-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-12001 2015-07-28 22:47:21 -------------------------------------------------------------------------------- Name : bzr Product : Fedora 22 Version : 2.6.0 Release : 8.fc22 URL : Summary : Friendly distributed version control system Description : Bazaar is a distributed revision control system that is powerful, friendly, and scalable. It is the successor of Baz-1.x which, in turn, was a user-friendly reimplementation of GNU Arch. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2013-7440 -------------------------------------------------------------------------------- ChangeLog: * Tue Jul 21 2015 Petr Stodulka- 2.6-8 - use match_hostname from standard ssl library instead of copy of match_hostname from Python3 (#1230678) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1224999 - CVE-2013-7440 python: wildcard matching rules do not follow RFC 6125 https://bugzilla.redhat.com/show_bug.cgi?id=1224999 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update bzr' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-announce