Fedora 39: syncthing 2024-4fc7cdc194 Security Advisory Updates
Summary
Syncthing replaces other file synchronization services with something
open, trustworthy and decentralized. Your data is your data alone and
you deserve to choose where it is stored, if it is shared with some
third party and how it's transmitted over the Internet. Using syncthing,
that control is returned to you.
This package contains the syncthing client binary and systemd services.
Update Information:
Update to version 1.28.0. Release notes: https://github.com/syncthing/syncthing/releases/tag/v1.28.0
Change Log
* Mon Oct 28 2024 Fabio Valentini
References
[ 1 ] Bug #2292676 - CVE-2024-24789 syncthing: golang: archive/zip: Incorrect handling of certain ZIP files [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2292676
[ 2 ] Bug #2292720 - CVE-2024-24789 syncthing: golang: archive/zip: Incorrect handling of certain ZIP files [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2292720
Update Instructions
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-4fc7cdc194' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label