security advisorysoftware updateFedora
Update to 1.4.6, Security fix for CVE-2018-0499, fix for notmuch (Email indexer). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-62394ac295 2018-07-13 16:33:58.543410 --------------------------------------------------------------------------------Name : xapian-core Product : Fedora 27 Version : 1.4.6 Release : 1.fc27 URL : https://xapian.org/ Summary : The Xapian Probabilistic Information Retrieval Library Description : Xapian is an Open Source Probabilistic Information Retrieval Library. It offers a highly adaptable toolkit that allows developers to easily add advanced indexing and search facilities to applications --------------------------------------------------------------------------------Update Information: Update to 1.4.6, Security fix for CVE-2018-0499, fix for notmuch (Email indexer) --------------------------------------------------------------------------------ChangeLog: * Tue Jul 3 2018 Peter Robinson 1.4.6-1 - Update to 1.4.6 - CVE-2018-0499 fix (rhbz 1597583 1597585 1597586) * Fri Mar 9 2018 Peter Robinson 1.4.5-4 - Add gcc BR, spec cleanups * Wed Mar 7 2018 Adam Williamson - 1.4.5-3 - Rebuild to fix GCC 8 mis-compilation See https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./thread/LV44XSN4MZOROBGHBBK6CHPBEHRPKFVO/ ("GCC 8 ABI change on x86_64") * Fri Feb 9 2018 Fedora Release Engineering - 1.4.5-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild * Mon Jan 29 2018 Peter Robinson 1.4.5-1 - Update to 1.4.5 --------------------------------------------------------------------------------References: [ 1 ] Bug #1597583 - CVE-2018-0499 xapian-core: Cross-site-scripting in queryparser/termgenerator_internal.cc https://bugzilla.redhat.com/show_bug.cgi?id=1597583 --------------------------------------------------------------------------------This update can be installed with the "dnf" updateprogram. Use su -c 'dnf upgrade --advisory FEDORA-2018-62394ac295' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it./message/J5TGVQHDSYTYAMGMIBHBMIEZO3P7KVTK/ . Xapian-Core Patch Release for Fedora 27 rectifies CVE-2018-0499 to bolster system robustness and mitigate vulnerabilities.. Fedora Security Update,Xapian-Core Vulnerability,Notmuch Email Indexer. . Severity: Critical. LinuxSecurity.com Team
Jul 13, 2018
•Critical
Fedora