[SECURITY] Fedora 20 Update: akonadi-1.13.0-2.fc20

updates at fedoraproject.org updates at fedoraproject.org
Sat Sep 27 09:47:42 UTC 2014


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2014-11448
2014-09-25 09:30:40
--------------------------------------------------------------------------------

Name        : akonadi
Product     : Fedora 20
Version     : 1.13.0
Release     : 2.fc20
URL         : http://community.kde.org/KDE_PIM/Akonadi
Summary     : PIM Storage Service
Description :
PIM Storage Service.

--------------------------------------------------------------------------------
Update Information:

KDE released updates for its Applications and Development Platform, the first in a series of monthly stabilization updates to the 4.14 series.  This update also includes the latest stable calligra-2.8.6 and digikam-4.3.0 releases.  See also http://kde.org/announcements/4.14/ , http://kde.org/announcements/announce-4.14.1.php ,  https://www.calligra.org/news/calligra-2-8-6-released/ , https://www.digikam.org/node/718

The update also addresses CVE-2014-5033, fixed in kdelibs ≥ 4.14.0: KAuth was calling PolicyKit 1 (polkit) in an insecure way.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Aug 15 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 1.13.0-2
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Thu Aug 14 2014 Rex Dieter <rdieter at fedoraproject.org> 1.13.0-1
- 1.13.0
* Mon Aug  4 2014 Rex Dieter <rdieter at fedoraproject.org> 1.12.91-1
- 1.12.91
* Tue Jul  8 2014 Rex Dieter <rdieter at fedoraproject.org> 1.12.1-10
- scriptlet polish
* Thu Jul  3 2014 Rex Dieter <rdieter at fedoraproject.org> 1.12.1-9
- optimized mimeinfo scriptlet
* Mon Jun  9 2014 Rex Dieter <rdieter at fedoraproject.org> 1.12.1-8
- pull in latest 1.12 branch commits
* Sat Jun  7 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 1.12.1-7
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Thu May 22 2014 Petr Machata <pmachata at redhat.com> - 1.12.1-6
- Rebuild for boost 1.55.0
* Tue Apr 22 2014 Daniel Vrátil <dvratil at redhat.com> 1.12.1-5
- backport 1.12.2 patch to fix upgrade from Akonadi < 1.12 for users with invalid entries in DB
* Wed Apr 16 2014 Rex Dieter <rdieter at fedoraproject.org> 1.12.1-4
- backport master/ branch commits to test sqlite backend concurrency support
* Wed Apr 16 2014 Rex Dieter <rdieter at fedoraproject.org> 1.12.1-3
- WITH_SOPRANO=OFF (kde-4.13,fc21+)
* Tue Apr 15 2014 Rex Dieter <rdieter at fedoraproject.org> 1.12.1-2
- drop mysql-global-mobile.conf, it's too minimalistic
- drop Requires: qt4 >= 4.8.5-10 (workaround for psql driver bug had only a small window a long time ago)
* Tue Apr  8 2014 Rex Dieter <rdieter at fedoraproject.org> 1.12.1-1
- 1.12.1
* Wed Mar 26 2014 Rex Dieter <rdieter at fedoraproject.org> 1.12.0-1
- 1.12.0
* Wed Mar 19 2014 Daniel Vrátil <dvratil at redhat.com> 1.11.90-1
- 1.11.90
* Mon Mar 17 2014 Rex Dieter <rdieter at fedoraproject.org> 1.11.80-1
- 1.11.80
* Mon Feb  3 2014 Rex Dieter <rdieter at fedoraproject.org> 1.11.0-2
- rebuild
* Sat Nov 30 2013 Rex Dieter <rdieter at fedoraproject.org> 1.11.0-1
- 1.11.0
* Fri Nov 15 2013 Rex Dieter <rdieter at fedoraproject.org> 1.10.80-1
- 1.10.80
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1094890 - CVE-2014-5033 polkit-qt: insecure calling of polkit
        https://bugzilla.redhat.com/show_bug.cgi?id=1094890
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use
su -c 'yum update akonadi' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list