[SECURITY] Fedora 8 Update: liferea-1.4.8-1.fc8

updates at fedoraproject.org updates at fedoraproject.org
Thu Nov 29 01:42:47 UTC 2007


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2007-3701
2007-11-29 01:42:44.767756
--------------------------------------------------------------------------------

Name        : liferea
Product     : Fedora 8
Version     : 1.4.8
Release     : 1.fc8
URL         : http://liferea.sourceforge.net/
Summary     : An RSS/RDF feed reader
Description :
Liferea (Linux Feed Reader) is an RSS/RDF feed reader.
It's intended to be a clone of the Windows-only FeedReader.
It can be used to maintain a list of subscribed feeds,
browse through their items, and show their contents.

--------------------------------------------------------------------------------
Update Information:

Update to stable 1.4.x, and fixes CVE-2005-4791
--------------------------------------------------------------------------------
ChangeLog:

* Thu Nov 22 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.4.8-1
- Update to 1.4.8.
- fixes LD_LIBRARY_PATH security bug. CVE-2006-4791
* Thu Nov 15 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.4.7-1
- Update to 1.4.7.
- Drop opml & nm patches. fixed upstream.
- Update fedora feed patch for 1.4.x.
- add BR on sqlite-devel, dbus-devel, dbus-glib-devel, libglade2-devel.
- Don't build gtkhtml2 plugin for now.
* Tue Nov  6 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.23-6
- Rebuild for new gecko libs.
* Wed Oct 31 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.23-5
- Add patch to fix opml security bug: CVE-2007-5751. (#360641)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #393301 - CVE-2005-4791 liferea might include include CWD in LD_LIBRARY_PATH [f8]
        https://bugzilla.redhat.com/show_bug.cgi?id=393301
  [ 2 ] Bug #366421 - Liferea 1.4.x is now stable
        https://bugzilla.redhat.com/show_bug.cgi?id=366421
--------------------------------------------------------------------------------
Updated packages:

18d663f2be743581a1614b73b86c36d7160d5d36 liferea-1.4.8-1.fc8.ppc64.rpm
e1917a5fadb403a57a131e6145954cb951a5e6c9 liferea-debuginfo-1.4.8-1.fc8.ppc64.rpm
b8a7755711e3d20667d01b3f08e6bb5f46ef1cd2 liferea-1.4.8-1.fc8.i386.rpm
ce5ded6faf03ba4d072e8d4a3299f0280dd24049 liferea-debuginfo-1.4.8-1.fc8.i386.rpm
9f943e7da4853a9739b9a3a476d7facda8efd542 liferea-1.4.8-1.fc8.x86_64.rpm
49acae362d65dc5e224c23685627bfb3b350dfc4 liferea-debuginfo-1.4.8-1.fc8.x86_64.rpm
69d1f80def315c0f81b7aaba61670eb1c420222d liferea-1.4.8-1.fc8.ppc.rpm
97fafb78f9aeaf81c8bb2d8c4552d9cf5a7ae0b9 liferea-debuginfo-1.4.8-1.fc8.ppc.rpm
066ef3139ae7dce4c2e98ba3d0bcaa1a4161bfc4 liferea-1.4.8-1.fc8.src.rpm

This update can be installed with the "yum" update program.  Use 
su -c 'yum update liferea' 
at the command line.  For more information, refer to "Managing Software
with yum", available at http://docs.fedoraproject.org/yum/.
--------------------------------------------------------------------------------




More information about the Fedora-package-announce mailing list