[zeromq-announce] libzmq 4.3.1 has been released

Luca Boccassi luca.boccassi at gmail.com
Sat Jan 12 17:59:01 CET 2019


Hello everyone,

The ZeroMQ community is proud to announce the release of version 4.3.1!

Please note that this release fixes a remote execution vulnerability
that has been present since 4.2.0. As noted in the changelog and on the
issue tracker, ASLR and CURVE/GSSAPI fully mitigate this issue. Users
deploying public endpoints without any of those mitigations should
upgrade as soon as possible.

https://github.com/zeromq/libzmq/releases/tag/v4.3.1

Distributable tarball and zip files can be found on the above link,
together with the full changelog.

Binary packages for the most common Linux distros and architectures can
be found here, for DEB and RPM respectively:

http://software.opensuse.org/download.html?project=network%3Amessaging%
3Azeromq%3Arelease-stable&package=libzmq3-dev

http://software.opensuse.org/download.html?project=network%3Amessaging%
3Azeromq%3Arelease-stable&package=zeromq-devel

This is a patch release. This release is ABI compatible with libzmq
4.1.2 and up.

Please report any issues on the Github tracker.

-- 
Kind regards,
Luca Boccassi
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 488 bytes
Desc: This is a digitally signed message part
URL: <https://lists.zeromq.org/pipermail/zeromq-announce/attachments/20190112/5ee21acd/attachment.sig>


More information about the zeromq-announce mailing list