LWN.net Logo

Fedora alert FEDORA-2007-3701 (liferea)

From:  updates@fedoraproject.org
To:  fedora-package-announce@redhat.com
Subject:  [SECURITY] Fedora 8 Update: liferea-1.4.8-1.fc8
Date:  Wed, 28 Nov 2007 18:42:47 -0700
Message-ID:  <200711290142.lAT1gett023219@bastion.fedora.phx.redhat.com>

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2007-3701 2007-11-29 01:42:44.767756 -------------------------------------------------------------------------------- Name : liferea Product : Fedora 8 Version : 1.4.8 Release : 1.fc8 URL : http://liferea.sourceforge.net/ Summary : An RSS/RDF feed reader Description : Liferea (Linux Feed Reader) is an RSS/RDF feed reader. It's intended to be a clone of the Windows-only FeedReader. It can be used to maintain a list of subscribed feeds, browse through their items, and show their contents. -------------------------------------------------------------------------------- Update Information: Update to stable 1.4.x, and fixes CVE-2005-4791 -------------------------------------------------------------------------------- ChangeLog: * Thu Nov 22 2007 Brian Pepple <bpepple@fedoraproject.org> - 1.4.8-1 - Update to 1.4.8. - fixes LD_LIBRARY_PATH security bug. CVE-2006-4791 * Thu Nov 15 2007 Brian Pepple <bpepple@fedoraproject.org> - 1.4.7-1 - Update to 1.4.7. - Drop opml & nm patches. fixed upstream. - Update fedora feed patch for 1.4.x. - add BR on sqlite-devel, dbus-devel, dbus-glib-devel, libglade2-devel. - Don't build gtkhtml2 plugin for now. * Tue Nov 6 2007 Brian Pepple <bpepple@fedoraproject.org> - 1.2.23-6 - Rebuild for new gecko libs. * Wed Oct 31 2007 Brian Pepple <bpepple@fedoraproject.org> - 1.2.23-5 - Add patch to fix opml security bug: CVE-2007-5751. (#360641) -------------------------------------------------------------------------------- References: [ 1 ] Bug #393301 - CVE-2005-4791 liferea might include include CWD in LD_LIBRARY_PATH [f8] https://bugzilla.redhat.com/show_bug.cgi?id=393301 [ 2 ] Bug #366421 - Liferea 1.4.x is now stable https://bugzilla.redhat.com/show_bug.cgi?id=366421 -------------------------------------------------------------------------------- Updated packages: 18d663f2be743581a1614b73b86c36d7160d5d36 liferea-1.4.8-1.fc8.ppc64.rpm e1917a5fadb403a57a131e6145954cb951a5e6c9 liferea-debuginfo-1.4.8-1.fc8.ppc64.rpm b8a7755711e3d20667d01b3f08e6bb5f46ef1cd2 liferea-1.4.8-1.fc8.i386.rpm ce5ded6faf03ba4d072e8d4a3299f0280dd24049 liferea-debuginfo-1.4.8-1.fc8.i386.rpm 9f943e7da4853a9739b9a3a476d7facda8efd542 liferea-1.4.8-1.fc8.x86_64.rpm 49acae362d65dc5e224c23685627bfb3b350dfc4 liferea-debuginfo-1.4.8-1.fc8.x86_64.rpm 69d1f80def315c0f81b7aaba61670eb1c420222d liferea-1.4.8-1.fc8.ppc.rpm 97fafb78f9aeaf81c8bb2d8c4552d9cf5a7ae0b9 liferea-debuginfo-1.4.8-1.fc8.ppc.rpm 066ef3139ae7dce4c2e98ba3d0bcaa1a4161bfc4 liferea-1.4.8-1.fc8.src.rpm This update can be installed with the "yum" update program. Use su -c 'yum update liferea' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list Fedora-package-announce@redhat.com http://www.redhat.com/mailman/listinfo/fedora-package-ann...


(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds