You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa xrdp

Sigurnosni nedostaci programskog paketa xrdp

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2015-11688
2015-07-17 23:25:55
——————————————————————————–

Name : xrdp
Product : Fedora 22
Version : 0.9.0
Release : 4.fc22
URL : http://xrdp.sourceforge.net/
Summary : Open source remote desktop protocol (RDP) server
Description :
The goal of this project is to provide a fully functional Linux terminal
server, capable of accepting connections from rdesktop and Microsoft’s own
terminal server / remote desktop clients.

——————————————————————————–
Update Information:

Add epoch again. New version. Close bug #1105202 again. Own /etc/xrdp/pulse directory. Reapply service file changes again. Fix sesman default configuration again.
——————————————————————————–
ChangeLog:

* Mon Jul 20 2015 Bojan Smojver <bojan@rexursive.com> – 1:0.9.0-4
– own /etc/xrdp/pulse directory
* Fri Jul 17 2015 Bojan Smojver <bojan@rexursive.com> – 1:0.9.0-3
– service files fixes and dependencies
– sesman default configuration
* Wed Jul 15 2015 Dan Horák <dan[at]danny.cz> – 1:0.9.0-2
– install epoch back to keep clean upgrade path
* Tue Jul 14 2015 Itamar Reis Peixoto <itamar@ispbrasil.com.br> – 0.9.0-1
– upgrade to 0.9.0
* Fri Jun 19 2015 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> – 1:0.6.1-11
– Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild
* Thu Jun 4 2015 Bojan Smojver <bojan@rexursive.com> – 1:0.6.1-10
– remove -ac from X server calls: bug #1105202
– put other sesman.ini changes into a patch
* Fri May 15 2015 Bojan Smojver <bojan@rexursive.com> – 1:0.6.1-9
– hopefully better service dependencies
——————————————————————————–
References:

[ 1 ] Bug #1194215 – xrdp: denial of service when validating user accounts against plain passwd files/via shadow-utils [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1194215
[ 2 ] Bug #1194214 – xrdp: denial of service when validating user accounts against plain passwd files/via shadow-utils [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1194214
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update xrdp’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

AutorMarko Stanec
Cert idNCERT-REF-2015-07-0034-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa sqlite3

Otkriveni su sigurnosni nedostaci u programskom paketu sqlite3 za operacijski sustav Ubuntu. Otkriveni nedostaci potencijalnim napadačima omogućuju izvođenje napada uskraćivanja...

Close