Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 33: FEDORA-2020-1fe0e08c8d Moderate: Dia Infinite Loop Fix

fedora
Calendar Grey January 14, 2021
Dist Fedora Esm H88
Fedora 33 updates Dia to fix infinite loops caused by invalid encoding, boosting system stability and addressing key issues.
- Added upstream patch to avoid infinite loop on filenames with invalid encoding (CVE-2019-19451, #1778767)

Summary

The Dia drawing program can be used to draw different types of diagrams, and

includes support for UML static structure diagrams (class diagrams),

entity relationship modeling, and network diagrams. Dia can load and

save diagrams to a custom file format, can load and save in .xml format,

and can export to PostScript(TM).

- Added upstream patch to avoid infinite loop on filenames with invalid

encoding (CVE-2019-19451, #1778767)

* Thu Dec 31 2020 Robert Scheck - 1:0.97.3-16

- Added upstream patch to avoid infinite loop on filenames with invalid

encoding (CVE-2019-19451, #1778767)

[ 1 ] Bug #1778767 - CVE-2019-19451 dia: infinite loop on filenames with invalid encoding

https://bugzilla.redhat.com/show_bug.cgi?id=1778767

su -c 'dnf upgrade --advisory FEDORA-2020-1fe0e08c8d' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Product: Fedora 33
Version: 0.97.3
Release: 16.fc33
Summary: Diagram drawing program

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here