openSUSE-SU-2021:1125-1
Dashboard / Vulnerabilities / openSUSE-SU-2021:1125-1
openSUSE-SU-2021:1125-1
Summary: Security update for aria2
Details: This update for aria2 fixes the following issues: Update to version 1.35.0: * Drop SSLv3.0 and TLSv1.0 and add TLSv1.3 * TLSv1.3 support is added for GNUTLS and OpenSSL. * Platform: Fix compilation without deprecated OpenSSL APIs * Remove linux getrandom and use C++ stdlib instead * Don't send Accept Metalink header if Metalink is disabled - Move bash completion to better location Update to version 1.34.0: * UnknownLengthPieceStorage: return piece length show something in console status when downloading items with unknown content length * Fix bug that signal handler does not work with libaria2 when aria2::RUN_ONCE is passed to aria2::run(). * Retry on HTTP 502
References: https://lists.opensuse.org/archives/list/[email protected]/thread/X3RWOJOX6LLCQBYIEUS2KKAEEPLXW6WP/, https://bugzilla.suse.com/1189107, https://www.suse.com/security/cve/CVE-2019-3500
Affected packages
Package
Name: aria2
Purl: pkg:rpm/suse/aria2&distro=SUSE%20Package%20Hub%2015%20SP1
Affected ranges
Type: ECOSYSTEM
Events:
