Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora 26 Texlive Security Advisory: Critical Non-Whitelisted Execution

fedora
Calendar Grey April 3, 2017
Dist Fedora Esm H88
This patch resolves an urgent vulnerability in Texlive for Fedora 26, reducing the risks associated with unapproved software execution.
Security fix for CVE-2016-10243

Summary

The TeX Live software distribution offers a complete TeX system for a

variety of Unix, Macintosh, Windows and other platforms. It

encompasses programs for editing, typesetting, previewing and printing

of TeX documents in many different languages, and a large collection

of TeX macros and font libraries.

The distribution includes extensive general documentation about TeX,

as well as the documentation for the included software packages.

Update Information:

Security fix for CVE-2016-10243

Change Log

References


[ 1 ] Bug #1429452 - CVE-2016-10243 texlive: mpost allows to run non-whitelisted external programs https://bugzilla.redhat.com/show_bug.cgi?id=1429452

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade texlive' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: texlive
Product: Fedora 26
Version: 2016
Release: 33.20160520.fc26
Summary: TeX formatting system

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here