Resolved Bugs
1150091 – CVE-2014-1571 CVE-2014-1572 CVE-2014-1573 bugzilla: security fixes release
1150092 – CVE-2014-1573 CVE-2014-1572 CVE-2014-1571 bugzilla: security fixes release [fedora-all]<br
Security fix for CVE-2014-1571, CVE-2014-1572, CVE-2014-1573
Category Archives: Security
Security
Fedora 21 Security Update: bugzilla-4.4.6-1.fc21
Fedora 21 Security Update: python-django-horizon-2014.1.3-1.fc21
rebase to 2014.1.3
Fedora 21 Security Update: rsyslog-7.4.10-5.fc21
Fedora 19 Security Update: python-oauth2-1.5.211-8.fc19
Resolved Bugs
1007766 – python-oauth2: various flaws [fedora-all]
1007746 – CVE-2013-4346 python-oauth2: _check_signature() ignores the nonce value when validating signed urls
1007758 – CVE-2013-4347 python-oauth2: Uses poor PRNG in nonce<br
Actually apply patch to fix CVE-2013-4347 (thanks to Jason Green, Matt Wilson).
Fix CVE-2013-4346 and CVE-2013-4347, thanks to Philippe Makowski.
Fix CVE-2013-4346 and CVE-2013-4347, thanks to Philippe Makowski.
Fedora 20 Security Update: bugzilla-4.2.11-1.fc20
Fedora 20 Security Update: openjpeg-1.5.1-13.fc20
Fedora 20 Security Update: rsyslog-7.4.8-2.fc20
Fedora 21 Security Update: python-oauth2-1.5.211-8.fc21
Resolved Bugs
1007766 – python-oauth2: various flaws [fedora-all]
1007746 – CVE-2013-4346 python-oauth2: _check_signature() ignores the nonce value when validating signed urls
1007758 – CVE-2013-4347 python-oauth2: Uses poor PRNG in nonce<br
Actually apply patch to fix CVE-2013-4347 (thanks to Jason Green, Matt Wilson).
Fix CVE-2013-4346 and CVE-2013-4347, thanks to Philippe Makowski.
Fix CVE-2013-4346 and CVE-2013-4347, thanks to Philippe Makowski.
Fedora 20 Security Update: python-oauth2-1.5.211-8.fc20
Resolved Bugs
1007766 – python-oauth2: various flaws [fedora-all]
1007746 – CVE-2013-4346 python-oauth2: _check_signature() ignores the nonce value when validating signed urls
1007758 – CVE-2013-4347 python-oauth2: Uses poor PRNG in nonce<br
Actually apply patch to fix CVE-2013-4347 (thanks to Jason Green, Matt Wilson).
Fix CVE-2013-4346 and CVE-2013-4347, thanks to Philippe Makowski.
Fix CVE-2013-4346 and CVE-2013-4347, thanks to Philippe Makowski.