[SECURITY] Fedora 20 Update: subsurface-4.2-1.fc20.1

updates at fedoraproject.org updates at fedoraproject.org
Sat Sep 27 09:47:53 UTC 2014


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2014-11448
2014-09-25 09:30:40
--------------------------------------------------------------------------------

Name        : subsurface
Product     : Fedora 20
Version     : 4.2
Release     : 1.fc20.1
URL         : https://github.com/torvalds/subsurface
Summary     : A feature-full divelog in Qt
Description :
Subsurface is an open source dive log program.

Developed in C using GTK+-2.0, glib-2 and libxml-2, it relies on
libdivecomputer to connect to the dive computer and thus support
all the dive computer supported by libdivecomputer.

--------------------------------------------------------------------------------
Update Information:

KDE released updates for its Applications and Development Platform, the first in a series of monthly stabilization updates to the 4.14 series.  This update also includes the latest stable calligra-2.8.6 and digikam-4.3.0 releases.  See also http://kde.org/announcements/4.14/ , http://kde.org/announcements/announce-4.14.1.php ,  https://www.calligra.org/news/calligra-2-8-6-released/ , https://www.digikam.org/node/718

The update also addresses CVE-2014-5033, fixed in kdelibs ≥ 4.14.0: KAuth was calling PolicyKit 1 (polkit) in an insecure way.
--------------------------------------------------------------------------------
ChangeLog:

* Thu Sep 18 2014 Rex Dieter <rdieter at fedoraproject.org> 4.2-1.1
- rebuild (f20/marble)
* Mon Aug 18 2014 Pierre-Yves Chibon <pingou at pingoured.fr> - 4.2-1
- Update to 4.2
* Mon Aug 18 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 4.0.3-6
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Wed Aug  6 2014 Rex Dieter <rdieter at fedoraproject.org> 4.0.3-5
- rebuild (marble)
* Tue Jul 15 2014 Rex Dieter <rdieter at fedoraproject.org> 4.0.3-4
- BR: qt4-devel qtwebkit-devel
* Sun Jun  8 2014 Fedora Release Engineering <rel-eng at lists.fedoraproject.org> - 4.0.3-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Thu Mar 20 2014 Pierre-Yves Chibon <pingou at pingoured.fr> - 4.0.3-2
- Rebuild for new version of libmarble-widget
* Thu Feb 20 2014 Pierre-Yves Chibon <pingou at pingoured.fr> - 4.0.3-1
- Update to 4.0.3
* Thu Feb 13 2014 Pierre-Yves Chibon <pingou at pingoured.fr> - 4.0.2-2
- Rebuild for the new version of libdivecomputer
* Thu Feb  6 2014 Pierre-Yves Chibon <pingou at pingoured.fr> - 4.0.2-1
- Rebuild for soname bump in libmarble
* Fri Jan 10 2014 Pierre-Yves Chibon <pingou at pingoured.fr> - 4.0.2-1
- Update to release 4.0.2
* Sun Dec 15 2013 Pierre-Yves Chibon <pingou at pingoured.fr> - 4.0-1
- Update to release 4.0
* Mon Dec  9 2013 Pierre-Yves Chibon <pingou at pingoured.fr> - 3.9.2-1
- Update to 3.9.2 which is the second beta release before 4.0
* Wed Aug  7 2013 Pierre-Yves Chibon <pingou at pingoured.fr> - 3.1.1-3
- Rebuild to fix broken dependency
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1094890 - CVE-2014-5033 polkit-qt: insecure calling of polkit
        https://bugzilla.redhat.com/show_bug.cgi?id=1094890
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use
su -c 'yum update subsurface' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list