You are here
Home > Preporuke > Ranjivost programskog paketa konversation

Ranjivost programskog paketa konversation

  • Detalji os-a: FED
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2014-13791
2014-10-28 05:18:40
——————————————————————————–

Name : konversation
Product : Fedora 20
Version : 1.5.1
Release : 1.fc20
URL : http://konversation.kde.org/
Summary : A user friendly IRC client
Description :
A simple and easy to use IRC client with support for
strikeout; multi-channel joins; away / unaway messages;
ignore list functionality; support for foreign
language characters; auto-connect to server; optional timestamps
to chat windows; configurable background colors and much more

——————————————————————————–
Update Information:

Konversation 1.5.1 is a maintenance release containing only bug fixes. The included changes address several minor behavioral defects and a low-risk DoS security defect in the Blowfish ECB support.

See also:
https://konversation.kde.org/
——————————————————————————–
ChangeLog:

* Tue Nov 4 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5.1-1
– 1.5.1
* Mon Nov 3 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-8
– Connection to TLS-only server does not work (kde#340396)
* Wed Oct 29 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-7
– add update-desktop-database scriptlets
* Mon Oct 27 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-6
– pull in 1.5 branch fixes, including… out-of-bounds read flaw (#1157342,1156418)
* Sun Aug 17 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> – 1.5-5
– Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Thu Jun 19 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-4
– .spec cleanup
* Sun Jun 8 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> – 1.5-3
– Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Thu May 1 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-2
– Requires: kde-runtime
* Tue Jan 14 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-1
– 1.5(final)
* Wed Jan 8 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-0.7.rc2
– 1.5-rc2
——————————————————————————–
References:

[ 1 ] Bug #1156418 – CVE-2014-8483 quassel, konversation: out-of-bounds read on a heap-allocated array
https://bugzilla.redhat.com/show_bug.cgi?id=1156418
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update konversation’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2014-13702
2014-10-28 05:13:48
——————————————————————————–

Name : konversation
Product : Fedora 19
Version : 1.5.1
Release : 1.fc19
URL : http://konversation.kde.org/
Summary : A user friendly IRC client
Description :
A simple and easy to use IRC client with support for
strikeout; multi-channel joins; away / unaway messages;
ignore list functionality; support for foreign
language characters; auto-connect to server; optional timestamps
to chat windows; configurable background colors and much more

——————————————————————————–
Update Information:

Konversation 1.5.1 is a maintenance release containing only bug fixes. The included changes address several minor behavioral defects and a low-risk DoS security defect in the Blowfish ECB support.

See also:
https://konversation.kde.org/
——————————————————————————–
ChangeLog:

* Tue Nov 4 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5.1-1
– 1.5.1
* Mon Nov 3 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-8
– Connection to TLS-only server does not work (kde#340396)
* Wed Oct 29 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-7
– add update-desktop-database scriptlets
* Mon Oct 27 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-6
– pull in 1.5 branch fixes, including… out-of-bounds read flaw (#1157342,1156418)
* Sun Aug 17 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> – 1.5-5
– Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Thu Jun 19 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-4
– .spec cleanup
* Sun Jun 8 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> – 1.5-3
– Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Thu May 1 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-2
– Requires: kde-runtime
* Tue Jan 14 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-1
– 1.5(final)
* Wed Jan 8 2014 Rex Dieter <rdieter@fedoraproject.org> 1.5-0.7.rc2
– 1.5-rc2
* Sun Sep 29 2013 Rex Dieter <rdieter@fedoraproject.org> 1.5-0.6.20130929
– 20130929 snapshot
* Sat Aug 3 2013 Petr Pisar <ppisar@redhat.com> – 1.5-0.5.20130730
– Perl 5.18 rebuild
* Tue Jul 30 2013 Rex Dieter <rdieter@fedoraproject.org> 1.5-0.4.20130730
– 20130730 snapshot
* Wed Jul 17 2013 Petr Pisar <ppisar@redhat.com> – 1.5-0.3.20130607
– Perl 5.18 rebuild
* Fri Jun 7 2013 Rex Dieter <rdieter@fedoraproject.org> 1.5-0.2.20130607
– 20130607 snapshot
* Sat Mar 16 2013 Rex Dieter <rdieter@fedoraproject.org> 1.5-0.1.rc1
– 1.5-rc1
——————————————————————————–
References:

[ 1 ] Bug #1156418 – CVE-2014-8483 quassel, konversation: out-of-bounds read on a heap-allocated array
https://bugzilla.redhat.com/show_bug.cgi?id=1156418
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update konversation’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce
7e

AutorTomislav Protega
Cert idNCERT-REF-2014-11-0002-ADV
CveCVE-2014-8483
ID izvornikaFEDORA-2014-13791 FEDORA-2014-13702
Proizvodkonversation
Izvorhttp://www.redhat.com
Top
More in Preporuke
Ranjivost programskog paketa kde-workspace

Otkrivena je ranjivost u programskom paketu kde-workspace za Fedoru. Ranjivost je pronađena u KDE Clock KCM polkit helper programu. Kako...

Close