You are here
Home > Preporuke > Sigurnosni nedostatak programskog paketa mingw-gnutls

Sigurnosni nedostatak programskog paketa mingw-gnutls

——————————————————————————–
Fedora Update Notification
FEDORA-2014-2565
2014-02-15 05:33:09
——————————————————————————–

Name : mingw-gnutls
Product : Fedora 19
Version : 3.1.21
Release : 1.fc19
URL : http://www.gnutls.org/
Summary : MinGW GnuTLS TLS/SSL encryption library
Description :
GnuTLS TLS/SSL encryption library. This library is cross-compiled
for MinGW.

——————————————————————————–
Update Information:

Version 3.1.21 (released 2014-02-13)

* libgnutls: Tolerate servers that sent the SUPPORTED ECC extension.

* libgnutls: Reduced the TLS and DTLS version requirements for all ciphersuites that are not GCM.

* libgnutls: When two initial keywords are specified then treat the second as having the ‘+’ modifier.

* libgnutls: Fixed bug that prevented the rejection of v1 intermediate CA certificates. Reported and investigated by Suman Jana.
——————————————————————————–
ChangeLog:

* Thu Feb 13 2014 Michael Cronenworth <mike@cchtml.com> – 3.1.21-1
– Update to 3.1.21
* Sun Jan 26 2014 Michael Cronenworth <mike@cchtml.com> – 3.1.18-1
– Update to 3.1.18
* Thu Nov 7 2013 Michael Cronenworth <mike@cchtml.com> – 3.1.16-1
– Update to 3.1.16
* Tue Oct 29 2013 Michael Cronenworth <mike@cchtml.com> – 3.1.15-1
– Update to 3.1.15
– Enable ECC NIST Suite B curves
* Sun Sep 22 2013 Michael Cronenworth <mike@cchtml.com> – 3.1.13-1
– Update to 3.1.13
* Sat Aug 3 2013 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> – 3.1.11-6
– Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
——————————————————————————–
References:

[ 1 ] Bug #1065092 – CVE-2014-1959 gnutls: certificate verification flaw (GNUTLS-SA-2014-1)
https://bugzilla.redhat.com/show_bug.cgi?id=1065092
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update mingw-gnutls’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2014-2583
2014-02-15 05:33:51
——————————————————————————–

Name : mingw-gnutls
Product : Fedora 20
Version : 3.1.21
Release : 1.fc20
URL : http://www.gnutls.org/
Summary : MinGW GnuTLS TLS/SSL encryption library
Description :
GnuTLS TLS/SSL encryption library. This library is cross-compiled
for MinGW.

——————————————————————————–
Update Information:

Version 3.1.21 (released 2014-02-13)

* libgnutls: Tolerate servers that sent the SUPPORTED ECC extension.

* libgnutls: Reduced the TLS and DTLS version requirements for all ciphersuites that are not GCM.

* libgnutls: When two initial keywords are specified then treat the second as having the ‘+’ modifier.

* libgnutls: Fixed bug that prevented the rejection of v1 intermediate CA certificates. Reported and investigated by Suman Jana.
——————————————————————————–
ChangeLog:

* Thu Feb 13 2014 Michael Cronenworth <mike@cchtml.com> – 3.1.21-1
– Update to 3.1.21
* Sun Jan 26 2014 Michael Cronenworth <mike@cchtml.com> – 3.1.18-1
– Update to 3.1.18
——————————————————————————–
References:

[ 1 ] Bug #1065092 – CVE-2014-1959 gnutls: certificate verification flaw (GNUTLS-SA-2014-1)
https://bugzilla.redhat.com/show_bug.cgi?id=1065092
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update mingw-gnutls’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

Top
More in Preporuke
Višestruke ranjivosti programskog paketa GnuPG

Otkrivene su višestruke ranjivosti kod programskog paketa GnuPG za Gentoo OS. Neautenticirani udaljeni napadač mogao je iskoristiti ranjivosti za izvršavanje...

Close