ELBA-2024-20190

ELBA-2024-20190 - trafficserver Bug Fix update

Type:BUG
Severity:NA
Release Date:2024-04-12

Description


[9.2.4-1]
- Update to upstream 9.2.4
- Resolves CVE-2024-31309

[9.2.3-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild

[9.2.3-1]
- Update to upstream 9.2.3
- Resolves CVE-2023-44487, CVE-2023-41752, CVE-2023-39456

[9.2.2-2]
- Use OpenSSL 1.1.x from EPEL on RHEL 7 to fix Chrome 117+ bugs

[9.2.2-1]
- Update to upstream 9.2.2

[9.2.1-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_39_Mass_Rebuild

[9.2.1-1]
- Update to upstream 9.2.1

[9.2.0-1]
- Update to upstream 9.2.0

[9.1.4-1]
- Update to 9.1.4, resolves CVE-2022-32749, CVE-2022-37392, CVE-2022-40743

[9.1.3-2]
- FTI on EL8 due to lack of libbrotli pkg; use RPM autodeps instead

[9.1.3-2]
- Update dependencies to enable brotli compression (RHBZ#2125520)

[9.1.3-1]
- Update to 9.1.3, resolves CVE-2022-25763, CVE-2022-31779, CVE-2021-37150,
CVE-2022-28129, CVE-2022-31780
- Resolve glibc 2.36 (f37) header incompatibility that caused FTBFS RHBZ#2112282

[9.1.2-9]
- Don't try to use Crypto Policies on RHEL 7

[9.1.2-8]
- Cherry-pick OpenSSL 3 compatibility required for RHEL 9
- Switch to OpenSSL 3 on f36+
- Include automake in BuildRequires

[9.1.2-7]
- Exclude s390x architecture -- not supported upstream

[9.1.2-6]
- Further changes based on package review; perl dependencies, paths

[9.1.2-5]
- Changes based on spec review; change 'RedHat' capitalization,
and add link to upstream file layout discussion

[9.1.2-4]
- Changes based on spec review

[9.1.2-3]
- Allow self:process setsched, requested on EL8

[9.1.2-2]
- Set SELinux policy to be more restrictive on privileged UDP ports

[9.1.2-1]
- Initial revision
- Adapt to modern rpm conventions
- Add draft SELinux policy
- Don't run as root, just claim CAP_NET_BIND_SERVICE for
privileged ports
- Merge and cleanup of upstream .spec file along with Copr version
maintained by Hiroaki Nakamura , based on
long-ophaned package. ChangeLog included below for reference.




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) trafficserver-9.2.4-1.el9.src.rpmd9b5269205724a038d15ce6033e361bf-ol9_aarch64_developer_EPEL
trafficserver-9.2.4-1.el9.aarch64.rpm2c6e5cf13fb546856f670a000f3adc96-ol9_aarch64_developer_EPEL
trafficserver-devel-9.2.4-1.el9.noarch.rpmceafdce1926b671ad5ff2d0bde72cbd7-ol9_aarch64_developer_EPEL
trafficserver-perl-9.2.4-1.el9.noarch.rpmc8c86b3869a36199d3cbe8c6f7a83d3f-ol9_aarch64_developer_EPEL
trafficserver-selinux-9.2.4-1.el9.noarch.rpm80a7f37a1f5a66f9f186c84a93fca2bf-ol9_aarch64_developer_EPEL
Oracle Linux 9 (x86_64) trafficserver-9.2.4-1.el9.src.rpmd9b5269205724a038d15ce6033e361bf-ol9_x86_64_developer_EPEL
trafficserver-9.2.4-1.el9.x86_64.rpm7ba4d9f716d112013a8c825d2d1bbee3-ol9_x86_64_developer_EPEL
trafficserver-devel-9.2.4-1.el9.noarch.rpmceafdce1926b671ad5ff2d0bde72cbd7-ol9_x86_64_developer_EPEL
trafficserver-perl-9.2.4-1.el9.noarch.rpmc8c86b3869a36199d3cbe8c6f7a83d3f-ol9_x86_64_developer_EPEL
trafficserver-selinux-9.2.4-1.el9.noarch.rpm80a7f37a1f5a66f9f186c84a93fca2bf-ol9_x86_64_developer_EPEL



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete