You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa diffoscope

Sigurnosni nedostaci programskog paketa diffoscope

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2017-33cb46c6b0
2017-02-22 13:27:29.728588
——————————————————————————–

Name : diffoscope
Product : Fedora 24
Version : 77
Release : 1.fc24
URL : https://diffoscope.org/
Summary : In-depth comparison of files, archives, and directories
Description :
diffoscope will try to get to the bottom of what makes files or directories
different. It will recursively unpack archives of many kinds and transform
various binary formats into more human readable form to compare them. It can
compare two tarballs, ISO images, or PDF just as easily. The differences can
be shown in a text or HTML report.

diffoscope is developed as part of the “reproducible builds” Debian project and
was formerly known as “debbindiff”.

——————————————————————————–
Update Information:

Update to the latest version, fixes a security issue.
——————————————————————————–
References:

[ 1 ] Bug #1421774 – CVE-2017-0359 diffoscope: writes to arbitrary locations on disk based on the contents of an untrusted archive [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1421774
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade diffoscope’ at the command line.
For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

——————————————————————————–
Fedora Update Notification
FEDORA-2017-101722eb25
2017-02-22 13:27:06.013537
——————————————————————————–

Name : diffoscope
Product : Fedora 25
Version : 77
Release : 1.fc25
URL : https://diffoscope.org/
Summary : In-depth comparison of files, archives, and directories
Description :
diffoscope will try to get to the bottom of what makes files or directories
different. It will recursively unpack archives of many kinds and transform
various binary formats into more human readable form to compare them. It can
compare two tarballs, ISO images, or PDF just as easily. The differences can
be shown in a text or HTML report.

diffoscope is developed as part of the “reproducible builds” Debian project and
was formerly known as “debbindiff”.

——————————————————————————–
Update Information:

Update to the latest version, fixes a security issue.
——————————————————————————–
References:

[ 1 ] Bug #1421774 – CVE-2017-0359 diffoscope: writes to arbitrary locations on disk based on the contents of an untrusted archive [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=1421774
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade diffoscope’ at the command line.
For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

AutorVlatka Misic
Cert idNCERT-REF-2017-02-0166-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa linux

Otkriveni su sigurnosni nedostaci u programskom paketu linux za operacijski sustav Debian. Otkriveni nedostaci potencijalnim napadačima omogućuju stjecanje uvećanih ovlasti,...

Close