LWN.net Logo

Fedora alert FEDORA-2007-4667 (libexif)

From:  updates@fedoraproject.org
To:  fedora-package-announce@redhat.com
Subject:  [SECURITY] Fedora 8 Update: libexif-0.6.15-5.fc8
Date:  Thu, 20 Dec 2007 12:54:00 -0700
Message-ID:  <200712201954.lBKJrpmN026037@bastion.fedora.phx.redhat.com>

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2007-4667 2007-12-20 00:54:35 -------------------------------------------------------------------------------- Name : libexif Product : Fedora 8 Version : 0.6.15 Release : 5.fc8 URL : http://libexif.sourceforge.net/ Summary : Library for extracting extra information from image files Description : Most digital cameras produce EXIF files, which are JPEG files with extra tags that contain information about the image. The EXIF library allows you to parse an EXIF file and read the data from those tags. -------------------------------------------------------------------------------- Update Information: This update fixes to recently discovered vulnerabilities in libexif, CVE-2007-6351 and CVE-2007-6352. -------------------------------------------------------------------------------- ChangeLog: * Sat Dec 15 2007 Matthias Clasen <mclasen@redhat.com> - 0.6.15-5 - Add patch for CVE-2007-6351. Fixes bug #425621 - Add patch for CVE-2007-6352. Fixes bug #425621 -------------------------------------------------------------------------------- References: [ 1 ] Bug #425631 - CVE-2007-6351 CVE-2007-6352 libexif various flaws [F8] https://bugzilla.redhat.com/show_bug.cgi?id=425631 -------------------------------------------------------------------------------- Updated packages: 852d54047ba586d62486818245bd18ac7b9c291a libexif-devel-0.6.15-5.fc8.ppc64.rpm e15c3d7b5426eaa4bf3e46aa4fae592629ae9e59 libexif-0.6.15-5.fc8.ppc64.rpm 4daedaa0ec9e9328b98ada468599728748a82c1f libexif-debuginfo-0.6.15-5.fc8.ppc64.rpm 3b7cf7c8be953825a10c09a784e7c7f14d974bfe libexif-0.6.15-5.fc8.i386.rpm 5daaae00ff5543f069197951eaff7aa27154e611 libexif-devel-0.6.15-5.fc8.i386.rpm ffdb148b9829b04f1b0035491922c1439e68ace1 libexif-debuginfo-0.6.15-5.fc8.i386.rpm 9ff1fab36fc1fcc6e4d2c328c3df5bf6d3ffb674 libexif-debuginfo-0.6.15-5.fc8.x86_64.rpm 6de81cf76765f8e31c6673ac3e1bb8e57c62ff99 libexif-devel-0.6.15-5.fc8.x86_64.rpm e804aeb6e4538a23e2ef7b23aa7748859b1a05f8 libexif-0.6.15-5.fc8.x86_64.rpm 4fff7b0828ac226737e1378344d10ff79b02119c libexif-debuginfo-0.6.15-5.fc8.ppc.rpm 49eb0cfab1f30c27e08813ded09ec37b2c532b6d libexif-0.6.15-5.fc8.ppc.rpm 574766396e9792127a73ea7dd0a7ae46c54bc323 libexif-devel-0.6.15-5.fc8.ppc.rpm 84810840b80dbb55416643a9882837cb82f90c5c libexif-0.6.15-5.fc8.src.rpm This update can be installed with the "yum" update program. Use su -c 'yum update libexif' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list Fedora-package-announce@redhat.com http://www.redhat.com/mailman/listinfo/fedora-package-ann...


(Log in to post comments)

Copyright © 2009, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds