Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 30: FEDORA-2019-b577187ba8 moderate: ibus GDBusServer Auth Issue

fedora
Calendar Grey September 24, 2019
Dist Fedora Esm H88
A critical patch for ibus on Fedora resolving CVE-2019-14822 will be released shortly with essential upgrade details.
Security fix for CVE-2019-14822

Summary

IBus means Intelligent Input Bus. It is an input framework for Linux OS.

Security fix for CVE-2019-14822

* Fri Sep 13 2019 Takao Fujiwara - 1.5.20-5

- Fix #1751940 - CVE-2019-14822 GDBusServer peer authorization

* Mon May 13 2019 Takao Fujiwara - 1.5.20-4

- Keep preedit cursor_pos and visible in clearing preedit text for Hangul

* Tue Apr 23 2019 Takao Fujiwara - 1.5.20-3

- Fix i18n ibus-setup

- Provide ibus.its

* Tue Apr 16 2019 Takao Fujiwara - 1.5.20-2

- Rebuilt for unicode-ucd- 12.0.0

[ 1 ] Bug #1717958 - CVE-2019-14822 ibus: missing authorization allows local attacker to access the input bus of another user

https://bugzilla.redhat.com/show_bug.cgi?id=1717958

su -c 'dnf upgrade --advisory FEDORA-2019-b577187ba8' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Product: Fedora 30
Version: 1.5.20
Release: 5.fc30
Summary: Intelligent Input Bus for Linux OS

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here