi Collet <remi@xxxxxxxxxxxxxxxxx> - 2023.09.11.00-3
- rebuild for new libsodium
* Tue Sep 12 2023 Michel Lind <salimma@xxxxxxxxxxxxxxxxx> - 2023.09.11.00-2
- Fix undefined reference to EventHandlerRuntime
* Tue Sep 12 2023 Michel Lind <salimma@xxxxxxxxxxxxxxxxx> - 2023.09.11.00-1
- Update to 2023.09.11.00
* Wed Jul 19 2023 Fedora Release Engineering <releng@xxxxxxxxxxxxxxxxx> - 2023.07.03.00-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2221799 - mcrouter-2023.10.09.00 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=2221799
  [ 2 ] Bug #2239431 - proxygen-2023.10.16.00 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=2239431
  [ 3 ] Bug #2239594 - wangle-2023.10.16.00 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=2239594
  [ 4 ] Bug #2239613 - fb303-2023.10.09.00 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=2239613
  [ 5 ] Bug #2239614 - fbthrift-2023.10.09.00 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=2239614
  [ 6 ] Bug #2239623 - fizz-2023.10.09.00 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=2239623
  [ 7 ] Bug #2239624 - folly-2023.10.09.00 is available
        https://bugzilla.redhat.com/show_bug.cgi?id=2239624
  [ 8 ] Bug #2243253 - [Major Incident] CVE-2023-44487 proxygen: HTTP/2: Multiple HTTP/2 enabled web servers are vulnerable to a DDoS attack (Rapid Reset Attack) [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=2243253
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2023-17efd3f2cd' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list -- package-announce@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe send an email to package-announce-leave@xxxxxxxxxxxxxxxxxxxxxxx
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@xxxxxxxxxxxxxxxxxxxxxxx
Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue




[Index of Archives]     [Fedora Users]     [Fedora Legacy]     [Fedora Desktop]     [Fedora SELinux]     [Big List of Linux Books]     [Yosemite News]     [Yosemite Photos]     [KDE Users]

  Powered by Linux