[SECURITY] Fedora Core 4 Update: gnupg-1.4.4-1

2006-06-30 Thread Nalin Dahyabhai
tream version 1.4.4, which places a limit on the size of user ID packets, closing a possible integer overflow (CVE-2006-3082). - * Mon Jun 26 2006 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.4-1 - update to 1.4.4 * Tue Jun 20 2006 Nali

[SECURITY] Fedora Core 5 Update: gnupg-1.4.4-2

2006-06-30 Thread Nalin Dahyabhai
tream version 1.4.4, which places a limit on the size of user ID packets, closing a possible integer overflow (CVE-2006-3082). - * Mon Jun 26 2006 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.4-2 - rebuild * Mon Jun 26 2006 Nalin Dahyab

Fedora Core 5 Update: gnupg-1.4.4-2.2

2006-07-06 Thread Nalin Dahyabhai
) was built without support for CCID smart card readers. This update corrects that oversight. - * Wed Jul 5 2006 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.4-2.2 - try again using per-platform buildprereq (jkeating) * Wed Jul 5

[SECURITY] Fedora Core 4 Update: gnupg-1.4.5-1

2006-08-02 Thread Nalin Dahyabhai
rsion 1.4.5 to correct errors in the parsing of certain types of packets. - * Tue Aug 1 2006 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.5-1 - update to 1.4.5, fixing additional size overflows in packet parsing (#200904, CV

[SECURITY] Fedora Core 5 Update: gnupg-1.4.5-2

2006-08-02 Thread Nalin Dahyabhai
rsion 1.4.5 to correct errors in the parsing of certain types of packets. - * Tue Aug 1 2006 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.5-2 - rebuild - reenable curl support * Tue Aug 1 2006 Nalin Dahyabhai <[EMAIL PROTECT

[SECURITY] Fedora Core 5 Update: krb5-1.4.3-5.1

2006-08-09 Thread Nalin Dahyabhai
words. - Update Information: This update addresses MITKRB-SA-2006-001. - * Tue Aug 8 2006 Nalin Dahyabhai <[EMAIL PROTECTED]> 1.4.3-6 - apply patch to address MITKRB-SA-2006-001 (CVE-2006-3084) * Fri Apr 14 2006 Stepan Kasal <[E

[SECURITY] Fedora Core 5 Update: gnupg-1.4.6-1

2006-12-06 Thread Nalin Dahyabhai
rsion 1.4.6, incorporating fixes for a potential buffer overflow (CVE-2006-6169) and referencing of a stack variable after it passes out of scope (CVE-2006-6235). - * Wed Dec 6 2006 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.6

[SECURITY] Fedora Core 6 Update: gnupg-1.4.6-2

2006-12-06 Thread Nalin Dahyabhai
rsion 1.4.6, incorporating fixes for a potential buffer overflow (CVE-2006-6169) and referencing of a stack variable after it passes out of scope (CVE-2006-6235). - * Wed Dec 6 2006 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.6-

Fedora Core 6 Update: cyrus-sasl-2.1.22-4

2007-01-07 Thread Nalin Dahyabhai
- Fedora Update Notification FEDORA-2007-015 2007-01-07 - Product : Fedora Core 6 Name: cyrus-sasl Version : 2.1.22 Release : 4 Summary :

[SECURITY] Fedora Core 6 Update: krb5-1.5-13

2007-01-09 Thread Nalin Dahyabhai
pdate Information: This update incorporates fixes for recently-announced bugs found in the kadmind daemon. - * Tue Jan 9 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.5-13 - apply fixes from Tom Yu for MITKRB5-SA-2006-002 (CV

[SECURITY] Fedora Core 5 Update: krb5-1.4.3-5.3

2007-01-09 Thread Nalin Dahyabhai
words. - Update Information: This update incorporates a fix for a recently-announced bug found in the kadmind daemon. - * Tue Jan 9 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> 1.4.3-5.3 - apply patch from Tom Yu to fix MITKRB-SA-20

[SECURITY] Fedora Core 6 Update: gnupg-1.4.7-2

2007-03-12 Thread Nalin Dahyabhai
avior. - * Mon Mar 5 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.7-2 - update to 1.4.7, changing the default to not allow multiple plaintexts in a single stream - This update can be downloaded fro

[SECURITY] Fedora Core 5 Update: gnupg-1.4.7-1

2007-03-12 Thread Nalin Dahyabhai
avior. - * Mon Mar 5 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.7-1 - update to 1.4.7, changing the default to not allow multiple plaintexts in a single stream * Wed Dec 6 2006 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.6-1 - update to 1.4.6, incorporating fixes for CVE-

Fedora Core 5 Update: gnupg-1.4.7-4.1

2007-03-19 Thread Nalin Dahyabhai
aging error which prevented the binaries which were included in the previous update from being able to find locale data. - * Mon Mar 12 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.7-4.1 - "override" localedir, be

Fedora Core 6 Update: gnupg-1.4.7-5

2007-03-19 Thread Nalin Dahyabhai
error which prevented the binaries which were included in the previous update from being able to find locale data. - * Mon Mar 12 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.4.7-5 - "override" localedir, because a

[SECURITY] Fedora Core 6 Update: krb5-1.5-21

2007-04-03 Thread Nalin Dahyabhai
u Mar 15 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> 1.5-21 - add patch to fix buffer overflow in krb5kdc and kadmind (#231528, CVE-2007-0957) - add patch to fix double-free in kadmind (#231537, CVE-2007-1216) * Tue Feb 27 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> - 1.5-20 - temporari

[SECURITY] Fedora Core 5 Update: krb5-1.4.3-5.4

2007-04-03 Thread Nalin Dahyabhai
* Tue Apr 3 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> 1.4.3-5.4 - add patch to correct unauthorized access via krb5-aware telnet daemon (#229782, CVE-2007-0956) - add patch to fix buffer overflow in krb5kdc and kadmind (#231528, CVE-2007-0957) - add patch to fix double-free in kadmind (#

[SECURITY] Fedora Core 5 Update: krb5-1.4.3-5.5

2007-06-28 Thread Nalin Dahyabhai
words. - Update Information: This update incorporates fixes for a stack buffer overflow and heap corruption in the RPC library, and a fix for a potential stack buffer overflow in kadmind. - * Wed Jun 27 2007 Nalin Dahyabhai <[EMAIL P

[SECURITY] Fedora Core 6 Update: krb5-1.5-21.1

2007-06-28 Thread Nalin Dahyabhai
words. - Update Information: This update incorporates fixes for a stack buffer overflow and heap corruption in the RPC library, and a fix for a potential stack buffer overflow in kadmind. - * Wed Jun 27 2007 Nalin Dahy

Fedora Core 6 Update: nss_ldap-257-4.fc6

2007-12-08 Thread Nalin Dahyabhai
lling application. - * Wed Nov 21 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> - 257-4 - nss_ldap: go back to linking with static libldap and liblber so that we don't get unresolved references which may be resolved by a d

[SECURITY] Fedora Core 6 Update: krb5-1.5-22.fc6

2007-09-04 Thread Nalin Dahyabhai
ep 4 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> 1.5-22 - incorporate fixes for MITKRB5-SA-2007-006 (CVE-2007-3999, CVE-2007-4000) - This update can be downloaded from: http://download.fedora.redhat.com/pub/fedora/linux/cor

[SECURITY] Fedora Core 6 Update: krb5-1.5-23.fc6

2007-09-07 Thread Nalin Dahyabhai
words. - Update Information: The originally-used patch for CVE-2007-3999 didn't completely fix the bug. This update includes the revised patch. - * Thu Sep 6 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> 1.5-23 - incorporate upd

Fedora Core 6 Update: nss_ldap-257-3.fc6

2007-09-18 Thread Nalin Dahyabhai
fail. - * Fri Aug 24 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> - 257-3 - tack on a disttag * Fri Aug 24 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> - 257-2 - construct LDAP URIs correctly during DNS autoconfiguration (upstream #338) * Tue Aug 21 2007 Nalin Dahyabhai <[EMAIL PROTECTED]&

Fedora Core 6 Update: nss_ldap-257-4.fc6

2007-12-04 Thread Nalin Dahyabhai
lling application. - * Wed Nov 21 2007 Nalin Dahyabhai <[EMAIL PROTECTED]> - 257-4 - nss_ldap: go back to linking with static libldap and liblber so that we don't get unresolved references which may be resolved by a d