-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-6557 2009-06-18 10:59:32 -------------------------------------------------------------------------------- Name : moin Product : Fedora 10 Version : 1.6.4 Release : 2.fc10 URL : https://moinmo.in/ Summary : MoinMoin is a WikiEngine to collaborate on easily editable web pages Description : MoinMoin is an advanced, easy to use and extensible WikiEngine with a large community of users. Said in a few words, it is about collaboration on easily editable web pages. -------------------------------------------------------------------------------- Update Information: This update includes a security fix for a hierarchical ACL vulnerability (hierarchical is not the default ACL mode), https://moinmo.in/SecurityFixes has the details of the fix. -------------------------------------------------------------------------------- ChangeLog: * Sat Jun 13 2009 Ville-Pekka Vainio1.6.4-2 - Hierarchical ACL security fix from 1.8.4, 1.8 HG 897cdbe9e8f2 - Details at https://moinmo.in/SecurityFixes#moin_1.8.3 - Convert CHANGES to UTF-8 * Mon Apr 20 2009 Ville-Pekka Vainio 1.6.4-1 - Update to 1.6.4 - CVE-2008-3381 fixed upstream - Re-fix CVE-2008-0781, upstream seems to have dropped the fix in 1.6, used part of upstream 1.5 db212dfc58ef, backported upstream 1.7 5f51246a4df1 and 269a1fbc3ed7 - Fix CVE-2009-0260, patch from Debian etch - Fix CVE-2009-0312 - Fix AttachFile escaping problems, backported upstream 1.7 5c4043e651b3 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update moin' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list Fedora-package-announce@redhat.com https://www.redhat.com/mailman/listinfo/fedora-package-announce