[SECURITY] Fedora 21 Update: couchdb-1.6.1-4.fc21

updates at fedoraproject.org updates at fedoraproject.org
Fri Dec 12 04:12:51 UTC 2014


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2014-15967
2014-11-29 20:37:25
--------------------------------------------------------------------------------

Name        : couchdb
Product     : Fedora 21
Version     : 1.6.1
Release     : 4.fc21
URL         : http://couchdb.apache.org/
Summary     : A document database server, accessible via a RESTful JSON API
Description :
Apache CouchDB is a distributed, fault-tolerant and schema-free
document-oriented database accessible via a RESTful HTTP/JSON API.
Among other features, it provides robust, incremental replication
with bi-directional conflict detection and resolution, and is
queryable and indexable using a table-oriented view engine with
JavaScript acting as the default view definition language.

--------------------------------------------------------------------------------
Update Information:

* Fix CVE-2010-5312 couchdb: jquery-ui: XSS vulnerability in jQuery.ui.dialog title option (rhbz #1166767)
--------------------------------------------------------------------------------
ChangeLog:

* Thu Nov 27 2014 Peter Lemenkov <lemenkov at gmail.com> - 1.6.1-4
- Fix CVE-2010-5312 couchdb: jquery-ui: XSS vulnerability in jQuery.ui.dialog
  title option (rhbz #1166767)
* Fri Nov 14 2014 Peter Lemenkov <lemenkov at gmail.com> - 1.6.1-3
- Fix systemd unit file permissions (755 -> 644)
- Remove EL5,EL6 support
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1166041 - CVE-2010-5312 jquery-ui: XSS vulnerability in jQuery.ui.dialog title option
        https://bugzilla.redhat.com/show_bug.cgi?id=1166041
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use
su -c 'yum update couchdb' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list