--------------------------------------------------------------------- Fedora Test Update Notification FEDORALEGACY-2004-1257 Bugzilla https://bugzilla.fedora.us/show_bug.cgi?id=1257 2004-10-04 --------------------------------------------------------------------- Name : netbpm Version (7.3) : 9.24-9.73.4.legacy Version (9) : 9.24-10.90.3.legacy Summary : A library for handling different graphics file formats. Description : The netpbm package contains a library of functions that support programs for handling various graphics file formats, including .pbm (portable bitmaps), .pgm (portable graymaps), .pnm (portable anymaps), .ppm (portable pixmaps), and others. --------------------------------------------------------------------- Update Information: Updated NetPBM packages are available that fix a number of temporary file vulnerabilities in the netpbm libraries. The netpbm package contains a library of functions that support programs for handling various graphics file formats, including .pbm (portable bitmaps), .pgm (portable graymaps), .pnm (portable anymaps), .ppm (portable pixmaps), and others. A number of temporary file bugs have been found in versions of NetPBM. These could make it possible for a local user to overwrite or create files as a different user who happens to run one of the the vulnerable utilities. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2003-0924 to this issue. --------------------------------------------------------------------- 7.3 Changelog: * Sun Jun 27 2004 John Dalbec <jpdalbec@xxxxxxx> 9.24-10.90.3.legacy - Changed BuildPrereq to BuildRequires - Added missing BuildRequires: flex * Fri Jun 11 2004 Marc Deslauriers <marcdeslauriers@xxxxxxxxxxxx> 9.24-10.90.2.l egacy - Added security patches for CAN-2003-0924 9 Changelog: * Sun Jun 27 2004 John Dalbec <jpdalbec@xxxxxxx> 9.24-9.73.4.legacy - Changed BuildPrereq to BuildRequires - Added missing BuildRequires: flex * Fri Jun 11 2004 Marc Deslauriers <marcdeslauriers@xxxxxxxxxxxx> 9.24-9.73.3.le gacy - Added security patches for CAN-2003-0924 --------------------------------------------------------------------- This update can be downloaded from: http://download.fedoralegacy.org/redhat/ 79c8c3e9e4ef5c60eb0dd243b38775cb24c49e18 7.3/updates-testing/SRPMS/netpbm-9.24-9.73.4.legacy.src.rpm 4a0e11ad855172ce86042d0f85991b6f28f4811b 7.3/updates-testing/i386/netpbm-9.24-9.73.4.legacy.i386.rpm d69d449139408cf50de7557f38fd9f3a3f86b4c3 7.3/updates-testing/i386/netpbm-devel-9.24-9.73.4.legacy.i386.rpm 173fa566ed92e222581817c4326b3dd501f24313 7.3/updates-testing/i386/netpbm-progs-9.24-9.73.4.legacy.i386.rpm 729fd0be3b7f6ff031436cd8a563edbc57b76ad6 9/updates-testing/SRPMS/netpbm-9.24-10.90.3.legacy.src.rpm ac5ee4489c0632057ef6d9844ad2c935e5754053 9/updates-testing/i386/netpbm-9.24-10.90.3.legacy.i386.rpm 0d59209ef7e8e4d7630d8f23c372f01adeddeea5 9/updates-testing/i386/netpbm-devel-9.24-10.90.3.legacy.i386.rpm 8076a88d1c299a80db24e7559d0ea6853e6520b9 9/updates-testing/i386/netpbm-progs-9.24-10.90.3.legacy.i386.rpm Please note that this update is also available via yum and apt through the updates-testing channel. Many people find this an easier way to apply updates. ---------------------------------------------------------------------
Attachment:
signature.asc
Description: Digital signature
-- fedora-legacy-list@xxxxxxxxxx http://www.redhat.com/mailman/listinfo/fedora-legacy-list