-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2010-8360 2010-05-11 19:05:45 --------------------------------------------------------------------------------
Name : qt Product : Fedora 12 Version : 4.6.2 Release : 17.fc12 URL : http://www.qtsoftware.com/ Summary : Qt toolkit Description : Qt is a software toolkit for developing applications. This package contains base tools, like string, xml, and network handling. -------------------------------------------------------------------------------- Update Information: - fix multiple flaws in webkit: CVE-2010-0047, CVE-2010-0648, CVE-2010-0656 -------------------------------------------------------------------------------- ChangeLog: * Thu May 6 2010 Than Ngo <[email protected]> - 4.6.2-17 - bz#589169, fix multiple flaws in webkit CVE-2010-0047, CVE-2010-0648, CVE-2010-0656 * Thu Apr 29 2010 Kevin Kofler <[email protected]> - 4.6.2-16 - restore qt-everywhere-opensource-src-4.6.2-cups.patch (#586725) * Wed Apr 28 2010 Rex Dieter <[email protected]> - 4.6.2-15 - own %{_qt4_plugindir}/crypto * Thu Apr 15 2010 Than Ngo <[email protected]> - 4.6.2-14 - backport from 4.7 branch to get the printDialog to check for default paperSize via CUPS, it replaces the patch qt-everywhere-opensource-src-4.6.2-cups.patch * Tue Apr 6 2010 Than Ngo <[email protected]> - 4.6.2-13 - backport from 4.7 branch to fix s390(x) atomic ops crashes * Fri Apr 2 2010 Rex Dieter <[email protected]> - 4.6.2-12 - Associate text/vnd.trolltech.linguist with linguist (#579082) * Tue Mar 23 2010 Tom "spot" Callaway <[email protected]> - 4.6.2-11 - fix type cast issue on sparc64 - drop "recreate .qm file", it's not needed anymore * Tue Mar 23 2010 Than Ngo <[email protected]> - 4.6.2-10 - fix type cast issue on s390x * Mon Mar 22 2010 Than Ngo <[email protected]> - 4.6.2-9 - backport patch to fix a crash when reparenting an item in QGraphicsView, QTBUG-6932 - drop dangling reference(s) to %buildroot in *.pc * Wed Mar 17 2010 Jaroslav Reznik <[email protected]> - 4.6.2-8 - WebKit security update: CVE-2010-0046, CVE-2010-0049, CVE-2010-0050, CVE-2010-0051, CVE-2010-0052, CVE-2010-0054 * Sat Mar 13 2010 Kevin Kofler <[email protected]> - 4.6.2-7 - BR alsa-lib-devel (for QtMultimedia) * Sat Mar 13 2010 Kevin Kofler <[email protected]> - 4.6.2-6 - Provides: qt-assistant-adp(-devel) * Fri Mar 5 2010 Than Ngo <[email protected]> - 4.6.2-5 - Make tablet detection work with new wacom drivers (#569132) * Mon Mar 1 2010 Rex Dieter <[email protected]> - 4.6.2-4 - fix 64bit platform logic, use linux-g++-64 everywhere except x86_64 (#569542) * Sun Feb 28 2010 Kevin Kofler <[email protected]> - 4.6.2-3 - fix CUPS patch not to crash if currentPPD is NULL (#566304) * Tue Feb 16 2010 Rex Dieter <[email protected]> - 4.6.2-2 - macros.qt4: s/qt45/qt46/ * Mon Feb 15 2010 Rex Dieter <[email protected]> - 4.6.2-1 - 4.6.2 * Fri Feb 5 2010 Rex Dieter <[email protected]> - 4.6.1-3 - improve cups support (#523846, kde#180051#c22) * Tue Jan 19 2010 Rex Dieter <[email protected]> - 4.6.1-2 - drop bitmap_font_speed patch, rejected upstream * Tue Jan 19 2010 Than Ngo <[email protected]> - 4.6.1-1 - 4.6.1 * Mon Jan 11 2010 Rex Dieter <[email protected]> - 4.6.0-5 - bitmap_font_speed patch (QTBUG-7255) * Sat Jan 9 2010 Rex Dieter <[email protected]> - 4.6.0-4 - Fix crash when QGraphicsItem destructor deletes other QGraphicsItem (kde-qt cec34b01) - Fix a crash in KDE/Plasma with QGraphicsView. TopLevel list of items (kde-qt 63839f0c) * Wed Dec 23 2009 Kevin Kofler <[email protected]> - 4.6.0-3 - disable QtWebKit JavaScript JIT again, incompatible with SELinux (#549994) * Sat Dec 5 2009 Kevin Kofler <[email protected]> - 4.6.0-2 - own %{_qt4_plugindir}/gui_platform * Tue Dec 1 2009 Than Ngo <[email protected]> - 4.6.0-1 - 4.6.0 * Tue Nov 17 2009 Rex Dieter <[email protected]> - 4.6.0-0.6.rc1 - qt-4.6.0-rc1 * Sat Nov 14 2009 Rex Dieter <[email protected]> - 4.6.0-0.5.beta1 - -tds: Add package with TDS sqldriver (#537586) - add arch'd provides for sql drivers * Sun Nov 8 2009 Rex Dieter <[email protected]> - 4.6.0-0.4.beta1 - -x11: Requires: %{name}-sqlite(ppc-32) -------------------------------------------------------------------------------- References: [ 1 ] Bug #570349 - CVE-2010-0046, CVE-2010-0047, CVE-2010-0048, CVE-2010-0049, CVE-2010-0050, CVE-2010-0052, CVE-2010-0053, CVE-2010-0054 qt, webkitgtk: multiple security vulnerabilities in WebKit https://bugzilla.redhat.com/show_bug.cgi?id=570349 [ 2 ] Bug #568170 - CVE-2010-0648 webkit: stylesheet URL property leaks redirection target https://bugzilla.redhat.com/show_bug.cgi?id=568170 [ 3 ] Bug #568188 - CVE-2010-0656 webkit: possible information disclosure via xhr for file:/// URLs https://bugzilla.redhat.com/show_bug.cgi?id=568188 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update qt' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list [email protected] https://admin.fedoraproject.org/mailman/listinfo/package-announce
