Fedora alert FEDORA-2015-3471 (freexl)
| From: | updates@fedoraproject.org | |
| To: | package-announce@lists.fedoraproject.org | |
| Subject: | [SECURITY] Fedora 21 Update: freexl-1.0.0i-1.fc21 | |
| Date: | Wed, 18 Mar 2015 10:34:57 +0000 | |
| Message-ID: | <20150318103457.226AD6035123@bastion01.phx2.fedoraproject.org> |
-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-3471 2015-03-09 04:42:53 -------------------------------------------------------------------------------- Name : freexl Product : Fedora 21 Version : 1.0.0i Release : 1.fc21 URL : http://www.gaia-gis.it/FreeXL Summary : Library to extract data from within an Excel spreadsheet Description : FreeXL is a library to extract valid data from within an Excel spreadsheet (.xls) Design goals: * simple and lightweight * stable, robust and efficient * easily and universally portable * completely ignore any GUI-related oddity -------------------------------------------------------------------------------- Update Information: Four potentially harmful bugs causing crashes and stack corruption were detected in FreeXL by American Fuzzy Lop and are solved in this release. Please note: such issues are never realistically expected to be encountered in real world XLS spreadsheets, anyway some purposely forged XLS document could be used as a "poisoned bait" to maliciously open a security breach. https://groups.google.com/forum/#!topic/spatialite-users/... -------------------------------------------------------------------------------- ChangeLog: * Fri Mar 6 2015 Volker Fröhlich <volker27@gmx.at> 1.0.0i-1 - New release with security fixes -------------------------------------------------------------------------------- References: [ 1 ] Bug #1199328 - freexl-1.0.0i is available https://bugzilla.redhat.com/show_bug.cgi?id=1199328 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update freexl' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-...
