Fedora Essential and Critical Security Patch Updates - Page 766

Find the information you need for your favorite open source distribution .

Fedora 9 Update: apr-util-1.2.12-7.fc9

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Backport security fixes from upstream version 1.3.7: - CVE-2009-0023 Fix underflow in apr_strmatch_precompile. - CVE-2009-1955 Fix a denial of service attack against the apr_xml_* interface using the "billion laughs" entity expansion technique. - CVE-2009-1956 Fix off by one overflow in apr_brigade_vprintf. Note: CVE-2009-1956 is only an issue on big-endian architectures.

Fedora 11 Update: moin-1.8.4-1.fc11

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This package updates Moin to 1.8.4, http://moinmo.in/MoinMoinRelease1.8 has a list of changes. This package includes a security fix for a hierarchical ACL vulnerability (hierarchical is not the default ACL mode), http://moinmo.in/SecurityFixes has the details of the fix.