Fedora 9 Update: Xaw3d-1.5E-12.fc9
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-8754
2008-10-24 22:46:56
--------------------------------------------------------------------------------
Name : Xaw3d
Product : Fedora 9
Version : 1.5E
Release : 12.fc9
URL : http://directory.fsf.org/project/xaw3d/
Summary : A version of the MIT Athena widget set for X
Description :
Xaw3d is an enhanced version of the MIT Athena Widget set for
the X Window System. Xaw3d adds a three-dimensional look to applications
with minimal or no source code changes.
You should install Xaw3d if you are using applications which incorporate
the MIT Athena widget set and you'd like to incorporate a 3D look into
those applications.
--------------------------------------------------------------------------------
Update Information:
- Remove obsolete PreReq and Prefix stuff from specfile - Fix BuildRoot to
match the guidelines - Require base package by full EVR from devel package -
Drop non relevant Patches and Sources - Rebase the still relevant patches -
Actually apply the still relevant patches - Add a patch from Debian fixing an
infinite loop (rh436998) - Add patches from Debian fixes various potential
bufferoverflows
--------------------------------------------------------------------------------
ChangeLog:
* Mon Oct 6 2008 Hans de Goede <hdegoede(a)redhat.com> 1.5E-12
- Remove obsolete PreReq and Prefix stuff from specfile
- Fix BuildRoot to match the guidelines
- Require base package by full EVR from devel package
- Drop non relevant Patches and Sources
- Rebase the still relevant patches
- Actually apply the still relevant patches
- Add a patch from Debian fixing an infinite loop (rh436998)
- Add patches from Debian fixes various potential bufferoverflows
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #436998 - xfig-xaw3d is freezing
https://bugzilla.redhat.com/show_bug.cgi?id=436998
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update Xaw3d' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
15 years, 6 months
Fedora 8 Update: gflags-0.9-6.fc8
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-8511
2008-10-24 22:46:56
--------------------------------------------------------------------------------
Name : gflags
Product : Fedora 8
Version : 0.9
Release : 6.fc8
URL : http://code.google.com/p/google-gflags/
Summary : Library for commandline flag processing
Description :
The gflags package contains a library that implements commandline
flags processing. As such it's a replacement for getopt(). It has
increased flexibility, including built-in support for C++ types like
string, and the ability to define flags in the source file in which
they're used.
--------------------------------------------------------------------------------
Update Information:
The gflags package contains a library that implements commandline flags
processing. As such it's a replacement for getopt(). It has increased
flexibility, including built-in support for C++ types like string, and the
ability to define flags in the source file in which they're used.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #458346 - Review Request: gflags - Library for commandline flag processing
https://bugzilla.redhat.com/show_bug.cgi?id=458346
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update gflags' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
15 years, 6 months
Fedora 8 Update: php-pear-Numbers-Words-0.15.0-4.fc8
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-9171
2008-10-24 22:46:52
--------------------------------------------------------------------------------
Name : php-pear-Numbers-Words
Product : Fedora 8
Version : 0.15.0
Release : 4.fc8
URL : http://pear.php.net/package/Numbers_Words
Summary : Methods for spelling numerals in words
Description :
With Numbers_Words class you can convert numbers written in arabic digits to
words in several languages. You can convert an integer between -infinity and
infinity. If your system does not support such long numbers you can call
Numbers_Words::toWords() with just a string.
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update php-pear-Numbers-Words' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
15 years, 6 months
[SECURITY] Fedora 8 Update: drupal-5.12-1.fc8
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-9170
2008-10-24 22:46:48
--------------------------------------------------------------------------------
Name : drupal
Product : Fedora 8
Version : 5.12
Release : 1.fc8
URL : http://www.drupal.org
Summary : An open-source content-management platform
Description :
Equipped with a powerful blend of features, Drupal is a Content Management
System written in PHP that can support a variety of websites ranging from
personal weblogs to large community-driven websites. Drupal is highly
configurable, skinnable, and secure.
--------------------------------------------------------------------------------
Update Information:
Update to 5.12, security fixes: SA-2008-067 ( http://drupal.org/node/324824 )
------------DESCRIPTION------------ Multiple vulnerabilities and weaknesses
were discovered in Drupal. ------------FILE INCLUSION------------ On a
server configured for IP-based virtual hosts, Drupal may be caused to include
and execute specifically named files outside of its root directory. This bug
affects both Drupal 5 and Drupal 6. ------------CROSS SITE
SCRIPTING------------ The title of book pages is not always properly escaped,
enabling users with the "create book content" permission or the permission to
edit any node in the book hierarchy to insert arbitrary HTML and script code
into pages. Such a Cross site scripting [ http://en.wikipedia.org/wiki/Cross-
site_scripting ] attack may lead to the attacker gaining administrator access.
This bug affects Drupal 6. Remember to log in to your site as the admin
user before upgrading this package. After upgrading the package, browse to
http://host/drupal/update.php to run the upgrade script.
--------------------------------------------------------------------------------
ChangeLog:
* Wed Oct 22 2008 Jon Ciesla <limb(a)jcomserv.net> - 5.12-1
- Upgrade to 6.6, SA-2008-067.
* Thu Oct 9 2008 Jon Ciesla <limb(a)jcomserv.net> - 5.11-1
- Upgrade to 5.11, SA-2008-060.
- Added notes to README and drupal.conf re CVE-2008-3661.
* Thu Aug 14 2008 Jon Ciesla <limb(a)jcomserv.net> - 5.10-1
- Upgrade to 5.10, SA-2008-047.
* Thu Jul 31 2008 Jon Ciesla <limb(a)jcomserv.net> - 5.9-1
- Upgrade to 5.9, SA-2008-046.
* Thu Jul 10 2008 Jon Ciesla <limb(a)jcomserv.net> - 5.8-1
- Upgrade to 5.8, SA-2008-044.
* Mon Feb 4 2008 Jon Ciesla <limb(a)jcomserv.net> - 5.7-1
- Upgrade to 5.7, several non-security bugs fixed.
* Fri Jan 11 2008 Jon Ciesla <limb(a)jcomserv.net> - 5.6-1
- Upgrade to 5.6, upstream security fixes.
* Mon Jan 7 2008 Jon Ciesla <limb(a)jcomserv.net> - 5.5-2
- Include .htaccess file, BZ 427720.
* Mon Dec 10 2007 Jon Ciesla <limb(a)jcomserv.net> - 5.5-1
- Upgrade to 5.5, critical fixes.
* Thu Dec 6 2007 Jon Ciesla <limb(a)jcomserv.net> - 5.4-2
- Fix /files -> /var/lib/drupal dir perms, BZ 414761.
* Wed Dec 5 2007 Jon Ciesla <limb(a)jcomserv.net> - 5.4-1
- Upgrade to 5.4, advisory ID DRUPAL-SA-2007-031.
- Augmented README regarding symlinks, BZ 254228.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #468422 - drupal: File inclusion, XSS vulnerability (SA-2008-067)
https://bugzilla.redhat.com/show_bug.cgi?id=468422
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update drupal' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
15 years, 6 months
Fedora 9 Update: php-pear-XML-Beautifier-1.1-3.fc9
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-9169
2008-10-24 22:46:44
--------------------------------------------------------------------------------
Name : php-pear-XML-Beautifier
Product : Fedora 9
Version : 1.1
Release : 3.fc9
URL : http://pear.php.net/package/XML_Beautifier
Summary : Class to format XML documents
Description :
XML_Beautifier is a package, that helps you making XML documents easier to
read for human beings.
It is able to add line-breaks, indentation, sorts attributes, convert tag
cases and wraps long comments. It recognizes tags, character data, comments,
XML declarations, processing instructions and external entities and is able
to format these tokens nicely.
The document is split into these tokens using the XML_Beautifier_Tokenizer
class and the expat parser. Then a renderer is used to create the string
representation of the document and formats it using the specified options.
Currently only one renderer is available, but as XML_Beautifier uses a
driver-based architecture, other renderers (like syntax-highlighting)
will follow soon.
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update php-pear-XML-Beautifier' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
15 years, 6 months
Fedora 8 Update: func-0.23-1.fc8
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-8296
2008-10-24 22:46:39
--------------------------------------------------------------------------------
Name : func
Product : Fedora 8
Version : 0.23
Release : 1.fc8
URL : https://hosted.fedoraproject.org/projects/func/
Summary : Remote management framework
Description :
func is a remote api for mangement, configuration, and monitoring of systems.
--------------------------------------------------------------------------------
Update Information:
func 0.23 -1 - job_id's for async work are now more human readable and
meaningful - Improvements in the overlord side groups api. Including
adding/remove lists of hosts to the groups configuration, querying the list of
groups. - Updates to yumcmd minion module to allow specifying packages to
update in more detail, including patterns. Also return the list of packages
updated on a update call instead of the previously useless "True" - Several
refactoring changes to remove code that was duplicated between func and
certmaster. - Added "func-transmit". func-transmit is a utility that allows for
access to the func overlord api via the command line. It reads formatted data
via stdin and outputs formatted data via stdout. Currently yaml and json are
supported. This should make it easy for other language bindings to access the
full power of func. See https://fedorahosted.org/func/wiki/FuncTransmit for
more details. - Using "func-transmit" there are now language bindings for java
and groovy - func now supports func delegation, allowing for a tiered
deployment of func minions and overlords. This is useful for adapting to
network topologies, or for improving performance on large deployments. See
https://fedorahosted.org/func/wiki/DelegationModule - command.run now supports
setting env variables - Copyfile module works better for large files - Most
modules now export method args and api calling information though the
module.get_method_args argument see
https://fedorahosted.org/func/wiki/ExportMethodArgs - Tons of changes in the
funcweb app, including usage of the get_method_args info - Added support for
"local" Overlord() api modules. So overlord modules can implement abstractions
for the overlord api usage. copyfile is a good example. - Modules for overlord
cmd_modules and the modules used for local api are now loaded as plugins, so
they can just be dropped into place. - Merges of the Google Summer of Code
students (Krzysztof A. Adamski and Denis Kurov) code into the tree (well, the
last little bits of it anyway, most was already merged)
--------------------------------------------------------------------------------
ChangeLog:
* Fri Jul 18 2008 Adrian Likins <alikins(a)redhat.com> - 0.23-1
- remove requirement for pyyaml, add python-simplejson
* Fri Jul 11 2008 Michael DeHaan <mdehaan(a)redhat.com> - 0.23-1
- (for ssalevan) adding in mapping/delegation tools
* Mon Jul 7 2008 Michael DeHaan <mdehaan(a)redhat.com> - 0.22-1
- packaged func-transmit script
* Wed Jul 2 2008 Michael DeHaan <mdehaan(a)redhat.com> - 0.21-1
- new release, upstream changes
* Mon Jun 30 2008 Michael DeHaan <mdehaan(a)redhat.com> - 0.20-1
- new release, upstream changes
* Sat Jun 28 2008 Adrian Likins <alikins(a)redhat.com> - 0.18-2
- fix fedora bug #441283 - typo in postinstall scriptlet
(the init.d symlinks for runlevels 1 and 6 were created wrong)
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #441283 - typo in postinstall scriptlet
https://bugzilla.redhat.com/show_bug.cgi?id=441283
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update func' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
15 years, 6 months
[SECURITY] Fedora 9 Update: ktorrent-3.1.4-1.fc9
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-9167
2008-10-24 22:46:35
--------------------------------------------------------------------------------
Name : ktorrent
Product : Fedora 9
Version : 3.1.4
Release : 1.fc9
URL : http://ktorrent.pwsp.net/
Summary : A BitTorrent program for KDE
Description :
KTorrent is a BitTorrent program for KDE. Its main features are native KDE
integration, download of torrent files, upload speed capping, internet
searching using various search engines, UDP Trackers and UPnP support.
--------------------------------------------------------------------------------
Update Information:
Another bugfix release for the 3.1 series is out. This fixes several bugs : * A
crash caused by a SIGBUS, when diskspace preallocation is disabled * High CPU
usage when DNS lookups fail in the UDP tracker code * Several security issues
in the webinterface plugin
--------------------------------------------------------------------------------
ChangeLog:
* Thu Oct 23 2008 Rex Dieter <rdieter(a)fedoraproject.org> - 3.1.4-1
- ktorrent-3.1.4
* Tue Oct 14 2008 Rex Dieter <rdieter(a)fedoraproject.org> - 3.1.3-4
- KDEDInit could not launch .../ktorrent (#451559, kde#157853)
* Mon Oct 13 2008 Roland Wolters <wolters.liste(a)gmx.net> - 3.1.3-3
- Update to upstream version 3.1.3
* Fri Aug 8 2008 Rex Dieter <rdieter(a)fedoraproject.org> - 3.1.2-1
- ktorrent-3.1.2
* Sun Jul 13 2008 Roland Wolters <wolters.liste(a)gmx.net> - 3.1-5
- Update to version 3.1
* Wed May 14 2008 Roland Wolters <wolters.liste(a)gmx.net> - 3.0.2-3
- bugfix update to version 3.0.2
- some spec file fixes due to an update error
* Mon Apr 28 2008 Rex Dieter <rdieter(a)fedoraproject.org> - 3.0.1-4
- %postun: remove extraneous scriplets
- -devel: own %{_kde4_includedir}/libbtcore/ (and subdirs)
- -devel: Requires: kdelibs4-devel
- drop: Requires: oxygen-icon-theme (kde4 runtime already does)
- Requires(post,postun): xdg-utils
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #451559 - KDEInit could not launch /usr/bin/ktorrent
https://bugzilla.redhat.com/show_bug.cgi?id=451559
[ 2 ] Bug #468233 - ktorrent not up to date
https://bugzilla.redhat.com/show_bug.cgi?id=468233
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update ktorrent' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
15 years, 6 months
Fedora 8 Update: php-pear-XML-Beautifier-1.1-3.fc8
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-9166
2008-10-24 22:46:31
--------------------------------------------------------------------------------
Name : php-pear-XML-Beautifier
Product : Fedora 8
Version : 1.1
Release : 3.fc8
URL : http://pear.php.net/package/XML_Beautifier
Summary : Class to format XML documents
Description :
XML_Beautifier is a package, that helps you making XML documents easier to
read for human beings.
It is able to add line-breaks, indentation, sorts attributes, convert tag
cases and wraps long comments. It recognizes tags, character data, comments,
XML declarations, processing instructions and external entities and is able
to format these tokens nicely.
The document is split into these tokens using the XML_Beautifier_Tokenizer
class and the expat parser. Then a renderer is used to create the string
representation of the document and formats it using the specified options.
Currently only one renderer is available, but as XML_Beautifier uses a
driver-based architecture, other renderers (like syntax-highlighting)
will follow soon.
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update php-pear-XML-Beautifier' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
15 years, 6 months
Fedora 9 Update: php-pear-XML-Util-1.1.4-3.fc9
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-9165
2008-10-24 22:46:27
--------------------------------------------------------------------------------
Name : php-pear-XML-Util
Product : Fedora 9
Version : 1.1.4
Release : 3.fc9
URL : http://pear.php.net/package/XML_Util
Summary : XML utility class
Description :
XML_Util is a utility class that helps you working with (and especially
creating) XML documents.
All methods of XML_Util can be called statically, that means you do not have
to instantiate an XML_Util object to use the provided methods.
The funcionality of XML_Util ranges from validating an XML tag name (as there
are strict rules for tag and attribute names) to the creation of namespaced
XML tags.
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update php-pear-XML-Util' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
15 years, 6 months
Fedora 9 Update: php-laconica-0.5.0-3.fc9
by updates@fedoraproject.org
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-8626
2008-10-24 22:46:22
--------------------------------------------------------------------------------
Name : php-laconica
Product : Fedora 9
Version : 0.5.0
Release : 3.fc9
URL : http://laconi.ca/
Summary : PHP tool for microblogging
Description :
Laconica is an open source microblogging tool written in PHP. All data
is stored in a MySQL database. Laconica was created as a direct
response of a need to create an open source, distributed alternative
to Twitter. Laconica implements the OpenMicroBlogging standard.
When the package has finished installing, you will need to perform
some additional configuration steps; these are described in README.Fedora
--------------------------------------------------------------------------------
Update Information:
Laconica is an open source microblogging tool written in PHP. All data is stored
in a MySQL database. Laconica was created as a direct response of a need to
create an open source, distributed alternative to Twitter. Laconica implements
the OpenMicroBlogging standard.
--------------------------------------------------------------------------------
ChangeLog:
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #455211 - Review Request: php-laconica - PHP tool for microblogging
https://bugzilla.redhat.com/show_bug.cgi?id=455211
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update php-laconica' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
15 years, 6 months