[SECURITY] Fedora 12 Update: fwbuilder-3.0.7-1.fc12

updates at fedoraproject.org updates at fedoraproject.org
Tue Feb 16 13:07:05 UTC 2010


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2010-0157
2010-01-05 22:28:44
--------------------------------------------------------------------------------

Name        : fwbuilder
Product     : Fedora 12
Version     : 3.0.7
Release     : 1.fc12
URL         : http://www.fwbuilder.org/
Summary     : Firewall Builder
Description :
Firewall Builder consists of a GUI and set of policy compilers for
various firewall platforms. It helps users maintain a database of
objects and allows policy editing using simple drag-and-drop
operations. GUI generates firewall description in the form of XML
file, which compilers then interpret and generate platform-specific
code. Several algorithms are provided for automated network objects
discovery and bulk import of data. The GUI and policy compilers are
completely independent, this provides for a consistent abstract model
and the same GUI for different firewall platforms.

--------------------------------------------------------------------------------
Update Information:

- Update to 3.0.7    *  Fixed security issue with temporary file handling in the
generated       iptables script. The problem only affects Linux systems where
Firewall       Builder is used to generate static routing configuration. The
problem       exists in Firewall Builder versions 3.0.4, 3.0.5, 3.0.6    *
Improved performance of the batch compile operation
--------------------------------------------------------------------------------
ChangeLog:

* Sat Nov  7 2009 Ralf Ertzinger <ralf at skytale.net> 3.0.7-1
- Update to 3.0.7
  *  Fixed security issue with temporary file handling in the generated
     iptables script. The problem only affects Linux systems where Firewall
     Builder is used to generate static routing configuration. The problem
     exists in Firewall Builder versions 3.0.4, 3.0.5, 3.0.6
  * Improved performance of the batch compile operation
- Add -fno-var-tracking-assignments to CXXFLAGS due to
  https://bugzilla.redhat.com/show_bug.cgi?id=532763
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #524588 - fwbuilder: Insecure temporary file handling in the generated iptables script
        https://bugzilla.redhat.com/show_bug.cgi?id=524588
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use 
su -c 'yum update fwbuilder' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list