drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Mangelnde Rechteprüfung in apache-commons-daemon
Name: |
Mangelnde Rechteprüfung in apache-commons-daemon |
|
ID: |
FEDORA-2011-10936 |
|
Distribution: |
Fedora |
|
Plattformen: |
Fedora 15 |
|
Datum: |
Sa, 27. August 2011, 18:40 |
|
Referenzen: |
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-2729 |
|
Applikationen: |
apache-commons-daemon |
|
Originalnachricht |
Name : apache-commons-daemon Product : Fedora 15 Version : 1.0.7 Release : 1.fc15 URL : http://commons.apache.org/daemon Summary : Defines API to support an alternative invocation mechanism Description : The scope of this package is to define an API in line with the current Java Platform APIs to support an alternative invocation mechanism which could be used instead of the public static void main(String[]) method. This specification covers the behavior and life cycle of what we define as Java daemons, or, in other words, non interactive Java applications.
------------------------------------------------------------------------------- - Update Information:
This update fixes several bugs and also security issue CVE-2011-2729.
Users are encouraged to update as soon as possible. ------------------------------------------------------------------------------- - ChangeLog:
* Mon Aug 15 2011 Stanislav Ochotnicky <sochotnicky@redhat.com> - 1.0.7-1 - Update to latest upstream (1.0.7) - Fix CVE-2011-2729 * Wed Jul 20 2011 Stanislav Ochotnicky <sochotnicky@redhat.com> - 1.0.6-1 - Update to latest upstream (1.0.6) - Cleanups according to new guidelines * Mon May 9 2011 Stanislav Ochotnicky <sochotnicky@redhat.com> - 1.0.5-5 - Use mvn-rpmbuild instead of mvn-local (changes in maven) * Wed May 4 2011 Dan Horák <dan[at]danny.cz> - 1.0.5-4 - updated the s390x patch ------------------------------------------------------------------------------- - References:
[ 1 ] Bug #730400 - CVE-2011-2729 jakarta-commons-daemon: jsvc does not drop capabilities allowing access to files and directories owned by the superuser https://bugzilla.redhat.com/show_bug.cgi?id=730400 ------------------------------------------------------------------------------- -
This update can be installed with the "yum" update program. Use su -c 'yum update apache-commons-daemon' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys ------------------------------------------------------------------------------- - _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-announce
|
|
|
|