Resolved Bugs
1224103 – CVE-2015-3202 fuse: incorrect filtering of environment variables leading to privilege escalation
1224105 – CVE-2015-3202 ntfs-3g: fuse: incorrect filtering of environment variables leading to privilege escalation [fedora-all]<br
Fix CVE-2015-3202.
Monthly Archives: May 2015
Fedora 20 Security Update: fuse-2.9.4-1.fc20
Fedora 21 Security Update: batik-1.8-0.18.svn1230816.fc21
Security fix for CVE-2015-0250
Fedora 21 Security Update: pcs-0.9.137-4.fc21
Resolved Bugs
1208294 – CVE-2015-1848 CVE-2015-3983 pcs: improper web session variable signing<br
Fix for CVE-2015-1848, CVE-2015-3983 (sessions not signed)
Fedora 20 Security Update: batik-1.8-0.12.svn1230816.fc20
Security fix for CVE-2015-0250
Fedora 21 Security Update: fuse-2.9.4-1.fc21
Fedora 22 Security Update: fuse-2.9.4-1.fc22
Fedora 20 Security Update: pcs-0.9.115-3.fc20
Resolved Bugs
1208294 – CVE-2015-1848 CVE-2015-3983 pcs: improper web session variable signing<br
Fix for CVE-2015-1848, CVE-2015-3983 (sessions not signed)
Fedora 22 Security Update: pcs-0.9.139-4.fc22
Resolved Bugs
1208294 – CVE-2015-1848 CVE-2015-3983 pcs: improper web session variable signing<br
Fix for CVE-2015-1848, CVE-2015-3983 (sessions not signed)
CVE-2015-0540
SQL injection vulnerability in the xAdmin interface in EMC Document Sciences xPression 4.2 before P44 and 4.5 SP1 before P03 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.