ChangeLog for: 2013-02-14 06:35:22
a/gpm-1.20.7-x86_64-1.txz: Upgraded.
This bumps the shared library version number, and will require
several other packages to be recompiled. This will be done after
there's been some time to test this in -current. Meanwhile, things
should continue to work normally with the old shared library in
the aaa_elflibs package.
d/git-1.8.1.3-x86_64-1.txz: Upgraded.
l/QScintilla-2.6.1-x86_64-4.txz: Rebuilt.
Recompiled against the new sip to fix API incompatibilities.
Thanks to ecoslacker and alienBOB.
xap/gimp-2.8.4-x86_64-1.txz: Upgraded.
xap/pidgin-2.10.7-x86_64-1.txz: Upgraded.
This update fixes several security issues:
Remote MXit user could specify local file path.
MXit buffer overflow reading data from network.
Sametime crash with long user IDs.
Crash when receiving a UPnP response with abnormally long values.
For more information, see:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0271
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0272
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0273
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0274
(* Security fix *)