You are here
Home > Preporuke > Sigurnosni nedostaci Horde softvera

Sigurnosni nedostaci Horde softvera

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2015-11287
2015-07-10 16:34:10
——————————————————————————–

Name : php-horde-Horde-Auth
Product : Fedora 21
Version : 2.1.10
Release : 1.fc21
URL : http://pear.horde.org
Summary : Horde Authentication API
Description :
The Horde_Auth package provides a common interface into the various
backends for the Horde authentication system.

——————————————————————————–
Update Information:

**Horde_Form 2.0.10**
* [jan] SECURITY: Fixed XSS in form renderer.

**Horde_Icalendar 2.1.1**
* [jan] Fix generated VALARM TRIGGER attributes with empty duration (Ralf Becker).

**Horde_Auth 2.1.10**
* [jan] SECURITY: Don’t allow to login to LDAP with an emtpy password.

**Horde_Core 2.20.6**
* [jan] SECURITY: Don’t allow to login with an emtpy password.
* [jan] Give administrators access to all groups, even with $conf[‘share’][‘any_group’] disabled.

——————————————————————————–
ChangeLog:

* Tue Jul 7 2015 Remi Collet <remi@fedoraproject.org> – 2.1.10-1
– Update to 2.1.10
* Mon Jun 29 2015 Remi Collet <remi@fedoraproject.org> – 2.1.9-1
– Update to 2.1.9
* Tue Apr 28 2015 Remi Collet <remi@fedoraproject.org> – 2.1.8-1
– Update to 2.1.8
* Tue Apr 14 2015 Remi Collet <remi@fedoraproject.org> – 2.1.7-1
– Update to 2.1.7
– add provides php-composer(horde/horde-auth)
– add dependency on Horde_Translation 2.2.0
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update php-horde-Horde-Auth’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2015-11287
2015-07-10 16:34:10
——————————————————————————–

Name : php-horde-Horde-Core
Product : Fedora 21
Version : 2.20.6
Release : 1.fc21
URL : http://pear.horde.org
Summary : Horde Core Framework libraries
Description :
These classes provide the core functionality of the Horde Application
Framework.

——————————————————————————–
Update Information:

**Horde_Form 2.0.10**
* [jan] SECURITY: Fixed XSS in form renderer.

**Horde_Icalendar 2.1.1**
* [jan] Fix generated VALARM TRIGGER attributes with empty duration (Ralf Becker).

**Horde_Auth 2.1.10**
* [jan] SECURITY: Don’t allow to login to LDAP with an emtpy password.

**Horde_Core 2.20.6**
* [jan] SECURITY: Don’t allow to login with an emtpy password.
* [jan] Give administrators access to all groups, even with $conf[‘share’][‘any_group’] disabled.

——————————————————————————–
ChangeLog:

* Tue Jul 7 2015 Remi Collet <remi@fedoraproject.org> – 2.20.6-1
– Update to 2.20.6
* Fri Jun 12 2015 Remi Collet <remi@fedoraproject.org> – 2.20.5-1
– Update to 2.20.5
* Tue Jun 2 2015 Remi Collet <remi@fedoraproject.org> – 2.20.4-1
– Update to 2.20.4
* Fri May 29 2015 Remi Collet <remi@fedoraproject.org> – 2.20.3-1
– Update to 2.20.3
* Tue May 19 2015 Remi Collet <remi@fedoraproject.org> – 2.20.2-1
– Update to 2.20.2
* Tue May 19 2015 Remi Collet <remi@fedoraproject.org> – 2.20.1-1
– Update to 2.20.1
* Tue Apr 28 2015 Remi Collet <remi@fedoraproject.org> – 2.20.0-1
– Update to 2.20.0
* Wed Mar 4 2015 Remi Collet <remi@fedoraproject.org> – 2.19.2-1
– Update to 2.19.2
* Tue Mar 3 2015 Remi Collet <remi@fedoraproject.org> – 2.19.1-1
– Update to 2.19.1
* Wed Feb 11 2015 Remi Collet <remi@fedoraproject.org> – 2.19.0-1
– Update to 2.19.0
* Fri Jan 9 2015 Remi Collet <remi@fedoraproject.org> – 2.18.3-1
– Update to 2.18.3
– add provides php-composer(horde/horde-core)
* Tue Jan 6 2015 Remi Collet <remi@fedoraproject.org> – 2.18.1-1
– Update to 2.18.1
* Mon Dec 29 2014 Remi Collet <remi@fedoraproject.org> – 2.18.0-1
– Update to 2.18.0
* Tue Dec 16 2014 Remi Collet <remi@fedoraproject.org> – 2.17.2-1
– Update to 2.17.2
* Tue Nov 25 2014 Remi Collet <remi@fedoraproject.org> – 2.17.1-1
– Update to 2.17.1
* Sun Nov 23 2014 Remi Collet <remi@fedoraproject.org> – 2.17.0-1
– Update to 2.17.0
– raise dependency on Horde_Mime >= 2.5.0
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update php-horde-Horde-Core’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2015-11287
2015-07-10 16:34:10
——————————————————————————–

Name : php-horde-Horde-Form
Product : Fedora 21
Version : 2.0.10
Release : 1.fc21
URL : http://pear.horde.org
Summary : Horde Form API
Description :
The Horde_Form package provides form rendering, validation, and other
functionality for the Horde Application Framework.

——————————————————————————–
Update Information:

**Horde_Form 2.0.10**
* [jan] SECURITY: Fixed XSS in form renderer.

**Horde_Icalendar 2.1.1**
* [jan] Fix generated VALARM TRIGGER attributes with empty duration (Ralf Becker).

**Horde_Auth 2.1.10**
* [jan] SECURITY: Don’t allow to login to LDAP with an emtpy password.

**Horde_Core 2.20.6**
* [jan] SECURITY: Don’t allow to login with an emtpy password.
* [jan] Give administrators access to all groups, even with $conf[‘share’][‘any_group’] disabled.

——————————————————————————–
ChangeLog:

* Mon Jul 6 2015 Remi Collet <remi@fedoraproject.org> – 2.0.10-1
– Update to 2.0.10
– add provides php-composer(horde/horde-form)
– raise dependency on Horde_Translation 2.2.0
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update php-horde-Horde-Form’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2015-11287
2015-07-10 16:34:10
——————————————————————————–

Name : php-horde-Horde-Icalendar
Product : Fedora 21
Version : 2.1.1
Release : 1.fc21
URL : http://pear.horde.org
Summary : iCalendar API
Description :
An API for dealing with iCalendar data.

——————————————————————————–
Update Information:

**Horde_Form 2.0.10**
* [jan] SECURITY: Fixed XSS in form renderer.

**Horde_Icalendar 2.1.1**
* [jan] Fix generated VALARM TRIGGER attributes with empty duration (Ralf Becker).

**Horde_Auth 2.1.10**
* [jan] SECURITY: Don’t allow to login to LDAP with an emtpy password.

**Horde_Core 2.20.6**
* [jan] SECURITY: Don’t allow to login with an emtpy password.
* [jan] Give administrators access to all groups, even with $conf[‘share’][‘any_group’] disabled.

——————————————————————————–
ChangeLog:

* Mon Jul 6 2015 Remi Collet <remi@fedoraproject.org> – 2.1.1-1
– Update to 2.1.1
* Thu Jun 18 2015 Remi Collet <remi@fedoraproject.org> – 2.1.0-1
– Update to 2.1.0
* Tue Apr 28 2015 Remi Collet <remi@fedoraproject.org> – 2.0.11-1
– Update to 2.0.11
– add provides php-composer(horde/horde-icalendar)
* Tue Nov 25 2014 Remi Collet <remi@fedoraproject.org> – 2.0.10-1
– Update to 2.0.10
* Tue Nov 25 2014 Remi Collet <remi@fedoraproject.org> – 2.0.9-2
– add upstream patch (thanks Koschei)
– drop dependency on Horde_Mime
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update php-horde-Horde-Icalendar’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2015-11261
2015-07-10 16:32:56
——————————————————————————–

Name : php-horde-Horde-Auth
Product : Fedora 22
Version : 2.1.10
Release : 1.fc22
URL : http://pear.horde.org
Summary : Horde Authentication API
Description :
The Horde_Auth package provides a common interface into the various
backends for the Horde authentication system.

——————————————————————————–
Update Information:

**Horde_Form 2.0.10**
* [jan] SECURITY: Fixed XSS in form renderer.

**Horde_Icalendar 2.1.1**
* [jan] Fix generated VALARM TRIGGER attributes with empty duration (Ralf Becker).

**Horde_Auth 2.1.10**
* [jan] SECURITY: Don’t allow to login to LDAP with an emtpy password.

**Horde_Core 2.20.6**
* [jan] SECURITY: Don’t allow to login with an emtpy password.
* [jan] Give administrators access to all groups, even with $conf[‘share’][‘any_group’] disabled.

——————————————————————————–
ChangeLog:

* Tue Jul 7 2015 Remi Collet <remi@fedoraproject.org> – 2.1.10-1
– Update to 2.1.10
* Mon Jun 29 2015 Remi Collet <remi@fedoraproject.org> – 2.1.9-1
– Update to 2.1.9
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update php-horde-Horde-Auth’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2015-11261
2015-07-10 16:32:56
——————————————————————————–

Name : php-horde-Horde-Core
Product : Fedora 22
Version : 2.20.6
Release : 1.fc22
URL : http://pear.horde.org
Summary : Horde Core Framework libraries
Description :
These classes provide the core functionality of the Horde Application
Framework.

——————————————————————————–
Update Information:

**Horde_Form 2.0.10**
* [jan] SECURITY: Fixed XSS in form renderer.

**Horde_Icalendar 2.1.1**
* [jan] Fix generated VALARM TRIGGER attributes with empty duration (Ralf Becker).

**Horde_Auth 2.1.10**
* [jan] SECURITY: Don’t allow to login to LDAP with an emtpy password.

**Horde_Core 2.20.6**
* [jan] SECURITY: Don’t allow to login with an emtpy password.
* [jan] Give administrators access to all groups, even with $conf[‘share’][‘any_group’] disabled.

——————————————————————————–
ChangeLog:

* Tue Jul 7 2015 Remi Collet <remi@fedoraproject.org> – 2.20.6-1
– Update to 2.20.6
* Fri Jun 12 2015 Remi Collet <remi@fedoraproject.org> – 2.20.5-1
– Update to 2.20.5
* Tue Jun 2 2015 Remi Collet <remi@fedoraproject.org> – 2.20.4-1
– Update to 2.20.4
* Fri May 29 2015 Remi Collet <remi@fedoraproject.org> – 2.20.3-1
– Update to 2.20.3
* Tue May 19 2015 Remi Collet <remi@fedoraproject.org> – 2.20.2-1
– Update to 2.20.2
* Tue May 19 2015 Remi Collet <remi@fedoraproject.org> – 2.20.1-1
– Update to 2.20.1
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update php-horde-Horde-Core’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2015-11261
2015-07-10 16:32:56
——————————————————————————–

Name : php-horde-Horde-Form
Product : Fedora 22
Version : 2.0.10
Release : 1.fc22
URL : http://pear.horde.org
Summary : Horde Form API
Description :
The Horde_Form package provides form rendering, validation, and other
functionality for the Horde Application Framework.

——————————————————————————–
Update Information:

**Horde_Form 2.0.10**
* [jan] SECURITY: Fixed XSS in form renderer.

**Horde_Icalendar 2.1.1**
* [jan] Fix generated VALARM TRIGGER attributes with empty duration (Ralf Becker).

**Horde_Auth 2.1.10**
* [jan] SECURITY: Don’t allow to login to LDAP with an emtpy password.

**Horde_Core 2.20.6**
* [jan] SECURITY: Don’t allow to login with an emtpy password.
* [jan] Give administrators access to all groups, even with $conf[‘share’][‘any_group’] disabled.

——————————————————————————–
ChangeLog:

* Mon Jul 6 2015 Remi Collet <remi@fedoraproject.org> – 2.0.10-1
– Update to 2.0.10
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update php-horde-Horde-Form’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2015-11261
2015-07-10 16:32:56
——————————————————————————–

Name : php-horde-Horde-Icalendar
Product : Fedora 22
Version : 2.1.1
Release : 1.fc22
URL : http://pear.horde.org
Summary : iCalendar API
Description :
An API for dealing with iCalendar data.

——————————————————————————–
Update Information:

**Horde_Form 2.0.10**
* [jan] SECURITY: Fixed XSS in form renderer.

**Horde_Icalendar 2.1.1**
* [jan] Fix generated VALARM TRIGGER attributes with empty duration (Ralf Becker).

**Horde_Auth 2.1.10**
* [jan] SECURITY: Don’t allow to login to LDAP with an emtpy password.

**Horde_Core 2.20.6**
* [jan] SECURITY: Don’t allow to login with an emtpy password.
* [jan] Give administrators access to all groups, even with $conf[‘share’][‘any_group’] disabled.

——————————————————————————–
ChangeLog:

* Mon Jul 6 2015 Remi Collet <remi@fedoraproject.org> – 2.1.1-1
– Update to 2.1.1
* Thu Jun 18 2015 Remi Collet <remi@fedoraproject.org> – 2.1.0-1
– Update to 2.1.0
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update php-horde-Horde-Icalendar’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

AutorMarijo Plepelic
Cert idNCERT-REF-2015-07-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa bind

Otkriveni su sigurnosni nedostaci u programskom paketu bind za HP-UX. Jedan od nedostataka uzrokovan je neispravnom obradom određenih podataka zone...

Close