drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Unsichere Verwendung temporärer Verzeichnisse in npm
Name: |
Unsichere Verwendung temporärer Verzeichnisse in npm |
|
ID: |
FEDORA-2013-14523 |
|
Distribution: |
Fedora |
|
Plattformen: |
Fedora 19 |
|
Datum: |
Fr, 23. August 2013, 08:48 |
|
Referenzen: |
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4116 |
|
Applikationen: |
npm |
|
Originalnachricht |
Name : npm Product : Fedora 19 Version : 1.3.6 Release : 4.fc19 URL : http://npmjs.org/ Summary : Node.js Package Manager Description : npm is a package manager for node.js. You can use it to install and publish your node programs. It manages dependencies and does other cool stuff.
------------------------------------------------------------------------------- - Update Information:
This update fixes an rpm error encountered while upgrading from certain older versions of npm. ------------------------------------------------------------------------------- - ChangeLog:
* Thu Aug 8 2013 T.C. Hollingsworth <tchollingsworth@gmail.com> - 1.3.6-4 - remove unnecessary symlink to mandir fixes upgrade path from certain older versions of npm * Tue Jul 30 2013 T.C. Hollingsworth <tchollingsworth@gmail.com> - 1.3.6-2 - license changed from MITNFA to Artistic 2.0 * Tue Jul 30 2013 T.C. Hollingsworth <tchollingsworth@gmail.com> - 1.3.6-1 - new upstream release 1.3.6 * Fri Jul 12 2013 T.C. Hollingsworth <tchollingsworth@gmail.com> - 1.3.3-1 - new upstream release 1.3.3 - fixes insecure temporary directory generation (CVE-2013-4116; RHBZ#983917) * Sun Jun 23 2013 T.C. Hollingsworth <tchollingsworth@gmail.com> - 1.3.0-1 - new upstream release 1.3.0 - use system paths for manual pages and documentation (RHBZ#953051) * Sat Jun 22 2013 T.C. Hollingsworth <tchollingsworth@gmail.com> - 1.2.17-6 - restrict to compatible arches ------------------------------------------------------------------------------- -
This update can be installed with the "yum" update program. Use su -c 'yum update npm' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys ------------------------------------------------------------------------------- - _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-announce
|
|
|
|