Fedora Core 3 Update: thunderbird-1.0.2-1.3.2
by Christopher Aillon
---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2005-257
2005-03-24
---------------------------------------------------------------------
Product : Fedora Core 3
Name : thunderbird
Version : 1.0.2
Release : 1.3.2
Summary : Mozilla Thunderbird mail/newsgroup client
Description :
Mozilla Thunderbird is a standalone mail and newsgroup client.
---------------------------------------------------------------------
Update Information:
There was an issue with a patch being incorrectly applied which caused
the Advanced Preferences panel to fail to load.
There was an issue where thunderbird requested the incorrect system
colors from GTK, causing grey to be the default background color for
many people.
Users of Thunderbird are advised to upgrade to this updated package
which contains fixes for these issues.
---------------------------------------------------------------------
* Thu Mar 24 2005 Christopher Aillon <caillon(a)redhat.com> 1.0.2-1.3.2
- Add patch to request the correct system color from gtk
- Add patch to reduce round trips to the X-server during remote control
- Fix patch to advanced prefs as per rawhide.
---------------------------------------------------------------------
This update can be downloaded from:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
85dd08d54059617dcc7d956d925159a2 SRPMS/thunderbird-1.0.2-1.3.2.src.rpm
24edc9c76cb9657da19fd5ece297dd8c x86_64/thunderbird-1.0.2-1.3.2.x86_64.rpm
2114c617bbfb1dc07b16474efe3551f2
x86_64/debug/thunderbird-debuginfo-1.0.2-1.3.2.x86_64.rpm
ef6cb26b72940af8d01e2464a42039e9 i386/thunderbird-1.0.2-1.3.2.i386.rpm
01320e65e8ad711996d884d0847b2cb4
i386/debug/thunderbird-debuginfo-1.0.2-1.3.2.i386.rpm
This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.
---------------------------------------------------------------------
18 years, 6 months
Fedora Core 3 Update: selinux-policy-targeted-1.17.30-2.90
by Daniel J Walsh
---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2005-238
2005-03-24
---------------------------------------------------------------------
Product : Fedora Core 3
Name : selinux-policy-targeted
Version : 1.17.30
Release : 2.90
Summary : SELinux targeted policy configuration
Description :
Security-enhanced Linux is a patch of the Linux® kernel and a number
of utilities with enhanced security functionality designed to add
mandatory access controls to Linux. The Security-enhanced Linux
kernel contains new architectural components originally developed to
improve the security of the Flask operating system. These
architectural components provide general support for the enforcement
of many kinds of mandatory access control policies, including those
based on the concepts of Type Enforcement®, Role-based Access
Control, and Multi-level Security.
This package contains the SELinux example policy configuration along
with the Flask configuration information and the application
configuration files.
---------------------------------------------------------------------
* Tue Mar 15 2005 Dan Walsh <dwalsh(a)redhat.com> 1.17.30-2.90
- Allow system_mail_t access to random_device_t
---------------------------------------------------------------------
This update can be downloaded from:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
7208a460ddb2a0b8d023149c6e52d714
SRPMS/selinux-policy-targeted-1.17.30-2.90.src.rpm
c80c1d364516ec89b475cc76f823b5c3
x86_64/selinux-policy-targeted-1.17.30-2.90.noarch.rpm
bcd39e49f76de6e2dac8b9fc4c186162
x86_64/selinux-policy-targeted-sources-1.17.30-2.90.noarch.rpm
c80c1d364516ec89b475cc76f823b5c3
i386/selinux-policy-targeted-1.17.30-2.90.noarch.rpm
bcd39e49f76de6e2dac8b9fc4c186162
i386/selinux-policy-targeted-sources-1.17.30-2.90.noarch.rpm
This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.
---------------------------------------------------------------------
--
18 years, 6 months
Fedora Core 3 Update: lsof-4.72-2.2
by Karel Zak
---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2005-243
2005-03-24
---------------------------------------------------------------------
Product : Fedora Core 3
Name : lsof
Version : 4.72
Release : 2.2
Summary : A utility which lists open files on a Linux/UNIX system.
Description :
Lsof stands for LiSt Open Files, and it does just that: it lists
information about files that are open by the processes running on a
UNIX system.
---------------------------------------------------------------------
* Wed Mar 23 2005 Karel Zak <kzak(a)redhat.com> 4.72-2.2
- fix "lsof -b" hangs if a process is stuck in disk-wait/NFS (#131712, #98559)
---------------------------------------------------------------------
This update can be downloaded from:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
ed13c294f44a5f4b9b69fcbbd446e203 SRPMS/lsof-4.72-2.2.src.rpm
2318695424b082a8d4103501c0db5b88 x86_64/lsof-4.72-2.2.x86_64.rpm
7656703febc352b6aceb30651d3c31e0 x86_64/debug/lsof-debuginfo-4.72-2.2.x86_64.rpm
beebdbfd6a4658eb4739ba9cd30e42e4 i386/lsof-4.72-2.2.i386.rpm
149d57a319c2fde948cc9895cf74880b i386/debug/lsof-debuginfo-4.72-2.2.i386.rpm
This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.
---------------------------------------------------------------------
18 years, 6 months
[SECURITY] Fedora Core 3 Update: evolution-2.0.4-2
by Christopher Aillon
---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2005-255
2005-03-23
---------------------------------------------------------------------
Product : Fedora Core 3
Name : evolution
Version : 2.0.4
Release : 2
Summary : GNOME's next-generation groupware suite
Description :
Evolution is the GNOME mailer, calendar, contact manager and
communications tool. The tools which make up Evolution will
be tightly integrated with one another and act as a seamless
personal information-management tool.
---------------------------------------------------------------------
Update Information:
There were several security flaws found in the mozilla package, which
evolution depends on. Users of evolution are advised to upgrade to this
updated package which has been rebuilt against a later version of
mozilla which is not vulnerable to these flaws.
---------------------------------------------------------------------
* Wed Mar 23 2005 David Malcolm <dmalcolm(a)redhat.com> - 2.0.4-2
- Removed explicit run-time spec-file requirement on mozilla.
The Mozilla NSS API/ABI stabilised by version 1.7.3
The libraries are always located in the libdir
However, the headers are in /usr/include/mozilla-1.7.6
and so they move each time the mozilla version changes.
So we no longer have an explicit mozilla run-time requirement in the
specfile;
a requirement on the appropriate NSS and NSPR .so files is
automagically generated on build.
We have an explicit, exact build-time version, so that we can find
the headers (without
invoking an RPM query from the spec file; to do so is considered bad
practice)
- Introduced mozilla_build_version, to replace mozilla_version (now 1.7.6)
---------------------------------------------------------------------
This update can be downloaded from:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
7631fea197a1ccd056b1823be75a023c SRPMS/evolution-2.0.4-2.src.rpm
14c411da1ca80dff7aa6a625cc2c5365 x86_64/evolution-2.0.4-2.x86_64.rpm
4fc5867087714e7a59f5e1da1cc71e1d x86_64/evolution-devel-2.0.4-2.x86_64.rpm
0a17830e4f2b39aed9e7883c51421085
x86_64/debug/evolution-debuginfo-2.0.4-2.x86_64.rpm
35f623a4203d3ca943e423c6607e69b8 i386/evolution-2.0.4-2.i386.rpm
a940f9dd3baf9f54f91110e3488695f5 i386/evolution-devel-2.0.4-2.i386.rpm
fe42b6729dd452612e70bc941cba7226
i386/debug/evolution-debuginfo-2.0.4-2.i386.rpm
This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.
---------------------------------------------------------------------
18 years, 6 months
[SECURITY] Fedora Core 3 Update: epiphany-1.4.4-4.3.1
by Christopher Aillon
---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2005-254
2005-03-23
---------------------------------------------------------------------
Product : Fedora Core 3
Name : epiphany
Version : 1.4.4
Release : 4.3.1
Summary : GNOME web browser based on the Mozilla rendering engine
Description :
epiphany is a simple GNOME web browser based on the Mozilla rendering
engine
---------------------------------------------------------------------
Update Information:
There were several security flaws found in the mozilla package, which
epiphany depends on. Users of epiphany are advised to upgrade to this
updated package which has been rebuilt against a later version of
mozilla which is not vulnerable to these flaws.
---------------------------------------------------------------------
* Wed Mar 23 2005 Christopher Aillon <caillon(a)redhat.com> 1.4.4-4.3.1
- Build against 1.7.6
---------------------------------------------------------------------
This update can be downloaded from:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
ee392eccf5da0006b3cf7d15fc5b3827 SRPMS/epiphany-1.4.4-4.3.1.src.rpm
2ff6cfeb569e92932c726c3be0c6ca6b x86_64/epiphany-1.4.4-4.3.1.x86_64.rpm
d8e15cd2a4b75f1583ef8cdf8c02be7a
x86_64/epiphany-devel-1.4.4-4.3.1.x86_64.rpm
e036ff59e6cdfe79b1ec2143b487a20f
x86_64/debug/epiphany-debuginfo-1.4.4-4.3.1.x86_64.rpm
a2b5e1b52dc3e7dd748184b1434d60cb i386/epiphany-1.4.4-4.3.1.i386.rpm
caee256a486e64bc37f47b2246929d1c i386/epiphany-devel-1.4.4-4.3.1.i386.rpm
b264f825744b5a29d0e646c47eda0c3d
i386/debug/epiphany-debuginfo-1.4.4-4.3.1.i386.rpm
This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.
---------------------------------------------------------------------
18 years, 6 months
[SECURITY] Fedora Core 3 Update: devhelp-0.9.2-2.3.1
by Christopher Aillon
---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2005-252
2005-03-23
---------------------------------------------------------------------
Product : Fedora Core 3
Name : devhelp
Version : 0.9.2
Release : 2.3.1
Summary : API document browser
Description :
A API document browser for GNOME 2.
---------------------------------------------------------------------
Update Information:
There were several security flaws found in the mozilla package, which
devhelp depends on. Users of devhelp are advised to upgrade to this
updated package which has been rebuilt against a later version of
mozilla which is not vulnerable to these flaws.
---------------------------------------------------------------------
* Wed Mar 23 2005 Christopher Aillon <caillon(a)redhat.com> 0.9.2-2.3.1
- Build against mozilla 1.7.6
---------------------------------------------------------------------
This update can be downloaded from:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
6c151fff55a839f25ec6badfa532d56c SRPMS/devhelp-0.9.2-2.3.1.src.rpm
d0e75caaaa0e6c3e07e2033f8848137b x86_64/devhelp-0.9.2-2.3.1.x86_64.rpm
1d014b859ea02e697133725b4a68cda3
x86_64/devhelp-devel-0.9.2-2.3.1.x86_64.rpm
5daa38a6f9a18d3f3e81ceef03243331
x86_64/debug/devhelp-debuginfo-0.9.2-2.3.1.x86_64.rpm
304625c2d7548ab99399566b9c5184e0 i386/devhelp-0.9.2-2.3.1.i386.rpm
95daa11b364e50c340b13950e4fb0115 i386/devhelp-devel-0.9.2-2.3.1.i386.rpm
80f5c322ca9789d25b0bd5cfe855c827
i386/debug/devhelp-debuginfo-0.9.2-2.3.1.i386.rpm
This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.
---------------------------------------------------------------------
18 years, 6 months
[SECURITY] Fedora Core 3 Update: mozilla-1.7.6-1.3.2
by Christopher Aillon
---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2005-249
2005-03-23
---------------------------------------------------------------------
Product : Fedora Core 3
Name : mozilla
Version : 1.7.6
Release : 1.3.2
Summary : Web browser and mail reader
Description :
Mozilla is an open-source web browser, designed for standards
compliance, performance and portability.
---------------------------------------------------------------------
Update Information:
A buffer overflow bug was found in the way Mozilla processes GIF images.
It is possible for an attacker to create a specially crafted GIF image,
which when viewed by a victim will execute arbitrary code as the victim.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2005-0399 to this issue.
A bug was found in the way Mozilla responds to proxy auth requests. It
is possible for a malicious webserver to steal credentials from a
victims browser by issuing a 407 proxy authentication request.
(CAN-2005-0147)
A bug was found in the way Mozilla displays dialog windows. It is
possible that a malicious web page which is being displayed in a
background tab could present the user with a dialog window appearing to
come from the active page. (CAN-2004-1380)
A bug was found in the way Mozilla Mail handles cookies when loading
content over HTTP regardless of the user's preference. It is possible
that a particular user could be tracked through the use of malicious
mail messages which load content over HTTP. (CAN-2005-0149)
A flaw was found in the way Mozilla displays international domain names.
It is possible for an attacker to display a valid URL, tricking the user
into thinking they are viewing a legitimate webpage when they are not.
(CAN-2005-0233)
A bug was found in the way Mozilla handles pop-up windows. It is
possible for a malicious website to control the content in an unrelated
site's pop-up window. (CAN-2004-1156)
A bug was found in the way Mozilla saves temporary files. Temporary
files are saved with world readable permissions, which could allow a
local malicious user to view potentially sensitive data. (CAN-2005-0142)
A bug was found in the way Mozilla handles synthetic middle click
events. It is possible for a malicious web page to steal the contents of
a victims clipboard. (CAN-2005-0146)
A bug was found in the way Mozilla processes XUL content. If a malicious
web page can trick a user into dragging an object, it is possible to
load malicious XUL content. (CAN-2005-0401)
A bug was found in the way Mozilla loads links in a new tab which are
middle clicked. A malicious web page could read local files or modify
privileged chrom settings. (CAN-2005-0141)
A bug was found in the way Mozilla displays the secure site icon. A
malicious web page can use a view-source URL targetted at a secure page,
while loading an insecure page, yet the secure site icon shows the
previous secure state. (CAN-2005-0144)
A bug was found in the way Mozilla displays the secure site icon. A
malicious web page can display the secure site icon by loading a binary
file from a secured site. (CAN-2005-0143)
A bug was found in the way Mozilla displays the download dialog window.
A malicious site can obfuscate the content displayed in the source
field, tricking a user into thinking they are downloading content from a
trusted source. (CAN-2005-0585)
Users of Mozilla are advised to upgrade to this updated package which
contains Mozilla version 1.7.6 to correct these issues.
---------------------------------------------------------------------
* Wed Mar 22 2005 Christopher Aillon <caillon(a)redhat.com> 37:1.7.6-1.3.2
- Install all-redhat.js pref files
* Tue Mar 22 2005 Christopher Aillon <caillon(a)redhat.com> 37:1.7.6-1.3.1
- Update to 1.7.6
- Add RPM version to useragent
- Enable smooth scrolling and system colors by default.
- Backport pango fixes from the firefox package, and now enabled by default.
- Add upstream fix to reduce round trips to xserver during remote control
- Add upstream fix to call g_set_application_name
---------------------------------------------------------------------
This update can be downloaded from:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
02669640d96d1cc1bb50966bcaca5a4e SRPMS/mozilla-1.7.6-1.3.2.src.rpm
086140fa80837e4395bd23863d1cd3bc x86_64/mozilla-1.7.6-1.3.2.x86_64.rpm
399367ebf6f9d4f9498473984634c0ce x86_64/mozilla-nspr-1.7.6-1.3.2.x86_64.rpm
dabf52db59410c637ae33902009136ab
x86_64/mozilla-nspr-devel-1.7.6-1.3.2.x86_64.rpm
5172afe0363245d1172488021b3ad9bf x86_64/mozilla-nss-1.7.6-1.3.2.x86_64.rpm
678f8d13728810ee930350440c706947
x86_64/mozilla-nss-devel-1.7.6-1.3.2.x86_64.rpm
7ff378a5d83625991fc0c51729a788f9
x86_64/mozilla-devel-1.7.6-1.3.2.x86_64.rpm
0107bce1bc3fe6e102aa8da01bb85ab7 x86_64/mozilla-mail-1.7.6-1.3.2.x86_64.rpm
3213705339c737d8bcc29616874a7d5c x86_64/mozilla-chat-1.7.6-1.3.2.x86_64.rpm
765be3f54ee532d841ffeaeede8101e0
x86_64/mozilla-js-debugger-1.7.6-1.3.2.x86_64.rpm
61fb797c0664a3583066d744b2aa9581
x86_64/mozilla-dom-inspector-1.7.6-1.3.2.x86_64.rpm
5a19978771f9d234ba77bb150e93438a
x86_64/debug/mozilla-debuginfo-1.7.6-1.3.2.x86_64.rpm
a4b85d9372781b5f68395fa4ac8d7340 x86_64/mozilla-nspr-1.7.6-1.3.2.i386.rpm
d35ce4037dafb1ec40c2cec9304b61ba x86_64/mozilla-nss-1.7.6-1.3.2.i386.rpm
98aa9de7049b5343e39a2e26040672fa i386/mozilla-1.7.6-1.3.2.i386.rpm
a4b85d9372781b5f68395fa4ac8d7340 i386/mozilla-nspr-1.7.6-1.3.2.i386.rpm
65a61de5c98a9e0b2843aa928b00228b
i386/mozilla-nspr-devel-1.7.6-1.3.2.i386.rpm
d35ce4037dafb1ec40c2cec9304b61ba i386/mozilla-nss-1.7.6-1.3.2.i386.rpm
24d648cc13985e7bcedb8df625a59359
i386/mozilla-nss-devel-1.7.6-1.3.2.i386.rpm
92fd43a847dfccba9ea7dcc0473d18f7 i386/mozilla-devel-1.7.6-1.3.2.i386.rpm
783772ada6aefc80993931a46c7650cf i386/mozilla-mail-1.7.6-1.3.2.i386.rpm
f49ca97eeffc2355fdbe4de8ad32db1b i386/mozilla-chat-1.7.6-1.3.2.i386.rpm
c63029efea76cbe664b46db3a881386a
i386/mozilla-js-debugger-1.7.6-1.3.2.i386.rpm
9564486586776c0e3b40f5b6e56cbe5e
i386/mozilla-dom-inspector-1.7.6-1.3.2.i386.rpm
9a2fa3f14fbb6af45d3bb43bd00b2974
i386/debug/mozilla-debuginfo-1.7.6-1.3.2.i386.rpm
This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.
---------------------------------------------------------------------
18 years, 6 months
[SECURITY] Fedora Core 3 Update: thunderbird-1.0.2-1.3.1
by Christopher Aillon
---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2005-247
2005-03-23
---------------------------------------------------------------------
Product : Fedora Core 3
Name : thunderbird
Version : 1.0.2
Release : 1.3.1
Summary : Mozilla Thunderbird mail/newsgroup client
Description :
Mozilla Thunderbird is a standalone mail and newsgroup client.
---------------------------------------------------------------------
Update Information:
A buffer overflow bug was found in the way Thunderbird processes GIF
images. It is possible for an attacker to create a specially crafted GIF
image, which when viewed by a victim will execute arbitrary code as the
victim. The Common Vulnerabilities and Exposures project (cve.mitre.org)
has assigned the name CAN-2005-0399 to this issue.
A bug was found in the Thunderbird string handling functions. If a
malicious website is able to exhaust a system's memory, it becomes
possible to execute arbitrary code. The Common Vulnerabilities and
Exposures project (cve.mitre.org) has assigned the name CAN-2005-0255 to
this issue.
Users of Thunderbird are advised to upgrade to this updated package
which contains Thunderbird version 1.0.2 and is not vulnerable to these
issues.
This update enables pango rendering by default.
---------------------------------------------------------------------
* Wed Mar 23 2005 Christopher Aillon <caillon(a)redhat.com> 1.0.2-1.3.1
- Thunderbird 1.0.2
- Enable pango rendering
* Tue Mar 8 2005 Christopher Aillon <caillon(a)redhat.com> 1.0-5
- Add patch to compile against new fortified glibc macros
* Sat Mar 5 2005 Christopher Aillon <caillon(a)redhat.com> 1.0-4
- Rebuild against GCC 4.0
- Add execshield patches
- Minor specfile cleanup
* Mon Dec 20 2004 Christopher Aillon <caillon(a)redhat.com> 1.0-3
- Rebuild
* Thu Dec 16 2004 Christopher Aillon <caillon(a)redhat.com> 1.0-2
- Add RPM version to useragent
* Thu Dec 16 2004 Christopher Blizzard <blizzard(a)redhat.com>
- Port over pango patches from firefox
* Wed Dec 8 2004 Christopher Aillon <caillon(a)redhat.com> 1.0-1.3.1
- Thunderbird 1.0
* Mon Dec 6 2004 Christopher Aillon <caillon(a)redhat.com> 1.0-0.rc1.1
- Fix advanced prefs
* Fri Dec 3 2004 Christopher Aillon <caillon(a)redhat.com>
- Make this run on s390(x) now for real
* Wed Dec 1 2004 Christopher Aillon <caillon(a)redhat.com> 1.0-0.rc1.0
- Update to 1.0 rc1
---------------------------------------------------------------------
This update can be downloaded from:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
a7764787e90a38e1a7d121b5393c946c SRPMS/thunderbird-1.0.2-1.3.1.src.rpm
642aec4401a1e924bc1569a8a28d2f18 x86_64/thunderbird-1.0.2-1.3.1.x86_64.rpm
b1c171a3a1ec24d996e36f8e3efec462
x86_64/debug/thunderbird-debuginfo-1.0.2-1.3.1.x86_64.rpm
f8872d466515e23b7eb4e49564a24f9f i386/thunderbird-1.0.2-1.3.1.i386.rpm
90eb655353de9280aa8595becc07496c
i386/debug/thunderbird-debuginfo-1.0.2-1.3.1.i386.rpm
This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.
---------------------------------------------------------------------
18 years, 6 months
[SECURITY] Fedora Core 3 Update: firefox-1.0.2-1.3.1
by Christopher Aillon
---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2005-246
2005-03-23
---------------------------------------------------------------------
Product : Fedora Core 3
Name : firefox
Version : 1.0.2
Release : 1.3.1
Summary : Mozilla Firefox Web browser.
Description :
Mozilla Firefox is an open-source web browser, designed for standards
compliance, performance and portability.
---------------------------------------------------------------------
Update Information:
A buffer overflow bug was found in the way Firefox processes GIF images.
It is possible for an attacker to create a specially crafted GIF image,
which when viewed by a victim will execute arbitrary code as the victim.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2005-0399 to this issue.
A bug was found in the way Firefox processes XUL content. If a malicious
web page can trick a user into dragging an object, it is possible to
load malicious XUL content. The Common Vulnerabilities and Exposures
project (cve.mitre.org) has assigned the name CAN-2005-0401 to this issue.
A bug was found in the way Firefox bookmarks content to the sidebar. If
a user can be tricked into bookmarking a malicious web page into the
sidebar panel, that page could execute arbitrary programs. The Common
Vulnerabilities and Exposures project (cve.mitre.org) has assigned the
name CAN-2005-0402 to this issue.
Users of Firefox are advised to upgrade to this updated package which
contains Firefox version 1.0.2 and is not vulnerable to these issues.
Additionally, there was a bug found in the way Firefox rendered some
fonts, notably the Tahoma font while italicized. This issue has been
filed as Bug 150041 (bugzilla.redhat.com). This updated package
contains a fix for this issue.
---------------------------------------------------------------------
* Wed Mar 23 2005 Christopher Aillon <caillon(a)redhat.com> 0:1.0.2-1.3.1
- Firefox 1.0.2
- Fix issues with italic rendering using certain fonts (e.g. Tahoma)
- Add upstream fix to reduce round trips to xserver during remote control
- Add upstream fix to call g_set_application_name
---------------------------------------------------------------------
This update can be downloaded from:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
a461bc4e69e10779b3a46944f6b3fd23 SRPMS/firefox-1.0.2-1.3.1.src.rpm
1951b68e390da2f45177df9c016240a0 x86_64/firefox-1.0.2-1.3.1.x86_64.rpm
a81f4837b641ae78f3f6559cbf05715c
x86_64/debug/firefox-debuginfo-1.0.2-1.3.1.x86_64.rpm
9b19361c8a3dc98edaa07eb1043c11b3 i386/firefox-1.0.2-1.3.1.i386.rpm
a97e425d13c5abb994520829b16b8063
i386/debug/firefox-debuginfo-1.0.2-1.3.1.i386.rpm
This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.
---------------------------------------------------------------------
18 years, 6 months
[SECURITY] Fedora Core 3 Update: kdelibs-3.3.1-2.9.FC3
by than
---------------------------------------------------------------------
Fedora Update Notification
FEDORA-2005-245
2005-03-23
---------------------------------------------------------------------
Product : Fedora Core 3
Name : kdelibs
Version : 3.3.1
Release : 2.9.FC3
Summary : K Desktop Environment - Libraries
Description :
Libraries for the K Desktop Environment:
KDE Libraries included: kdecore (KDE core library), kdeui (user interface),
kfm (file manager), khtmlw (HTML widget), kio (Input/Output, networking),
kspell (spelling checker), jscript (javascript), kab (addressbook),
kimgio (image manipulation).
---------------------------------------------------------------------
* Wed Mar 23 2005 Than Ngo <than(a)redhat.com> 6:3.3.1-2.9.FC3
- Applied patch to fix konqueror international domain name spoofing,
CAN-2005-0237, #147405
- get rid of broken AltiVec instructions on ppc
* Wed Mar 2 2005 Than Ngo <than(a)redhat.com> 6:3.3.1-2.8.FC3
- Applied patch to fix DCOP DoS, CAN-2005-0396, #150092
thanks KDE security team
* Wed Feb 16 2005 Than Ngo <than(a)redhat.com> 6:3.3.1-2.7.FC3
- Applied patch to fix dcopidlng insecure temporary file usage,
CAN-2005-0365, #148823
---------------------------------------------------------------------
This update can be downloaded from:
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
c28ef6077f606f12a42cc9353b44dbfb SRPMS/kdelibs-3.3.1-2.9.FC3.src.rpm
27aa0f9c550e57fecd378e5e7c5aff97 x86_64/kdelibs-3.3.1-2.9.FC3.x86_64.rpm
f2801218b5ff4be23df191f5de57fa42
x86_64/kdelibs-devel-3.3.1-2.9.FC3.x86_64.rpm
add5d7c4324e4790ee84441237225e88
x86_64/debug/kdelibs-debuginfo-3.3.1-2.9.FC3.x86_64.rpm
4ef5aaa433f4108d56110118c35e3f7f x86_64/kdelibs-3.3.1-2.9.FC3.i386.rpm
4ef5aaa433f4108d56110118c35e3f7f i386/kdelibs-3.3.1-2.9.FC3.i386.rpm
5aca755d133987148fb5885b08daad24 i386/kdelibs-devel-3.3.1-2.9.FC3.i386.rpm
f79bcea56792848db679d141f9bd903b
i386/debug/kdelibs-debuginfo-3.3.1-2.9.FC3.i386.rpm
This update can also be installed with the Update Agent; you can
launch the Update Agent with the 'up2date' command.
---------------------------------------------------------------------
18 years, 6 months