[Cucumber-linux-security] qpdf (security update is available)
A general purpose desktop and server Linux distribution.
Brought to you by:
z5t1
From: Z5T1 <z5...@z5...> - 2017-07-26 15:01:15
|
Update Information A security update is available for qpdf for the following versions of Cucumber Linux: * 1.0 Here are the details from the Cucumber 1.0 changelog: +----------------+ Wed Jul 26 10:29:37 EDT 2017 apps-base/qpdf rebuilt (build 2) to fix a few denial of service vulnerabilities that resulted from an infinite loop and consequential stack consumption. For more information see: https://github.com/qpdf/qpdf/commit/ac3c81a8edcb44e2669485630d6718c96a6ad6e9?diff=unified#diff-ad119d01ec6004b768ca4c575f4a3df1 https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-11624 https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-11625 https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-11626 https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-11627 multilib/apps-base/qpdf rebuilt (version 2, x86_64 only). * SECURITY FIX * +----------------+ ------------------------------------------------------------------------ Installing the Update The updated package can be installed via Pickle by running the following commands (as root): # pickle --update # pickle Make sure qpdf is selected on the update list, and then select Ok. Pickle will then install the updated package. If you prefer to download the updated package manually, it can be found at the following location: Cucumber 1.0 i686: http://mirror.cucumberlinux.com/cucumber/cucumber-1.0/cucumber-i686/apps-base/qpdf-6.0.0-i686-2.txz Cucumber 1.0 x86_64: http://mirror.cucumberlinux.com/cucumber/cucumber-1.0/cucumber-x86_64/apps-base/qpdf-6.0.0-x86_64-2.txz http://mirror.cucumberlinux.com/cucumber/cucumber-1.0/cucumber-x86_64/multilib/apps-base/qpdf-lib_i686-6.0.0-lib_i686-2.txz To upgrade the package manually, download the new package and run the following command (as root): # upgradepkg qpdf-6.0.0-i686-2.txz ------------------------------------------------------------------------ The Cucumber Linux Security Team cuc...@li... http://www.cucumberlinux.com/security.php |