Noah Meyerhans
|
2dcc84370c
|
kea: bump to 2.6.4
Create kea state directories with mode 0750 per restrictions added in 2.6.3
Refresh patches
Fixes the following CVEs:
* CVE-2025-32803: Change the umask to no group write and no other access
at the entry of Kea server/agent binaries
* CVE-2025-32801: kea-dhcp4, kea-dhcp6, kea-dhcp-ddns, and kea-ctrl-agent will
now only load hook libraries from the default installation directory
Full upstream changelogs are available at:
https://downloads.isc.org/isc/kea/2.6.1/Kea-2.6.1-ReleaseNotes.txt
https://downloads.isc.org/isc/kea/2.6.2/Kea-2.6.2-ReleaseNotes.txt
https://downloads.isc.org/isc/kea/2.6.3/Kea-2.6.3-ReleaseNotes.txt
https://downloads.isc.org/isc/kea/2.6.4/Kea-2.6.4-ReleaseNotes.txt
Signed-off-by: Noah Meyerhans <frodo@morgul.net>
|
2025-12-01 15:46:05 -05:00 |
|