File tree Expand file tree Collapse file tree 17 files changed +43
-25
lines changed Expand file tree Collapse file tree 17 files changed +43
-25
lines changed Original file line number Diff line number Diff line change
1
+ [advisory ]
2
+ id = " BRSA-himt1tjhhps5"
3
+ title = " amazon-ssm-agent CVE-2023-1732"
4
+ cve = " CVE-2023-1732"
5
+ severity = " high"
6
+ description = " A flaw was found in a dependency of amazon-ssm-agent which could lead to a predictable shared secret."
7
+
8
+ [[advisory .products ]]
9
+ package-name = " amazon-ssm-agent"
10
+ patched-version = " 3.3.808.0"
11
+ patched-release = " 0"
12
+ patched-epoch = " 0"
13
+
14
+ [updateinfo ]
15
+ author = " mharrimn"
16
+ issue-date = 2024-08-28T17:54:56Z
17
+ arches = [" x86_64" , " aarch64" ]
18
+ version = " staging"
Original file line number Diff line number Diff line change @@ -9,8 +9,8 @@ build = "../build.rs"
9
9
path = " ../packages.rs"
10
10
11
11
[[package .metadata .build-package .external-files ]]
12
- url = " https://github.com/aws/amazon-ssm-agent/archive/3.3.418 .0/amazon-ssm-agent-3.3.418 .0.tar.gz"
13
- sha512 = " b614803911b5f248dff6882f58da7a37d0d0397ea531f1f9cf30f52762ff2e80a7f0e7bf45b23fdfaecb4106a1acdbbc3b343c16940b5807bea3f953ef8e0e05 "
12
+ url = " https://github.com/aws/amazon-ssm-agent/archive/3.3.808 .0/amazon-ssm-agent-3.3.808 .0.tar.gz"
13
+ sha512 = " d8c8fe3aaa1362bde3c449e5eebfa0f0e728c514c8671e3990bfa4351d343a0000542d26f67c019ba8783d26e28e88417a4de4fd83706bd494f14ef7c4da7b86 "
14
14
15
15
[build-dependencies ]
16
16
glibc = { path = " ../glibc" }
Original file line number Diff line number Diff line change 3
3
%global goimport %{goproject }/%{gorepo }
4
4
5
5
Name: %{_cross_os }amazon-ssm-agent
6
- Version: 3.3.418 .0
6
+ Version: 3.3.808 .0
7
7
Release: 1%{?dist }
8
8
Summary: An agent to enable remote management of EC2 instances
9
9
License: Apache-2.0
Original file line number Diff line number Diff line change @@ -12,8 +12,8 @@ path = "../packages.rs"
12
12
releases-url = " https://ftp.gnu.org/gnu/bash"
13
13
14
14
[[package .metadata .build-package .external-files ]]
15
- url = " https://ftp.gnu.org/gnu/bash/bash-5.2.21 .tar.gz"
16
- sha512 = " 68af0b6b04b6825a3cb294ed8e1061d14d51d786aa7fb1c88d2848257409122f308ef4b8006ed401e2897aabe2adf6837074cea6f3a0523077308e45f49319fd "
15
+ url = " https://ftp.gnu.org/gnu/bash/bash-5.2.32 .tar.gz"
16
+ sha512 = " 92a66ff5159964d430a29027a259a9f4ab45e22ee57483d21ace58a731182627092fbf3032e1cd531ff359cf91c691b088eb647f41b06e113e53c01a2f057405 "
17
17
18
18
[build-dependencies ]
19
19
glibc = { path = " ../glibc" }
Original file line number Diff line number Diff line change 1
1
Name: %{_cross_os }bash
2
- Version: 5.2.21
2
+ Version: 5.2.32
3
3
Release: 1%{?dist }
4
4
Summary: The GNU Bourne Again shell
5
5
License: GPL-3.0 -or-later
Original file line number Diff line number Diff line change @@ -12,8 +12,8 @@ path = "../packages.rs"
12
12
releases-url = " https://github.com/containernetworking/cni/releases"
13
13
14
14
[[package .metadata .build-package .external-files ]]
15
- url = " https://github.com/containernetworking/cni/archive/v1.1.2 /cni-1.1.2 .tar.gz"
16
- sha512 = " dc4795fb03b8dc9d116692e0dd0feb1b57a481ed7414c8dc376a892725b0b3d9dd8b04b2be09073b95c8c9eec2c0165d0353f6be643647f4c4de0114b9dd5930 "
15
+ url = " https://github.com/containernetworking/cni/archive/v1.2.3 /cni-1.2.3 .tar.gz"
16
+ sha512 = " 7df2a2d01b85ace4e73ea577017e7c98a5d3b86373da5cf9e4ec7f50a1439753ed447c8f7fc871876c624336d91848fd42f309481bffbccc388377dbfad2e133 "
17
17
bundle-modules = [ " go" ]
18
18
19
19
# RPM BuildRequires
Original file line number Diff line number Diff line change 2
2
%global gorepo cni
3
3
%global goimport %{goproject }/%{gorepo }
4
4
5
- %global gover 1.1.2
5
+ %global gover 1.2.3
6
6
%global rpmver %{gover }
7
7
8
8
%global _dwz_low_mem_die_limit 0
Original file line number Diff line number Diff line change @@ -12,8 +12,8 @@ path = "../packages.rs"
12
12
releases-url = " https://github.com/bus1/dbus-broker/releases/"
13
13
14
14
[[package .metadata .build-package .external-files ]]
15
- url = " https://github.com/bus1/dbus-broker/releases/download/v35 /dbus-broker-35 .tar.xz"
16
- sha512 = " 409e415889bd53b78e92ba077455e5583852a071e233e4b23dcbb23d8a367f177d6c8138e6fc113dcfe48440b68d594c1a076cb43ef445d472645f671d5ae033 "
15
+ url = " https://github.com/bus1/dbus-broker/releases/download/v36 /dbus-broker-36 .tar.xz"
16
+ sha512 = " 47ff345e27ae2ba41f43a4a6eb09b813583ef43392d1dfa2fc1805578c0ed3a1e414c3eae63f78ca3806904dc017a138e283aa32ba973de51ed613050b244a0f "
17
17
18
18
[build-dependencies ]
19
19
glibc = { path = " ../glibc" }
Original file line number Diff line number Diff line change 1
1
Name: %{_cross_os }dbus-broker
2
- Version: 35
2
+ Version: 36
3
3
Release: 1%{?dist }
4
4
Summary: D-BUS message broker
5
5
License: Apache-2.0
Original file line number Diff line number Diff line change @@ -12,8 +12,8 @@ path = "../packages.rs"
12
12
releases-url = " https://kernel.org/pub/software/network/ethtool/"
13
13
14
14
[[package .metadata .build-package .external-files ]]
15
- url = " https://mirrors.edge.kernel.org/pub/software/network/ethtool/ethtool-6.9 .tar.xz"
16
- sha512 = " bc7e56a1a27a0679119491d6fce076e68374cf47a86fa4c0533851df0aa737cb9139920a9f3f3733deca672923d01bbb579f3d79bd17a2c6738f9f93aa469570 "
15
+ url = " https://mirrors.edge.kernel.org/pub/software/network/ethtool/ethtool-6.10 .tar.xz"
16
+ sha512 = " 1b6a0f5d2b89de57d1f003779557f2be786e26660ec430e80a966ad047f2fe1fe41bb573738b93454f32cf9089000ae879fc7feba0532bb559636a301ea61b10 "
17
17
18
18
[build-dependencies ]
19
19
glibc = { path = " ../glibc" }
You can’t perform that action at this time.
0 commit comments