[SECURITY] Fedora 23 Update: springframework-amqp-1.3.9-4.fc23

updates at fedoraproject.org updates at fedoraproject.org
Wed Apr 20 19:24:15 UTC 2016


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2016-f099190fee
2016-04-20 15:24:16.518262
--------------------------------------------------------------------------------

Name        : springframework-amqp
Product     : Fedora 23
Version     : 1.3.9
Release     : 4.fc23
URL         : http://projects.spring.io/spring-amqp/
Summary     : Support for Spring programming model with AMQP
Description :
The Spring AMQP project applies core Spring concepts to the
development of AMQP-based messaging solutions. It provides
a "template" as a high-level abstraction for sending and
receiving messages. It also provides support for Message
driven POJOs with a "listener container". These libraries
facilitate management of AMQP resources while promoting the
use of dependency injection and declarative configuration.
In all of these cases, you will see similarities to the
JMS support in the Spring Framework.

--------------------------------------------------------------------------------
Update Information:

Security fix for CVE-2016-2173
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1326205 - CVE-2016-2173 springframework-amqp: remote code execution
        https://bugzilla.redhat.com/show_bug.cgi?id=1326205
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program. Use
su -c 'yum update springframework-amqp' at the command line.
For more information, refer to "Managing Software with yum",
available at https://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list