[SECURITY] Fedora Core 6 Test Update: libexif-0.6.15-1.fc6

Matthias Clasen mclasen at redhat.com
Thu May 31 13:00:19 UTC 2007


---------------------------------------------------------------------
Fedora Test Update Notification
FEDORA-2007-548
2007-05-31
---------------------------------------------------------------------

Product     : Fedora Core 6
Name        : libexif
Version     : 0.6.15
Release     : 1.fc6
Summary     : Library for extracting extra information from image files
Description :
Most digital cameras produce EXIF files, which are JPEG files with
extra tags that contain information about the image. The EXIF library
allows you to parse an EXIF file and read the data from those tags.

---------------------------------------------------------------------
Update Information:

This update to the latest upstream release fixes a number of
bugs, among them a possible integer overflow in the
exif_data_load_data_entry function (CVE-2007-2645), which
allows user-assisted remote attackers to cause a denial of
service (crash) or possibly execute arbitrary code via
crafted EXIF data.
---------------------------------------------------------------------
* Wed May 30 2007 Matthias Clasen <mclasen at redhat.com> - 0.6.15-1
- Update to 0.6.15
- Drop obsolete patch
* Thu May 24 2007 Matthias Clasen <mclasen at redhat.com> - 0.6.13-4
- Add patch for CVE-2007-2645.
* Sun Feb  4 2007 Matthias Clasen <mclasen at redhat.com> - 0.6.13-3
- Package review cleanups
- Avoid multilib conflicts by using pregenerated docs

---------------------------------------------------------------------
This update can be downloaded from:
    http://download.fedora.redhat.com/pub/fedora/linux/core/updates/testing/6/

0df8d082220b5d708474f0bc7e3612bd42638d14  SRPMS/libexif-0.6.15-1.fc6.src.rpm
0df8d082220b5d708474f0bc7e3612bd42638d14  noarch/libexif-0.6.15-1.fc6.src.rpm
e97d3b85c095b653bfb30b20235f7c5f1f992db8  ppc/libexif-devel-0.6.15-1.fc6.ppc.rpm
8e6c0bc19653c1c8d898c8868a4db061193da850  ppc/libexif-0.6.15-1.fc6.ppc.rpm
a43b05518d74ce8996e243f034dd29cfdf506075  ppc/debug/libexif-debuginfo-0.6.15-1.fc6.ppc.rpm
046972d574eb427b4370a7579e83d5ea5919e681  x86_64/debug/libexif-debuginfo-0.6.15-1.fc6.x86_64.rpm
e8f0e75183570b2f3944fa95d524899c8fdf583c  x86_64/libexif-0.6.15-1.fc6.x86_64.rpm
72572f78221675d329978f8f49bf53efa811236a  x86_64/libexif-devel-0.6.15-1.fc6.x86_64.rpm
ca774e48b51aa684e258e26cfe2d0d47ab597b0b  i386/libexif-devel-0.6.15-1.fc6.i386.rpm
6acc90fdf2817ee7efe13d31f25136146dbef564  i386/libexif-0.6.15-1.fc6.i386.rpm
031d26bcd8aa4f5a3c6b8bc226f8ed5a12e60d57  i386/debug/libexif-debuginfo-0.6.15-1.fc6.i386.rpm

This update can be installed with the 'yum' update program.  Use 'yum update
package-name' at the command line.  For more information, refer to 'Managing
Software with yum,' available at http://fedora.redhat.com/docs/yum/.
---------------------------------------------------------------------




More information about the fedora-test-list mailing list