Skip to content

Commit 10be9fa

Browse files
KavyaSree2610Kavya Sree Kaitepalli
andauthored
Patch rust for CVE-2025-4574 [Medium] (#13985)
Co-authored-by: Kavya Sree Kaitepalli <[email protected]>
1 parent bfcefb1 commit 10be9fa

File tree

19 files changed

+173
-20
lines changed

19 files changed

+173
-20
lines changed

SPECS-EXTENDED/389-ds-base/389-ds-base.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -68,7 +68,7 @@ ExcludeArch: i686
6868
Summary: 389 Directory Server (%{variant})
6969
Name: 389-ds-base
7070
Version: 3.1.1
71-
Release: 4%{?dist}
71+
Release: 5%{?dist}
7272
License: GPL-3.0-or-later AND (0BSD OR Apache-2.0 OR MIT) AND (Apache-2.0 OR Apache-2.0 WITH LLVM-exception OR MIT) AND (Apache-2.0 OR BSL-1.0) AND (Apache-2.0 OR MIT OR Zlib) AND (Apache-2.0 OR MIT) AND (CC-BY-4.0 AND MIT) AND (MIT OR Apache-2.0) AND Unicode-DFS-2016 AND (MIT OR CC0-1.0) AND (MIT OR Unlicense) AND 0BSD AND Apache-2.0 AND BSD-2-Clause AND BSD-3-Clause AND ISC AND MIT AND MIT AND ISC AND MPL-2.0 AND PSF-2.0
7373
URL: https://www.port389.org
7474
Vendor: Microsoft Corporation
@@ -732,6 +732,9 @@ exit 0
732732
%endif
733733

734734
%changelog
735+
* Fri Jun 13 2025 Kavya Sree Kaitepalli <[email protected]> - 3.1.1-5
736+
- Bump release to rebuild with rust
737+
735738
* Wed May 14 2025 Kavya Sree Kaitepalli <[email protected]> - 3.1.1-4
736739
- Bump release to rebuild with rust 1.86.0
737740

SPECS-EXTENDED/ripgrep/ripgrep.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@
2020

2121
Name: ripgrep
2222
Version: 13.0.0
23-
Release: 7%{?dist}
23+
Release: 8%{?dist}
2424
Summary: A search tool that combines ag with grep
2525
License: MIT AND Unlicense
2626
Vendor: Microsoft Corporation
@@ -104,6 +104,9 @@ install -Dm 644 complete/_rg %{buildroot}%{_datadir}/zsh/site-functions/_rg
104104
%{_datadir}/zsh
105105

106106
%changelog
107+
* Fri Jun 13 2025 Kavya Sree Kaitepalli <[email protected]> - 13.0.0-8
108+
- Bump release to rebuild with rust
109+
107110
* Wed May 14 2025 Kavya Sree Kaitepalli <[email protected]> - 13.0.0-7
108111
- Bump release to rebuild with rust 1.86.0
109112

SPECS-EXTENDED/rust-cbindgen/rust-cbindgen.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22
Summary: Tool for generating C bindings to Rust code
33
Name: rust-cbindgen
44
Version: 0.24.3
5-
Release: 3%{?dist}
5+
Release: 4%{?dist}
66
License: MIT
77
Vendor: Microsoft Corporation
88
Distribution: Azure Linux
@@ -96,6 +96,9 @@ RUSTFLAGS=%{rustflags} cargo test --release
9696
%endif
9797

9898
%changelog
99+
* Fri Jun 13 2025 Kavya Sree Kaitepalli <[email protected]> - 0.24.3-4
100+
- Bump release to rebuild with rust
101+
99102
* Wed May 14 2025 Kavya Sree Kaitepalli <[email protected]> - 0.24.3-3
100103
- Bump release to rebuild with rust 1.86.0
101104

SPECS-EXTENDED/tardev-snapshotter/tardev-snapshotter.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33
Summary: Tardev Snapshotter for containerd
44
Name: tardev-snapshotter
55
Version: 3.2.0.tardev1
6-
Release: 1%{?dist}
6+
Release: 2%{?dist}
77
License: ASL 2.0
88
Group: Tools/Container
99
Vendor: Microsoft Corporation
@@ -67,6 +67,9 @@ fi
6767
%config(noreplace) %{_unitdir}/%{name}.service
6868

6969
%changelog
70+
* Fri Jun 13 2025 Kavya Sree Kaitepalli <[email protected]> - 3.2.0.tardev1-2
71+
- Bump release to rebuild with rust
72+
7073
* Fri Mar 28 2025 Dallas Delaney <[email protected]> - 3.2.0.tardev1-1
7174
- Add package to specs-extended
7275
- License verified

SPECS/clamav/clamav.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
Summary: Open source antivirus engine
22
Name: clamav
33
Version: 1.0.7
4-
Release: 2%{?dist}
4+
Release: 3%{?dist}
55
License: ASL 2.0 AND BSD AND bzip2-1.0.4 AND GPLv2 AND LGPLv2+ AND MIT AND Public Domain AND UnRar
66
Vendor: Microsoft Corporation
77
Distribution: Azure Linux
@@ -136,6 +136,9 @@ fi
136136
%dir %attr(-,clamav,clamav) %{_sharedstatedir}/clamav
137137

138138
%changelog
139+
* Tue Jun 10 2025 Kavya Sree Kaitepalli <[email protected]> - 1.0.7-3
140+
- Bump release to rebuild with rust
141+
139142
* Mon Apr 21 2025 Kavya Sree Kaitepalli <[email protected]> - 1.0.7-2
140143
- Pin rust version
141144

SPECS/cloud-hypervisor-cvm/cloud-hypervisor-cvm.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@
55
Name: cloud-hypervisor-cvm
66
Summary: Cloud Hypervisor CVM is an open source Virtual Machine Monitor (VMM) that enables running SEV SNP enabled VMs on top of MSHV using the IGVM file format as payload.
77
Version: 41.0.79
8-
Release: 1%{?dist}
8+
Release: 2%{?dist}
99
License: ASL 2.0 OR BSD-3-clause
1010
Vendor: Microsoft Corporation
1111
Distribution: Azure Linux
@@ -136,6 +136,9 @@ cargo build --release --target=%{rust_musl_target} %{cargo_pkg_feature_opts} %{c
136136
%license LICENSES/CC-BY-4.0.txt
137137

138138
%changelog
139+
* Fri Jun 13 2025 Kavya Sree Kaitepalli <[email protected]> - 41.0.79-2
140+
- Bump release to rebuild with rust
141+
139142
* Mon Apr 28 2025 CBL-Mariner Servicing Account <[email protected]> - 41.0.79-1
140143
- Auto-upgrade to 41.0.79
141144

SPECS/flux/flux.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -22,7 +22,7 @@
2222
Summary: Influx data language
2323
Name: flux
2424
Version: 0.194.5
25-
Release: 4%{?dist}
25+
Release: 5%{?dist}
2626
License: MIT
2727
Vendor: Microsoft Corporation
2828
Distribution: Azure Linux
@@ -146,6 +146,9 @@ RUSTFLAGS=%{rustflags} cargo test --release
146146
%{_includedir}/influxdata/flux.h
147147

148148
%changelog
149+
* Tue Jun 10 2025 Kavya Sree Kaitepalli <[email protected]> - 0.194.5-5
150+
- Bump release to rebuild with rust
151+
149152
* Mon Apr 21 2025 Kavya Sree Kaitepalli <[email protected]> - 0.194.5-4
150153
- Pin rust version
151154

SPECS/influxdb/influxdb.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@
1818
Summary: Scalable datastore for metrics, events, and real-time analytics
1919
Name: influxdb
2020
Version: 2.7.5
21-
Release: 6%{?dist}
21+
Release: 7%{?dist}
2222
License: MIT
2323
Vendor: Microsoft Corporation
2424
Distribution: Azure Linux
@@ -156,6 +156,9 @@ go test ./...
156156
%{_tmpfilesdir}/influxdb.conf
157157

158158
%changelog
159+
* Tue Jun 10 2025 Kavya Sree Kaitepalli <[email protected]> - 2.7.5-7
160+
- Bump release to rebuild with rust
161+
159162
* Wed May 28 2025 Mykhailo Bykhovtsev <[email protected]> - 2.7.5-6
160163
- Updated config.yaml file to include boltpath, engine path and nats port
161164

SPECS/kata-containers-cc/kata-containers-cc.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33

44
Name: kata-containers-cc
55
Version: 3.15.0.aks0
6-
Release: 1%{?dist}
6+
Release: 2%{?dist}
77
Summary: Kata Confidential Containers package developed for Confidential Containers on AKS
88
License: ASL 2.0
99
URL: https://github.com/microsoft/kata-containers
@@ -150,6 +150,9 @@ fi
150150
%{tools_pkg}/tools/osbuilder/node-builder/azure-linux/agent-install/usr/lib/systemd/system/kata-agent.service
151151

152152
%changelog
153+
* Fri Jun 13 2025 Kavya Sree Kaitepalli <[email protected]> - 3.15.0.aks0-2
154+
- Bump release to rebuild with rust
155+
153156
* Mon Apr 28 2025 CBL-Mariner Servicing Account <[email protected]> - 3.15.0.aks0-1
154157
- Auto-upgrade to 3.15.0.aks0
155158

SPECS/kata-containers/kata-containers.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@
22

33
Name: kata-containers
44
Version: 3.15.0.aks0
5-
Release: 1%{?dist}
5+
Release: 2%{?dist}
66
Summary: Kata Containers package developed for Pod Sandboxing on AKS
77
License: ASL 2.0
88
URL: https://github.com/microsoft/kata-containers
@@ -112,6 +112,9 @@ popd
112112
%{tools_pkg}/tools/osbuilder/node-builder/azure-linux/agent-install/usr/lib/systemd/system/kata-agent.service
113113

114114
%changelog
115+
* Fri Jun 13 2025 Kavya Sree Kaitepalli <[email protected]> - 3.15.0.aks0-2
116+
- Bump release to rebuild with rust
117+
115118
* Mon Apr 28 2025 CBL-Mariner Servicing Account <[email protected]> - 3.15.0.aks0-1
116119
- Auto-upgrade to 3.15.0.aks0
117120

SPECS/librsvg2/librsvg2.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@
88
Summary: An SVG library based on cairo
99
Name: librsvg2
1010
Version: 2.58.1
11-
Release: 2%{?dist}
11+
Release: 3%{?dist}
1212
License: LGPLv2+
1313
Vendor: Microsoft Corporation
1414
Distribution: Azure Linux
@@ -125,6 +125,9 @@ rm -vrf %{buildroot}%{_docdir}
125125
%{_bindir}/rsvg-convert
126126

127127
%changelog
128+
* Tue Jun 10 2025 Kavya Sree Kaitepalli <[email protected]> - 2.58.1-3
129+
- Bump release to rebuild with rust
130+
128131
* Mon Apr 21 2025 Kavya Sree Kaitepalli <[email protected]> - 2.58.1-2
129132
- Pin rust version
130133

SPECS/mesa/mesa.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -67,7 +67,7 @@
6767
Name: mesa
6868
Summary: Mesa graphics libraries
6969
Version: 24.0.1
70-
Release: 2%{?dist}
70+
Release: 3%{?dist}
7171
License: BSD
7272
Vendor: Microsoft Corporation
7373
Distribution: Azure Linux
@@ -741,6 +741,9 @@ popd
741741
%endif
742742

743743
%changelog
744+
* Tue Jun 10 2025 Kavya Sree Kaitepalli <[email protected]> - 24.0.1-3
745+
- Bump release to rebuild with rust
746+
744747
* Mon Apr 21 2025 Kavya Sree Kaitepalli <[email protected]> - 24.0.1-2
745748
- Pin rust version
746749

SPECS/netavark/netavark.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -11,7 +11,7 @@
1111

1212
Name: netavark
1313
Version: 1.10.3
14-
Release: 2%{?dist}
14+
Release: 3%{?dist}
1515
Summary: OCI network stack
1616
License: ASL 2.0 and BSD and MIT
1717
Vendor: Microsoft Corporation
@@ -225,6 +225,9 @@ popd
225225
%{_unitdir}/%{name}-firewalld-reload.service
226226

227227
%changelog
228+
* Tue Jun 10 2025 Kavya Sree Kaitepalli <kkaitepalli@microsoft.com> - 1.10.3-3
229+
- Bump release to rebuild with rust
230+
228231
* Mon Apr 21 2025 Kavya Sree Kaitepalli <kkaitepalli@microsoft.com> - 1.10.3-2
229232
- Pin rust version
230233

SPECS/rpm-ostree/rpm-ostree.spec

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
Summary: Commit RPMs to an OSTree repository
22
Name: rpm-ostree
33
Version: 2024.4
4-
Release: 3%{?dist}
4+
Release: 4%{?dist}
55
License: LGPLv2+
66
Vendor: Microsoft Corporation
77
Distribution: Azure Linux
@@ -178,6 +178,9 @@ make check
178178
%{_datadir}/gir-1.0/*-1.0.gir
179179

180180
%changelog
181+
* Tue Jun 10 2025 Kavya Sree Kaitepalli <[email protected]> - 2024.4-4
182+
- Bump release to rebuild with rust
183+
181184
* Fri May 16 2025 Jyoti Kanase <[email protected]> - 2024.4-3
182185
- Patch CVE-2024-2905
183186

0 commit comments

Comments
 (0)