From Mageia wiki
Jump to: navigation, search

MGASA-2012-0340

Date: November 23rd, 2012
Affected releases: 1


Description:
Updated libvoikko packages fix security vulnerability:

This update provides version 3.2.1, which contains the following fix.

Fix handling of embedded null characters in input strings entered through
the Python interface. The bug could be used to cause denial of service
conditions and possibly other problems. Users of these interfaces are
recommended to upgrade to this release. Applications that use the native
C++ library directly (this includes all well known desktop applications)
are not affected by this bug and no changes to the native library have
been made in this release.


Updated Packages:
lib(64)voikko1-3.2.1-1.mga1
lib(64)voikko-devel-3.2.1-1.mga1
python-libvoikko-3.2.1-1.mga1
voikko-tools-3.2.1-1.mga1


References:
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/062164.html
https://bugs.mageia.org/show_bug.cgi?id=7067