ELBA-2024-20190

ELBA-2024-20190 - trafficserver Bug Fix update

Type:BUG
Impact:NA
Release Date:2024-04-12

Description


[9.2.4-1]
- Update to upstream 9.2.4
- Resolves CVE-2024-31309

[9.2.3-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild

[9.2.3-1]
- Update to upstream 9.2.3
- Resolves CVE-2023-44487, CVE-2023-41752, CVE-2023-39456

[9.2.2-2]
- Use OpenSSL 1.1.x from EPEL on RHEL 7 to fix Chrome 117+ bugs

[9.2.2-1]
- Update to upstream 9.2.2

[9.2.1-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild

[9.2.1-1]
- Update to upstream 9.2.1

[9.2.0-1]
- Update to upstream 9.2.0

[9.1.4-1]
- Update to 9.1.4, resolves CVE-2022-32749, CVE-2022-37392, CVE-2022-40743

[9.1.3-2]
- FTI on EL8 due to lack of libbrotli pkg; use RPM autodeps instead

[9.1.3-2]
- Update dependencies to enable brotli compression (RHBZ#2125520)

[9.1.3-1]
- Update to 9.1.3, resolves CVE-2022-25763, CVE-2022-31779, CVE-2021-37150,
CVE-2022-28129, CVE-2022-31780
- Resolve glibc 2.36 (f37) header incompatibility that caused FTBFS RHBZ#2112282

[9.1.2-9]
- Don't try to use Crypto Policies on RHEL 7

[9.1.2-8]
- Cherry-pick OpenSSL 3 compatibility required for RHEL 9
- Switch to OpenSSL 3 on f36+
- Include automake in BuildRequires

[9.1.2-7]
- Exclude s390x architecture -- not supported upstream

[9.1.2-6]
- Further changes based on package review; perl dependencies, paths

[9.1.2-5]
- Changes based on spec review; change 'RedHat' capitalization,
and add link to upstream file layout discussion

[9.1.2-4]
- Changes based on spec review

[9.1.2-3]
- Allow self:process setsched, requested on EL8

[9.1.2-2]
- Set SELinux policy to be more restrictive on privileged UDP ports

[9.1.2-1]
- Initial revision
- Adapt to modern rpm conventions
- Add draft SELinux policy
- Don't run as root, just claim CAP_NET_BIND_SERVICE for
privileged ports
- Merge and cleanup of upstream .spec file along with Copr version
maintained by Hiroaki Nakamura , based on
long-ophaned package. ChangeLog included below for reference.




Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete