[SECURITY] Fedora Core 6 Update: libgsf-1.14.1-7

Caolan McNamara caolanm at redhat.com
Thu Dec 7 18:10:16 UTC 2006


---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2006-1417
2006-12-07
---------------------------------------------------------------------

Product     : Fedora Core 6
Name        : libgsf
Version     : 1.14.1
Release     : 7
Summary     : GNOME Structured File library
Description :
A library for reading and writing structured files (eg MS OLE and Zip)

---------------------------------------------------------------------
Update Information:

Fixes a heap overflow in libgsf. When a specially crafted OLE
document is opened, it can overflow a buffer possibly
leading to arbitrary code execution.
---------------------------------------------------------------------
* Thu Dec  7 2006 Caolan McNamara <caolanm at redhat.com> - 1.14.1-7
- CVE-2006-4514 heap overflow
* Fri Jul 14 2006 Bill Nottingham <notting at redhat.com> - 1.14.1-6
- gnome-vfs2-devel no longer requires libbonobo-devel; add it as a buildreq
* Thu Jul 13 2006 Jesse Keating <jkeating at redhat.com> - 1.14.1-5
- rebuild
- add missing br gettext
* Mon May 29 2006 Caolan McNamara <caolanm at redhat.com> 1.14.1-4
- rh#193417# Add BuildRequires perl-XML-Parser
* Tue May 23 2006 Caolan McNamara <caolanm at redhat.com> 1.14.1-3
- rh#192707# disable rebuilding of gtk-doc so as to allow multi-arch devel
* Wed May 10 2006 Matthias Clasen <mclasen at redhat.com> 1.14.1-2
- Update to 1.14.1
* Mon Mar 20 2006 Caolan McNamara <caolanm at redhat.com> 1.14.0-1
- next version
* Fri Feb 10 2006 Jesse Keating <jkeating at redhat.com> - 1.13.3-2.2.1
- bump again for double-long bug on ppc(64)
* Tue Feb  7 2006 Jesse Keating <jkeating at redhat.com> - 1.13.3-2.2
- rebuilt for new gcc4.1 snapshot and glibc changes
* Fri Dec  9 2005 Jesse Keating <jkeating at redhat.com>
- rebuilt
* Mon Dec  5 2005 Caolan McNamara <caolanm at redhat.com> 1.13.3-2
- rh#172062# Obsolete extras libgsf113
* Fri Dec  2 2005 Matthias Clasen <mclasen at redhat.com> 1.13.3-1
- Update to 1.13.3
* Tue Sep 20 2005 Caolan McNamara <caolanm at redhat.com> 1.12.3-1
- bump to next version
- add manpage for gsf-office-thumbnailer
* Fri Aug 26 2005 Caolan McNamara <caolanm at redhat.com> 1.12.2-1
- bump to latest version
* Wed Jun 15 2005 Caolan McNamara <caolanm at redhat.com> 1.12.1-1
- bump to latest version
* Wed Mar  2 2005 Caolan McNamara <caolanm at redhat.com> 1.12.0-1
- bump to latest version
- clean spec
* Wed Mar  2 2005 Caolan McNamara <caolanm at redhat.com> 1.11.1-2
- rebuild with gcc4
* Thu Dec 16 2004 Caolan McNamara <caolanm at redhat.com> 1.11.1-1
- upgrade to 1.11.1
* Tue Aug 31 2004 Caolan McNamara <caolanm at redhat.com> 1.10.1-1
- upgrade to 1.10.1
* Wed Aug 18 2004 Caolan McNamara <caolanm at redhat.com> 1.10.0-1
- upgrade to 1.10.0
* Tue Jun 15 2004 Elliot Lee <sopwith at redhat.com>
- rebuilt
* Thu May  6 2004 Dams <anvil[AT]livna.org> 1.9.0-2
- -devel now requires libgsf=version-release
- Added smp_mflags
- Fixed double included .so files
* Wed May  5 2004 Caolan McNamara <caolanm at redhat.com> 1.9.0-1
* upgrade to 1.9.0 to get crash fixes
* Sun Apr 11 2004 Warren Togami <wtogami at redhat.com> 1.8.2-3
- BR libtool libxml2-devel gnome-vfs2-devel bzip2-devel
- -devel req glib2-devel libxml2-devel gnome-vfs2-devel
* Tue Mar  2 2004 Elliot Lee <sopwith at redhat.com>
- rebuilt
* Fri Feb 13 2004 Elliot Lee <sopwith at redhat.com>
- rebuilt
* Mon Jan 12 2004 Jonathan Blandford <jrb at redhat.com> 1.8.2-1
- make $includedir/libgsf-1 owned by -devel
* Fri Sep 19 2003 Havoc Pennington <hp at redhat.com> 1.8.2-1
- 1.8.2
* Wed Aug 13 2003 Jonathan Blandford <jrb at redhat.com>
- rebuild
* Wed Aug  6 2003 Elliot Lee <sopwith at redhat.com> 1.8.1-5
- Fix libtool
* Sat Jul 12 2003 Jeremy Katz <katzj at redhat.com> 1.8.1-4
- use system libtool so that lib64 library deps are correct
* Thu Jul 10 2003 Jeremy Katz <katzj at redhat.com> 1.8.1-3
- forcibly disable gtk-doc (openjade is broken on s390)
* Mon Jul  7 2003 Jeremy Katz <katzj at redhat.com> 1.8.1-2
- ldconfig in %post/%postun
* Sun Jul  6 2003 Jeremy Katz <katzj at redhat.com> 1.8.1-1
- use standard macros
- build for Red Hat Linux
* Tue May 13 2003 Rui M. Seabra <rms at 407.org>
- fix spec to reflect current stat of the build
* Tue Jun 18 2002 Rui M. Seabra <rms at 407.org>
- set permission correctly
- fix common mistake of Copyright flag into License flag.
* Thu May 23 2002 Jody Goldberg <jody at gnome.org>
- Initial version

---------------------------------------------------------------------
This update can be downloaded from:
    http://download.fedora.redhat.com/pub/fedora/linux/core/updates/6/

f7e070d7bf5930b3b5eccbec6bfad2aa7271a014  SRPMS/libgsf-1.14.1-7.src.rpm
f7e070d7bf5930b3b5eccbec6bfad2aa7271a014  noarch/libgsf-1.14.1-7.src.rpm
e1051e0d7b589f43917d41ad03c64009c8882dc3  ppc/libgsf-1.14.1-7.ppc.rpm
56a35f93d0bcb69633933cc5eef2e6530040c4d8  ppc/libgsf-devel-1.14.1-7.ppc.rpm
e25327ca449c900be29b45221f658b1ce8b1ccaa  ppc/debug/libgsf-debuginfo-1.14.1-7.ppc.rpm
1d3b8c546e441a24f7f25f35f7148870d921681b  x86_64/debug/libgsf-debuginfo-1.14.1-7.x86_64.rpm
cf992e3df48c5d3716d8fc2cc881e37284e7b856  x86_64/libgsf-1.14.1-7.x86_64.rpm
eb443156bb75e1552ec804bd2096b6d669ee14ca  x86_64/libgsf-devel-1.14.1-7.x86_64.rpm
36a98090b50e27e773afd16db6cdbd9f2c92011e  i386/libgsf-1.14.1-7.i386.rpm
bf95811fac608a32e8e2d89c5090b8a823b3240a  i386/debug/libgsf-debuginfo-1.14.1-7.i386.rpm
5b0856bedaef87a347a6c1d12ed56e2c99659fd2  i386/libgsf-devel-1.14.1-7.i386.rpm

This update can be installed with the 'yum' update program.  Use 'yum update
package-name' at the command line.  For more information, refer to 'Managing
Software with yum,' available at http://fedora.redhat.com/docs/yum/.
---------------------------------------------------------------------




More information about the package-announce mailing list