[SECURITY] Fedora 7 Update: liferea-1.4.8-1.fc7

updates at fedoraproject.org updates at fedoraproject.org
Thu Nov 29 01:36:52 UTC 2007


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2007-3733
2007-11-29 01:36:49.706247
--------------------------------------------------------------------------------

Name        : liferea
Product     : Fedora 7
Version     : 1.4.8
Release     : 1.fc7
URL         : http://liferea.sourceforge.net/
Summary     : An RSS/RDF feed reader
Description :
Liferea (Linux Feed Reader) is an RSS/RDF feed reader.
It's intended to be a clone of the Windows-only FeedReader.
It can be used to maintain a list of subscribed feeds,
browse through their items, and show their contents.

--------------------------------------------------------------------------------
Update Information:

Update to 1.4.8, and fixes LD_LIBRARY_PATH security bug. CVE-2006-4791
--------------------------------------------------------------------------------
ChangeLog:

* Fri Nov 23 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.4.8-1
- Update to 1.4.8.
- fixes LD_LIBRARY_PATH security bug. CVE-2006-4791 (#393311)
- Drop opml patch fixed upstreamer.
- Update Fedora feed patch.
* Tue Nov  6 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.23-5
- Update for new gecko libs.
* Wed Oct 31 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.23-4
- Add patch to fix opml security bug: CVE-2007-5751. (#360641)
* Wed Oct 24 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.23-3
- Acutually use the correct version of gecko-libs.
* Wed Oct 24 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.23-2
- Rebuild against new gecko-libs.
* Sat Sep  8 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.23-1
- Update to 1.2.23.
* Sun Aug  5 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.19-4
- Update license tag.
* Wed Jul 18 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.19-3
- Rebuild for new gecko-libs 1.8.1.5.
* Tue Jul  3 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.19-2
- Bump.
* Tue Jul  3 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.19-1
- Update to 1.2.19.
- Release fix http auth bug. (#231073)
* Tue Jun 26 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.17-1
- Update to 1.2.17.
* Tue Jun  5 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.16b-1
- Update to 1.2.16b.
* Sun Jun  3 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.15b-1
- Update to 1.2.15b.
- Drop cpu timer patch, fixed upstream.
* Thu May 31 2007 Brian Pepple <bpepple at fedoraproject.org> - 1.2.10c-3
- Rebuild for new gecko.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #393291 - CVE-2005-4791 liferea might include include CWD in LD_LIBRARY_PATH [f7]
        https://bugzilla.redhat.com/show_bug.cgi?id=393291
--------------------------------------------------------------------------------
Updated packages:

7d70d4d53654566bb49b71800bba80827a8447c8 liferea-1.4.8-1.fc7.ppc64.rpm
ad575a6bd9fbbe1c6528c239deab4a9b8f822cea liferea-debuginfo-1.4.8-1.fc7.ppc64.rpm
f41dcd639ca00c069a57fa8eff2a854e6d84d2b6 liferea-1.4.8-1.fc7.i386.rpm
527faadb676d7329ba30e19ae44926c73b16585d liferea-debuginfo-1.4.8-1.fc7.i386.rpm
0f5b2d06c07483d61a64f237bd2b3212319914b9 liferea-1.4.8-1.fc7.x86_64.rpm
67d8ea32b5f1956ee819fca55d493e3177026ceb liferea-debuginfo-1.4.8-1.fc7.x86_64.rpm
2e5dadafde386e7a1424ac974d3c416be9488e86 liferea-debuginfo-1.4.8-1.fc7.ppc.rpm
451044f4d520b7c784663725b0e001daabbff13b liferea-1.4.8-1.fc7.ppc.rpm
1b774b778b1451804a1989840c9ec050ffa9b4b8 liferea-1.4.8-1.fc7.src.rpm

This update can be installed with the "yum" update program.  Use 
su -c 'yum update liferea' 
at the command line.  For more information, refer to "Managing Software
with yum", available at http://docs.fedoraproject.org/yum/.
--------------------------------------------------------------------------------




More information about the package-announce mailing list