U radu programskog paketa apache-commons-daemon uočen je sigurnosni propust kojeg udaljeni, zlonamjerni korisnik može iskoristiti za zaobilaženje ograničenja u sustavu i pristup osjetljivim podacima.
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2011-10936
2011-08-17 00:09:00
--------------------------------------------------------------------------------
Name : apache-commons-daemon
Product : Fedora 15
Version : 1.0.7
Release : 1.fc15
URL : http://commons.apache.org/daemon
Summary : Defines API to support an alternative invocation mechanism
Description :
The scope of this package is to define an API in line with the current
Java Platform APIs to support an alternative invocation mechanism
which could be used instead of the public static void main(String[])
method. This specification covers the behavior and life cycle of what
we define as Java daemons, or, in other words, non interactive
Java applications.
--------------------------------------------------------------------------------
Update Information:
This update fixes several bugs and also security issue CVE-2011-2729.
Users are encouraged to update as soon as possible.
--------------------------------------------------------------------------------
ChangeLog:
* Mon Aug 15 2011 Stanislav Ochotnicky <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 1.0.7-1
- Update to latest upstream (1.0.7)
- Fix CVE-2011-2729
* Wed Jul 20 2011 Stanislav Ochotnicky <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 1.0.6-1
- Update to latest upstream (1.0.6)
- Cleanups according to new guidelines
* Mon May 9 2011 Stanislav Ochotnicky <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 1.0.5-5
- Use mvn-rpmbuild instead of mvn-local (changes in maven)
* Wed May 4 2011 Dan HorÄ
Posljednje sigurnosne preporuke