- https:// - [Moderately critical - Cross site scripting - SA-CONTRIB-2019-042](https://). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-0e10310204 2019-06-02 05:40:57.142547 --------------------------------------------------------------------------------Name : drupal7-module_filter Product : Fedora 29 Version : 2.2 Release : 1.fc29 URL : https:// Summary : Module filter gives the ability to quickly find the module Description : The modules list page can become quite big when dealing with a fairly large site or even just a dev site meant for testing new and various modules being considered. What this module aims to accomplish is the ability to quickly find the module you are looking for without having to rely on the browsers search feature which more times than not shows you the module name in the 'Required by' or 'Depends on' sections of the various modules or even some other location on the page like a menu item. This package provides the following Drupal module(s): * module_filter --------------------------------------------------------------------------------Update Information: - https:// -[Moderately critical - Cross site scripting - SA-CONTRIB-2019-042](https://) --------------------------------------------------------------------------------ChangeLog: * Fri May 24 2019 Shawn Iwinski - 2.2-1 - Update to 2.2 (RHBZ #1693391 / SA-CONTRIB-2019-042) - https:// * Thu Jan 31 2019 Fedora Release Engineering - 2.1-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #1693391 - drupal7-module_filter-2.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=1693391 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade--advisory FEDORA-2019-0e10310204' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
- https:// - https:// - [Moderately critical - Arbitrary file upload - SA-CONTRIB-2018-045](https://). --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2019-2aa9f5f5d6 2019-06-02 05:40:57.142232 --------------------------------------------------------------------------------Name : drupal7-uuid Product : Fedora 29 Version : 1.2 Release : 1.fc29 URL : https:// Summary : Adds support for universally unique identifiers Description : This module provides an API for adding universally unique identifiers (UUID) to Drupal objects, most notably entities. This package provides the following Drupal modules: * uuid * uuid_path * uuid_services * uuid_services_example --------------------------------------------------------------------------------Update Information: - https:// -https:// - [Moderately critical - Arbitrary file upload - SA-CONTRIB-2018-045](https://) --------------------------------------------------------------------------------ChangeLog: * Fri May 24 2019 Shawn Iwinski - 1.2-1 - Update to 1.2 (RHBZ #1598258) * Thu Jan 31 2019 Fedora Release Engineering - 1.0-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #1598258 - drupal7-uuid-1.2 is available https://bugzilla.redhat.com/show_bug.cgi?id=1598258 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2019-2aa9f5f5d6' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
* [7.x-1.21]() * [Moderately Critical - Information disclosure - SA-CONTRIB-2017-019](). -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2017-c87bbae385 2017-03-08 08:22:14.061240 -------------------------------------------------------------------------------- Name : drupal7-metatag Product : Fedora 25 Version : 1.21 Release : 1.fc25 URL : Summary : Adds support and an API to implement meta tags Description : The Metatag module allows you to automatically provide structured metadata, aka "meta tags", about your website. In the context of search engine optimization, when people refer to meta tags they are usually referring to the meta description tag and the meta keywords tag that may help improve the rankings and display of your site in search engine results. Meta tags have additional uses like the Open Graph Protocol used by Facebook, specifying the canonical location of content across multiple URLs or domains. This project is the designated Drupal 7 a from-the-ground-up rewrite and successor of the Nodewords module. This package provides the following Drupal modules: * metatag * metatag_context (requires drupal7-context) * metatag_dc * metatag_devel * metatag_facebook * metatag_google_plus * metatag_opengraph * metatag_panels (requires drupal7-ctools and drupal7-token, as well as manual install of panels) * metatag_twitter_cards * metatag_views (requires drupal7-views) -------------------------------------------------------------------------------- Update Information: * [7.x-1.21]() * [Moderately Critical - Information disclosure - SA- CONTRIB-2017-019]() -------------------------------------------------------------------------------- References: [ 1 ] Bug #1422700 - drupal7-metatag-1.21 is available https://bugzilla.redhat.com/show_bug.cgi?id=1422700 -------------------------------------------------------------------------------- This update can be installed with the "dnf" updateprogram. Use su -c 'dnf upgrade drupal7-metatag' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list --
Multiple vulnerabilities has been found in the Drupal content management framework. For additional information, please refer to the upstream a dvisory at . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 - ------------------------------------------------------------------------- Debian Security Advisory DSA-3718-1
### 6.x-2.7 Fixes [Embedded Media Field - Moderately Critical - Access Bypass - DRUPAL-SA-CONTRIB-2016-004]() #### Changes since 6.x-2.6: * by dalin: Ensure that width and height are always numbers. * \#1868588 by tangent: URL detection regex does not match hyphens / breaks HTML markup. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-f0bb0dad51 2016-03-27 00:00:51.401145 -------------------------------------------------------------------------------- Name : drupal6-emfield Product : Fedora 24 Version : 2.7 Release : 1.fc24 URL : Summary : An engine for modules to integrate various 3rd party media content providersDescription : This extensible module will create fields for content types that can be used to display video, image, and audio files from various third party providers. When entering the content, the user will simply paste the URL or embed code from the third party, and the module will automatically determine which content provider is being used. When displaying the content, the proper embedding format will be used. The module is only an engine, and requires a supported module to function. These include 'Embedded Image Field', 'Embedded Video Field' and 'Embedded Audio Field'. These modules are included in the contrib folder of the module, so they can be easily activated from the module administration page. Please note: As of emfield 2.x, provider files for these modules are no longer included with the main emfield module, and must be downloaded separately. This package provides the following Drupal modules: * emaudio * embonus * emfield * emimage * eminline * emthumb * emvideo * emwave -------------------------------------------------------------------------------- Update Information: ### 6.x-2.7 Fixes [Embedded Media Field - Moderately Critical - Access Bypass - DRUPAL-SA-CONTRIB-2016-004]() #### Changes since 6.x-2.6: * by dalin: Ensure that width and height are always numbers.* \#1868588 by tangent: URL detection regex does not match hyphens / breaks HTML markup -------------------------------------------------------------------------------- References: [ 1 ] Bug #1306475 - drupal6-emfield-2.7 is available https://bugzilla.redhat.com/show_bug.cgi?id=1306475 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update drupal6-emfield' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
Get the latest Linux and open source security news straight to your inbox.