U radu programskog paketa gnome-python2-extras, namijenjenog operacijskom sustavu Fedora 14, uočena je sigurnosna nepravilnost. Riječ je o skupini programskih dodataka koji omogućuju povezivanje Python programa sa grafičkim okružjem GNOME. Uzroci propusta su CSRF ranjivost, nepravilno korištenje memorije te pojava preljeva memorijskog spremnika. Uspješna zloupotreba napadaču omogućuje rušenje ranjive aplikacije. Svim se korisnicima ranjivog paketa savjetuje instalacija dostupnih programskih nadogradnji.

--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2011-2444
2011-03-02 01:27:20
--------------------------------------------------------------------------------

Name        : gnome-python2-extras
Product     : Fedora 14
Version     : 2.25.3
Release     : 27.fc14.1
URL         : http://www.pygtk.org/
Summary     : Additional PyGNOME Python extension modules
Description :
The gnome-python-extra package contains the source packages for additional
Python bindings for GNOME. It should be used together with gnome-python.

--------------------------------------------------------------------------------
Update Information:

Update to new upstream Firefox version 3.6.14, fixing multiple security issues detailed in the upstream advisories:

http://www.mozilla.org/security/known-vulnerabilities/firefox36.html#firefox3.6.14

Update also includes all packages depending on gecko-libs rebuilt against new version of Firefox / XULRunner.
--------------------------------------------------------------------------------
ChangeLog:

* Tue Mar  1 2011 Jan Horak <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 2.25.3-27.1
- Rebuild against newer gecko
* Thu Dec  9 2010 Jan Horak <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 2.25.3-26.1
- Rebuild against newer gecko
* Thu Oct 28 2010 Jan Horak <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 2.25.3-25.1
- Rebuild against newer gecko
* Tue Oct 19 2010 Jan Horak <Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.> - 2.25.3-24.1
- Rebuild against newer gecko
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use
su -c 'yum update gnome-python2-extras' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list
Ova e-mail adresa je zaštićena od spambota. Potrebno je omogućiti JavaScript da je vidite.
https://admin.fedoraproject.org/mailman/listinfo/package-announce

Idi na vrh