Displaying 20 results from an estimated 400 matches similar to: "Patches for CVE-2024-27322"
2024 Apr 30
1
Patches for CVE-2024-27322
svn diff -c 86235 ~/r-devel/R
(or 86238 for the port to the release branch) should be easily backported.
(CC Luke in case there is more to it)
- pd
> On 30 Apr 2024, at 11:28 , I?aki Ucar <iucar at fedoraproject.org> wrote:
>
> Dear R-core,
>
> I just received notification of CVE-2024-27322 [1] in RedHat's Bugzilla. We
> updated R to v4.4.0 in Fedora rawhide, F40,
2024 Apr 30
1
Patches for CVE-2024-27322
On 30 April 2024 at 11:59, peter dalgaard wrote:
| svn diff -c 86235 ~/r-devel/R
Which is also available as
https://github.com/r-devel/r-svn/commit/f7c46500f455eb4edfc3656c3fa20af61b16abb7
Dirk
| (or 86238 for the port to the release branch) should be easily backported.
|
| (CC Luke in case there is more to it)
|
| - pd
|
| > On 30 Apr 2024, at 11:28 , I?aki Ucar <iucar at
2024 Apr 30
1
Patches for CVE-2024-27322
Many thanks both. I'll wait for Luke's confirmation to trigger the update
with the backported fix.
I?aki
On Tue, 30 Apr 2024 at 12:42, Dirk Eddelbuettel <edd at debian.org> wrote:
>
> On 30 April 2024 at 11:59, peter dalgaard wrote:
> | svn diff -c 86235 ~/r-devel/R
>
> Which is also available as
>
>
2000 Jan 04
0
Stepwise logistic discrimination - II
I apologise for writing again about the problem with using stepAIC +
multinom, but I think the reason why I had it in the first place is
perhaps there may be a bug in either stepAIC or multinom.
Just to repeat the problem, I have 126 variables and 99 cases. I don't
know if the large number of variables could be the problem. Of couse the
reason for doing a stepwise method is to reduce this
2024 Jun 26
1
Regarding the Security Vulnerability CVE 2024 - 27322
Dear R Foundation Team,
I hope this message finds you well.
I am reaching out to seek your guidance on addressing the security vulnerability CVE-2024-27322. As I understand, a security fix for this vulnerability has been available starting from v4.4.0. This issue affects all versions from 1.4.0 to 4.3.3.
During our testing phase, we encountered a challenge while attempting to upgrade to the
2024 Sep 24
1
RStudio package maintenance moved to Copr
Dear all,
With the latest release of RStudio last week (v2024.09.0+375), support for
Qt builds has been removed. This means that we can no longer maintain
RStudio packages in the official Fedora repositories, because the necessary
Electron component is missing. RStudio is supported in the official
repositories up to v2024.04.2+764 and F40, and has been retired from newer
branches.
Consequently,
2024 Sep 24
1
RStudio package maintenance moved to Copr
Many thanks I?aki.
Will Quarto get pulled in from your COPR automatically as well or do we
need to specifically install it before/after?
Also is it worth updating the "add ons" section at
https://cran.r-project.org/bin/linux/fedora/ as well?
Tim
On 24/09/2024 12:51, I?aki Ucar wrote:
> Dear all,
>
> With the latest release of RStudio last week (v2024.09.0+375), support
2016 Jan 09
1
Logging levels
I recently upgraded from Samba v3.6.25 to v4.3.3. After the upgrade, I
realized I should change my smb.conf because the syslog parameters are
deprecated. My old parameters were:
log level = 1
syslog = 6
syslog only = yes
Also, I built Samba with --with-syslog-facility=LOG_LOCAL7.
I'm having trouble replicating the same configuration with v4.3.3. The
syslog
2007 Sep 05
1
(PR#9896) read.spss converts string variables with
------=_20070905112441_38848
Content-Type: text/plain; charset="iso-8859-2"
Content-Transfer-Encoding: 8bit
I am sending two files attached. The file problem_file.sav was saved in
SPSS 10.0. It contains variables of various types, with and without
labeling etc., so that you can make experiments.
The file problem_file_read.RData was saved in R 2.5.1 (foreign library
version 0.8-20). It
2024 Jun 27
1
Regarding the Security Vulnerability CVE 2024 - 27322
Hi Ivan and R - Help Team,
Thank you for your prompt response and the helpful information.
I have another query: Is there a way to patch or upgrade the existing installation to version 4.4.0, rather than having to uninstall the older version and then install the latest one? A direct upgrade or patch would greatly simplify the process and reduce downtime.
Your guidance on this matter would be
2024 Jun 26
2
Regarding the Security Vulnerability CVE 2024 - 27322
Dear Aishwarya Priyadarshini,
Welcome to R-help! Most people here aren't affiliated with R Foundation.
? Wed, 26 Jun 2024 17:03:37 +0000
"Priya, Aishwarya via R-help" <r-help at r-project.org> ?????:
> I am reaching out to seek your guidance on addressing the security
> vulnerability CVE-2024-27322.
> To address this issue effectively, it appears that we need to
2003 Sep 03
3
Pointer to upgrade 7960sip beyond v3.2.0?
Slightly off topic, but maybe some can suggest something off list...
Trying to upgrade a 7960 that was running skinny. I've got sip v3.2.0
installed and running, and am able to place calls via *, etc.
However, when upgrading to v4.4.0 I can never get to the point of
being able to place a call (eg, no dialtone, etc). I can ping the
phone, look at the Network Config, etc, but I can't
2004 Apr 08
0
Mailman results for Cottage (PR#6748)
$B$3$l$O<+F01~Ez$G$9(B.
$B4IM}%"%I%l%9(B <cottage-request@eg.e-cell.org> $B7PM3$G(B Mailman $B$K(B
$BAw$C$?%a!<%k%3%^%s%I$KLdBj$,$"$j$^$9(B. $B@5$7$$(B Mailman $B$N(B Email
$B%3%^%s%I$N;H$$J}$K$D$$$F$O!$(B"help" $B$r%a!<%k$N7oL>$+K\J8$KF~$l$F(B
<cottage-request@eg.e-cell.org> $B$X(B $BAw$C$F2<$5$$!%(B
2016 Oct 14
2
not quite demoted, yet
A few days ago I demoted my first DC (a v4.2.14, I think) and thought
the demote had gone well. Now, when I run "samba-tool dnsupdate
--verbose" I can see references to the first DC that remain.
Unfortunately, that DC no longer exists so I simply cannot demote it
again.
Following the instructions on the "Demote a Samba AD DC" page "Verifying
The Demotion" section, I
2016 Feb 10
1
Unable to create raw volume on netfs storage (Operation not permitted)
Hello,
we are trying to create a new setup with a centralized storage server. Currently we are running multiple "All-in-One" hosts using raw volumes stored on the local disk of the server.
I tried it first with samba but it did not work so currently I have configured it as NFS.
This is my current setup:
For Storage:
OS: Ubuntu 16.04 beta (to match vHost version),
IP: 123.123.123.2
2023 Jul 23
1
Announce: OpenSSH 9.3p2 released
On Fri, Jul 21, 2023 at 4:37?AM Dmitry Belyavskiy <dbelyavs at redhat.com> wrote:
>
> On Thu, Jul 20, 2023 at 3:53?AM Damien Miller <djm at mindrot.org> wrote:
> >
> >
> >
> > On Wed, 19 Jul 2023, Dmitry Belyavskiy wrote:
> >
> > > Dear Damien,
> > >
> > > Could you please clarify which versions are vulnerable?
> >
2003 Jun 29
1
Please confirm (conf#3cf11a7145595546740c6064dbc27044)
<< IMPORTANT INFORMATION! >>
This is an automated message.
The message you sent (attached below) requires confirmation
before it can be delivered. To confirm that you sent the
message below, just hit the "R"eply button and send this
message back (you don't need to edit anything). Once this is
done, no more confirmations will be necessary.
This email account is
1999 Dec 10
5
openssh on AIX v4.3.3 with native compiler
Hello,
Was looking in the archives... and haven't seen this one listed.
When I compile openssh-1.2pre17 on AIX v4.3.3 with the native compiler
I get the following errors. I haven't see this __attribute__ code.. What
compiler/libraries are needed to compile this? I have seen that people
have compiled openssh on AIX.. Just wondering what you have used.
# make
cc -g
2024 May 01
2
De-serialization vulnerability?
All,
There seems to be a hullaboo about a vulnerability in R when deserializing untrusted data:
https://hiddenlayer.com/research/r-bitrary-code-execution
https://nvd.nist.gov/vuln/detail/CVE-2024-27322
https://www.kb.cert.org/vuls/id/238194
Apparently a fix was made for R 4.4.0, but I see no mention of it in the changes report:
https://cloud.r-project.org/bin/windows/base/NEWS.R-4.4.0.html
2002 Jul 07
1
why is samba trying to connect to other computers in NT domain?
I am running samba version 2.2.3a on an IBM AIX box
(running AIX v4.3.3). The security is set to Domain.
The AIX box has successfully joined the NT domain. I
constantly see in the samba log file a message similar
to the following:
"smbd/server.c: main(698)
Denied connection from (xxx.xx.xx.xx)", where
(xxx.xx.xx.xx) is the IP address of a computer in the
same domain which the IBM box