MGASA-2012-0340
Date: | November 23rd, 2012 |
Affected releases: | 1 |
Description:
Updated libvoikko packages fix security vulnerability:
This update provides version 3.2.1, which contains the following fix.
Fix handling of embedded null characters in input strings entered through
the Python interface. The bug could be used to cause denial of service
conditions and possibly other problems. Users of these interfaces are
recommended to upgrade to this release. Applications that use the native
C++ library directly (this includes all well known desktop applications)
are not affected by this bug and no changes to the native library have
been made in this release.
Updated Packages:
lib(64)voikko1-3.2.1-1.mga1
lib(64)voikko-devel-3.2.1-1.mga1
python-libvoikko-3.2.1-1.mga1
voikko-tools-3.2.1-1.mga1
References:
http://lists.fedoraproject.org/pipermail/package-announce/2011-June/062164.html
https://bugs.mageia.org/show_bug.cgi?id=7067