Fedora Legacy Test Update Notification: netpbm
Dominic Hargreaves
dom at earth.li
Mon Oct 4 09:54:25 UTC 2004
---------------------------------------------------------------------
Fedora Test Update Notification
FEDORALEGACY-2004-1257
Bugzilla https://bugzilla.fedora.us/show_bug.cgi?id=1257
2004-10-04
---------------------------------------------------------------------
Name : netbpm
Version (7.3) : 9.24-9.73.4.legacy
Version (9) : 9.24-10.90.3.legacy
Summary : A library for handling different graphics file formats.
Description :
The netpbm package contains a library of functions that support
programs for handling various graphics file formats, including .pbm
(portable bitmaps), .pgm (portable graymaps), .pnm (portable anymaps),
.ppm (portable pixmaps), and others.
---------------------------------------------------------------------
Update Information:
Updated NetPBM packages are available that fix a number of temporary file
vulnerabilities in the netpbm libraries.
The netpbm package contains a library of functions that support
programs for handling various graphics file formats, including .pbm
(portable bitmaps), .pgm (portable graymaps), .pnm (portable anymaps),
.ppm (portable pixmaps), and others.
A number of temporary file bugs have been found in versions of NetPBM.
These could make it possible for a local user to overwrite or create files
as a different user who happens to run one of the the vulnerable utilities.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2003-0924 to this issue.
---------------------------------------------------------------------
7.3 Changelog:
* Sun Jun 27 2004 John Dalbec <jpdalbec at ysu.edu> 9.24-10.90.3.legacy
- Changed BuildPrereq to BuildRequires
- Added missing BuildRequires: flex
* Fri Jun 11 2004 Marc Deslauriers <marcdeslauriers at videotron.ca> 9.24-10.90.2.l
egacy
- Added security patches for CAN-2003-0924
9 Changelog:
* Sun Jun 27 2004 John Dalbec <jpdalbec at ysu.edu> 9.24-9.73.4.legacy
- Changed BuildPrereq to BuildRequires
- Added missing BuildRequires: flex
* Fri Jun 11 2004 Marc Deslauriers <marcdeslauriers at videotron.ca> 9.24-9.73.3.le
gacy
- Added security patches for CAN-2003-0924
---------------------------------------------------------------------
This update can be downloaded from:
http://download.fedoralegacy.org/redhat/
79c8c3e9e4ef5c60eb0dd243b38775cb24c49e18 7.3/updates-testing/SRPMS/netpbm-9.24-9.73.4.legacy.src.rpm
4a0e11ad855172ce86042d0f85991b6f28f4811b 7.3/updates-testing/i386/netpbm-9.24-9.73.4.legacy.i386.rpm
d69d449139408cf50de7557f38fd9f3a3f86b4c3 7.3/updates-testing/i386/netpbm-devel-9.24-9.73.4.legacy.i386.rpm
173fa566ed92e222581817c4326b3dd501f24313 7.3/updates-testing/i386/netpbm-progs-9.24-9.73.4.legacy.i386.rpm
729fd0be3b7f6ff031436cd8a563edbc57b76ad6 9/updates-testing/SRPMS/netpbm-9.24-10.90.3.legacy.src.rpm
ac5ee4489c0632057ef6d9844ad2c935e5754053 9/updates-testing/i386/netpbm-9.24-10.90.3.legacy.i386.rpm
0d59209ef7e8e4d7630d8f23c372f01adeddeea5 9/updates-testing/i386/netpbm-devel-9.24-10.90.3.legacy.i386.rpm
8076a88d1c299a80db24e7559d0ea6853e6520b9 9/updates-testing/i386/netpbm-progs-9.24-10.90.3.legacy.i386.rpm
Please note that this update is also available via yum and apt through the
updates-testing channel. Many people find this an easier way to apply
updates.
---------------------------------------------------------------------
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
URL: <http://listman.redhat.com/archives/fedora-legacy-list/attachments/20041004/b66abcb3/attachment.sig>
More information about the fedora-legacy-list
mailing list