-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2012-11872 2012-08-14 21:39:47 --------------------------------------------------------------------------------
Name : emacs Product : Fedora 16 Version : 23.3 Release : 10.fc16 URL : http://www.gnu.org/software/emacs/ Summary : GNU Emacs text editor Description : Emacs is a powerful, customizable, self-documenting, modeless text editor. Emacs contains special code editing features, a scripting language (elisp), and the capability to read mail, news, and more without leaving the editor. This package provides an emacs binary with support for X windows. -------------------------------------------------------------------------------- Update Information: CVE-2012-3479 emacs: Evaluation of 'eval' forms in file-local variable sections, when 'enable-local-variables' set to ':safe' -------------------------------------------------------------------------------- ChangeLog: * Tue Aug 14 2012 Karel Klíč <[email protected]> - 1:23.3-10 - CVE-2012-3479 emacs: Evaluation of 'eval' forms in file-local variable sections, when 'enable-local-variables' set to ':safe' * Thu Jan 12 2012 Karel Klíč <[email protected]> - 1:23.3-9 - Added patch to handle CVE-2012-0035: CEDET global-ede-mode file loading vulnerability (rhbz#773024) * Wed Nov 23 2011 Karel Klíč <[email protected]> - 1:23.3-8 - Check for _NET_WM_STATE_HIDDEN (rhbz#711739) -------------------------------------------------------------------------------- References: [ 1 ] Bug #847698 - CVE-2012-3479 emacs: Evaluation of 'eval' forms in file-local variable sections, when 'enable-local-variables' set to ':safe' https://bugzilla.redhat.com/show_bug.cgi?id=847698 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update emacs' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list [email protected] https://admin.fedoraproject.org/mailman/listinfo/package-announce
