ALT-BU-2025-5008-1
Branch p11 update bulletin.
Package gnome-shell-extension-hidetopbar updated to version 118-alt1 for branch p11 in task 375809.
Closed bugs
Не работает с текущей версией Gnome
Closed bugs
Не подкрепляется перевод интерфейса handbrake на русский язык
нет русской локали
Обновить приложение до актуальной версии
Closed bugs
Поддержка https в плеере
Closed bugs
Не переведено контекстное меню "Snoop..."
Package sharedmeataxe updated to version 1.0.1-alt2 for branch p11 in task 379077.
Closed bugs
Файловый конфликт между пакетами sharedmeataxe и zoneminder
Closed vulnerabilities
BDU:2024-10117
Уязвимость класса HttpURI контейнера сервлетов Eclipse Jetty, позволяющая нарушителю осуществить SSRF-атаку
Modified: 2025-03-07
CVE-2024-6763
Eclipse Jetty is a lightweight, highly scalable, Java-based web server and Servlet engine . It includes a utility class, HttpURI, for URI/URL parsing. The HttpURI class does insufficient validation on the authority segment of a URI. However the behaviour of HttpURI differs from the common browsers in how it handles a URI that would be considered invalid if fully validated against the RRC. Specifically HttpURI and the browser may differ on the value of the host extracted from an invalid URI and thus a combination of Jetty and a vulnerable browser may be vulnerable to a open redirect attack or to a SSRF attack if the URI is used after passing validation checks.
Package proxmox-backup updated to version 3.3.3.1-alt4 for branch p11 in task 378500.
Closed bugs
Ошибки при работе с ленточным устройством
Closed bugs
После ввода пароля swaylock блокировка не снимается
Closed vulnerabilities
Modified: 2024-11-21
CVE-2022-40299
In Singular before 4.3.1, a predictable /tmp pathname is used (e.g., by sdb.cc), which allows local users to gain the privileges of other users via a procedure in a file under /tmp. NOTE: this CVE Record is about sdb.cc and similar files in the Singular interface that have predictable /tmp pathnames; this CVE Record is not about the lack of a safe temporary-file creation capability in the Singular language.
- http://michael.orlitzky.com/cves/cve-2022-40299.xhtml
- http://michael.orlitzky.com/cves/cve-2022-40299.xhtml
- https://github.com/Singular/Singular/commit/5f28fbf066626fa9c4a8f0e6408c0bb362fb386c
- https://github.com/Singular/Singular/commit/5f28fbf066626fa9c4a8f0e6408c0bb362fb386c
- https://github.com/Singular/Singular/issues/1137
- https://github.com/Singular/Singular/issues/1137
Package docs-alt-server updated to version 11.0-alt2 for branch p11 in task 379252.
Closed bugs
Опечатка в главе 42.4.2. Правила по VID&PID документации docs-alt-server