Fedora Legacy Test Update Notification: netpbm

Dominic Hargreaves dom at earth.li
Mon Oct 4 09:54:25 UTC 2004


---------------------------------------------------------------------
Fedora Test Update Notification
FEDORALEGACY-2004-1257
Bugzilla https://bugzilla.fedora.us/show_bug.cgi?id=1257
2004-10-04
---------------------------------------------------------------------
 
Name          : netbpm
Version (7.3) : 9.24-9.73.4.legacy
Version (9)   : 9.24-10.90.3.legacy
Summary       : A library for handling different graphics file formats.
Description   :
The netpbm package contains a library of functions that support
programs for handling various graphics file formats, including .pbm
(portable bitmaps), .pgm (portable graymaps), .pnm (portable anymaps),
.ppm (portable pixmaps), and others.

---------------------------------------------------------------------
Update Information:
 
Updated NetPBM packages are available that fix a number of temporary file
vulnerabilities in the netpbm libraries.

The netpbm package contains a library of functions that support
programs for handling various graphics file formats, including .pbm
(portable bitmaps), .pgm (portable graymaps), .pnm (portable anymaps),
.ppm (portable pixmaps), and others.

A number of temporary file bugs have been found in versions of NetPBM.
These could make it possible for a local user to overwrite or create files
as a different user who happens to run one of the the vulnerable utilities.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2003-0924 to this issue.

---------------------------------------------------------------------
7.3 Changelog:

* Sun Jun 27 2004 John Dalbec <jpdalbec at ysu.edu> 9.24-10.90.3.legacy

- Changed BuildPrereq to BuildRequires
- Added missing BuildRequires: flex

* Fri Jun 11 2004 Marc Deslauriers <marcdeslauriers at videotron.ca> 9.24-10.90.2.l
egacy

- Added security patches for CAN-2003-0924

9 Changelog:

* Sun Jun 27 2004 John Dalbec <jpdalbec at ysu.edu> 9.24-9.73.4.legacy

- Changed BuildPrereq to BuildRequires
- Added missing BuildRequires: flex

* Fri Jun 11 2004 Marc Deslauriers <marcdeslauriers at videotron.ca> 9.24-9.73.3.le
gacy

- Added security patches for CAN-2003-0924

---------------------------------------------------------------------
This update can be downloaded from:
  http://download.fedoralegacy.org/redhat/

79c8c3e9e4ef5c60eb0dd243b38775cb24c49e18  7.3/updates-testing/SRPMS/netpbm-9.24-9.73.4.legacy.src.rpm
4a0e11ad855172ce86042d0f85991b6f28f4811b  7.3/updates-testing/i386/netpbm-9.24-9.73.4.legacy.i386.rpm
d69d449139408cf50de7557f38fd9f3a3f86b4c3  7.3/updates-testing/i386/netpbm-devel-9.24-9.73.4.legacy.i386.rpm
173fa566ed92e222581817c4326b3dd501f24313  7.3/updates-testing/i386/netpbm-progs-9.24-9.73.4.legacy.i386.rpm
729fd0be3b7f6ff031436cd8a563edbc57b76ad6  9/updates-testing/SRPMS/netpbm-9.24-10.90.3.legacy.src.rpm
ac5ee4489c0632057ef6d9844ad2c935e5754053  9/updates-testing/i386/netpbm-9.24-10.90.3.legacy.i386.rpm
0d59209ef7e8e4d7630d8f23c372f01adeddeea5  9/updates-testing/i386/netpbm-devel-9.24-10.90.3.legacy.i386.rpm
8076a88d1c299a80db24e7559d0ea6853e6520b9  9/updates-testing/i386/netpbm-progs-9.24-10.90.3.legacy.i386.rpm
 
Please note that this update is also available via yum and apt through the 
updates-testing channel.  Many people find this an easier way to apply 
updates.
---------------------------------------------------------------------
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
URL: <http://listman.redhat.com/archives/fedora-legacy-list/attachments/20041004/b66abcb3/attachment.sig>


More information about the fedora-legacy-list mailing list