ChangeLog for: 2012-04-23 19:18:31

a/openssl-solibs-0.9.8v-x86_64-1.txz Fixes some potentially exploitable buffer overflows. Thanks to Tavis Ormandy, Google Security Team, for discovering this issue and to Adam Langley for fixing it. For more information, see: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2110 (* Security fix *) d/gdb-7.4-x86_64-2.txz: Rebuilt. Changed to --with-python, requested by Benjamin Trigona-Harany. The last time this was tried it caused some problems, as noted in this bug: http://bugs.gentoo.org/show_bug.cgi?id=291328 Please test and let me know if any issues remain. n/openssl-0.9.8v-x86_64-1.txz Fixes some potentially exploitable buffer overflows. Thanks to Tavis Ormandy, Google Security Team, for discovering this issue and to Adam Langley for fixing it. For more information, see: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2110 (* Security fix *) kde/calligra-2.4.0-x86_64-3.txz: Rebuilt. Applied upstream patch to fix calligrawords compiled with gcc-4.7.0. Thanks to Willy Sudiarto Raharjo and David Gabriel Rodriguez Castillo. extra/wicd/wicd-1.7.2.1-x86_64-1.txz: Upgraded. This fixes a local privilege escalation that allows a user to set arbitrary pre/post-connection scripts through D-Bus which are then executed as the wicd user (generally root). For more information, see: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-2095 Thanks to dapal for the workaround allowing us to skip the pybabel requirement (for now), and to Robby Workman for the script update. (* Security fix *)