[SECURITY] Fedora 13 Update: qt-4.6.2-17.fc13

updates at fedoraproject.org updates at fedoraproject.org
Sat May 15 20:35:23 UTC 2010


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2010-8423
2010-05-12 11:53:57
--------------------------------------------------------------------------------

Name        : qt
Product     : Fedora 13
Version     : 4.6.2
Release     : 17.fc13
URL         : http://www.qtsoftware.com/
Summary     : Qt toolkit
Description :
Qt is a software toolkit for developing applications.

This package contains base tools, like string, xml, and network
handling.

--------------------------------------------------------------------------------
Update Information:

- fix multiple flaws in webkit: CVE-2010-0047, CVE-2010-0648, CVE-2010-0656
--------------------------------------------------------------------------------
ChangeLog:

* Thu May  6 2010 Than Ngo <than at redhat.com> - 4.6.2-17
- bz#589169, fix multiple flaws in webkit
  CVE-2010-0047, CVE-2010-0648, CVE-2010-0656
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #570349 - CVE-2010-0046, CVE-2010-0047, CVE-2010-0048, CVE-2010-0049, CVE-2010-0050, CVE-2010-0052, CVE-2010-0053, CVE-2010-0054 qt, webkitgtk: multiple security vulnerabilities in WebKit
        https://bugzilla.redhat.com/show_bug.cgi?id=570349
  [ 2 ] Bug #568170 - CVE-2010-0648 webkit: stylesheet URL property leaks redirection target
        https://bugzilla.redhat.com/show_bug.cgi?id=568170
  [ 3 ] Bug #568188 - CVE-2010-0656 webkit: possible information disclosure via xhr for file:/// URLs
        https://bugzilla.redhat.com/show_bug.cgi?id=568188
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use 
su -c 'yum update qt' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list