LWN.net Logo

Fedora alert FEDORA-2013-2041 (qt)

From:  updates@fedoraproject.org
To:  package-announce@lists.fedoraproject.org
Subject:  [SECURITY] Fedora 18 Update: qt-4.8.4-11.fc18
Date:  Wed, 13 Feb 2013 04:35:43 +0000
Message-ID:  <20130213043543.4C6CF20D5A@bastion01.phx2.fedoraproject.org>
Archive-link:  Article, Thread

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2013-2041 2013-02-08 01:07:25 -------------------------------------------------------------------------------- Name : qt Product : Fedora 18 Version : 4.8.4 Release : 11.fc18 URL : http://qt.nokia.com/ Summary : Qt toolkit Description : Qt is a software toolkit for developing applications. This package contains base tools, like string, xml, and network handling. -------------------------------------------------------------------------------- Update Information: it fixes security flaw was found in the way QSharedMemory class, CVE-2013-0254 -------------------------------------------------------------------------------- ChangeLog: * Mon Feb 4 2013 Than Ngo <than@redhat.com> - 4.8.4-11 - backport: fix security flaw was found in the way QSharedMemory class, CVE-2013-0254 * Sat Jan 26 2013 Rex Dieter <rdieter@fedoraproject.org> 1:4.8.4-10 - rebuild (icu) * Thu Jan 24 2013 Rex Dieter <rdieter@fedoraproject.org> 1:4.8.4-9 - make qtchooser support non-conflicting * Mon Jan 21 2013 Adam Tkac <atkac redhat com> - 1:4.8.4-8 - rebuild due to "jpeg8-ABI" feature drop * Wed Jan 9 2013 Rex Dieter <rdieter@fedoraproject.org> 4.8.4-7 - add qtchooser support (disabled by default) * Mon Jan 7 2013 Rex Dieter <rdieter@fedoraproject.org> 4.8.4-6 - blacklist unauthorized SSL certificates by Türktrust * Fri Jan 4 2013 Rex Dieter <rdieter@fedoraproject.org> 1:4.8.4-5 - QGtkStyle was unable to detect the current GTK+ theme (#702493, QTBUG-5545)) * Fri Jan 4 2013 Rex Dieter <rdieter@fedoraproject.org> 1:4.8.4-4 - QSslSocket may report incorrect errors when certificate verification fails * Thu Jan 3 2013 Rex Dieter <rdieter@fedoraproject.org> 1:4.8.4-3 - -x11: %exclude %{_qt4_plugindir}/designer/libqwebview.so * Sun Dec 16 2012 Rex Dieter <rdieter@fedoraproject.org> 1:4.8.4-2 - -designer-plugin-webkit subpkg (#887501) - fix/prune/changelog -------------------------------------------------------------------------------- References: [ 1 ] Bug #907425 - CVE-2013-0254 qt: QSharedMemory class created shared memory segments with insecure permissions https://bugzilla.redhat.com/show_bug.cgi?id=907425 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update qt' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-...


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds