New upstream release * This fixes the security bug known as CVE-2018-5345 * Add new API for fwupd * Do not encode timezone in generated files * Fix countless memory leaks when parsing corrupt files * Fix the calculation of the checksum on big endian machines * Switch to the Meson buildsystem. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2018-87971e3c98 2018-01-30 17:59:49.778389 --------------------------------------------------------------------------------Name : gcab Product : Fedora 27 Version : 1.0 Release : 1.fc27 URL : https://download.gnome.org/sources/gcab/ Summary : Cabinet file library and tool Description : gcab is a tool to manipulate Cabinet archive. --------------------------------------------------------------------------------Update Information: New upstream release * This fixes the security bug known as CVE-2018-5345 * Add new API for fwupd * Do not encode timezone in generated files * Fix countless memory leaks when parsing corrupt files * Fix the calculation of the checksum on big endian machines * Switch to the Meson buildsystem --------------------------------------------------------------------------------References: [ 1 ] Bug #1527062 https://bugzilla.redhat.com/show_bug.cgi?id=1527062 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade gcab' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Security fix for CVE-2015-0552. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-0264 2015-01-07 00:44:25 -------------------------------------------------------------------------------- Name : gcab Product : Fedora 21 Version : 0.4 Release : 7.fc21 URL : https://download.gnome.org/sources/gcab/ Summary : Cabinet file library and tool Description : gcab is a tool to manipulate Cabinet archive. -------------------------------------------------------------------------------- Update Information: Security fix for CVE-2015-0552 -------------------------------------------------------------------------------- ChangeLog: * Tue Jan 6 2015 Marc-André Lureau - 0.4-7 - Avoid directory traversal CVE-2015-0552. rhbz#1179126 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1179126 - CVE-2015-0552 gcab: directory traversal flaw https://bugzilla.redhat.com/show_bug.cgi?id=1179126 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update gcab' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
Get the latest Linux and open source security news straight to your inbox.