You are here
Home > Preporuke > Ranjivost programskog paketa sdcc

Ranjivost programskog paketa sdcc

  • Detalji os-a: FED
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2014-8510
2014-07-19 05:13:49
——————————————————————————–

Name : sdcc
Product : Fedora 20
Version : 3.3.0
Release : 1.fc20
URL : http://sdcc.sourceforge.net/
Summary : Small Device C Compiler
Description :
SDCC is a C compiler for 8051 class and similar microcontrollers.
The package includes the compiler, assemblers and linkers, a device
simulator and a core library. The processors supported (to a varying
degree) include the 8051, ds390, z80, hc08, and PIC.

——————————————————————————–
Update Information:

Security patch for libiberty
——————————————————————————–
ChangeLog:

* Wed Jul 16 2014 Roy Rankin <rrankin@ihug.com.au> – 3.3.0-1
– Security patch for libiberty
——————————————————————————–
References:

[ 1 ] Bug #1059361 – CVE-2012-3509 libiberty: integer overflow, leading to heap-buffer overflow by processing certain file headers via bfd binary [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1059361
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update sdcc’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2014-8528
2014-07-19 05:14:45
——————————————————————————–

Name : sdcc
Product : Fedora 19
Version : 3.3.0
Release : 1.fc19
URL : http://sdcc.sourceforge.net/
Summary : Small Device C Compiler
Description :
SDCC is a C compiler for 8051 class and similar microcontrollers.
The package includes the compiler, assemblers and linkers, a device
simulator and a core library. The processors supported (to a varying
degree) include the 8051, ds390, z80, hc08, and PIC.

——————————————————————————–
Update Information:

Security patch for libiberty
——————————————————————————–
ChangeLog:

* Wed Jul 16 2014 Roy Rankin <rrankin@ihug.com.au> – 3.3.0-1
– Security patch for libiberty
* Mon Sep 2 2013 Roy Rankin <rrankin@ihug.com.au> – 3.3.0-0
– Remove non-free directory tree which is not GPL compatible
– Upstream update 3.3.0
* Sun Aug 4 2013 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> – 3.2.0-5
– Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild
* Tue Jul 30 2013 Petr Machata <pmachata@redhat.com> – 3.2.0-4
– Rebuild for boost 1.54.0
——————————————————————————–
References:

[ 1 ] Bug #1059361 – CVE-2012-3509 libiberty: integer overflow, leading to heap-buffer overflow by processing certain file headers via bfd binary [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1059361
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update sdcc’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

AutorTomislav Protega
Cert idNCERT-REF-2014-08-0001-ADV
CveCVE-2012-3509
ID izvornikaFEDORA-2014-8510 FEDORA-2014-8528
Proizvodsdcc
Izvorhttp://www.redhat.com
Top
More in Preporuke
Ranjivost programskog paketa sendmail

Otkrivena je ranjivost kod paketa sendmail koja se očitovala nepravilnim zatvaranjem opisnika datoteke prije izvršavanja programa. Lokalnim korisnicima ranjivost omogućuje...

Close