[SECURITY] Fedora 16 Update: clearsilver-0.10.5-15.fc16

updates at fedoraproject.org updates at fedoraproject.org
Thu Dec 22 22:48:07 UTC 2011


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2011-17042
2011-12-12 21:26:58
--------------------------------------------------------------------------------

Name        : clearsilver
Product     : Fedora 16
Version     : 0.10.5
Release     : 15.fc16
URL         : http://www.clearsilver.net/
Summary     : Fast and powerful HTML templating system
Description :
ClearSilver is a fast, powerful, and language-neutral HTML template
system.  In both static content sites and dynamic HTML applications,
it provides a separation between presentation code and application
logic which makes working with your project easier.  The design of
ClearSilver began in 1999, and evolved during its use at onelist.com,
egroups.com, and Yahoo! Groups.  Today many other projects and
websites are using it.

--------------------------------------------------------------------------------
Update Information:

CVE-2011-4357
--------------------------------------------------------------------------------
ChangeLog:

* Mon Dec 12 2011 Jon Ciesla <limburgher at gmail.com> - 0.10.5-15
- Patch for CVE-2011-4357, BZ 757543.
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #757543 - clearsilver (neo_cgi): Format string flaw by processing CGI error messages in Python module [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=757543
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use 
su -c 'yum update clearsilver' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list