--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2010-9995
2010-06-16 16:59:10
--------------------------------------------------------------------------------
Name : pcsc-lite
Product : Fedora 11
Version : 1.5.2
Release : 3.fc11
URL :
http://pcsclite.alioth.debian.org/
Summary : PC/SC Lite smart card framework and applications
Description :
The purpose of PC/SC Lite is to provide a Windows(R) SCard interface
in a very small form factor for communicating to smartcards and
readers. PC/SC Lite uses the same winscard API as used under
Windows(R). This package includes the PC/SC Lite daemon, a resource
manager that coordinates communications with smart card readers and
smart cards that are connected to the system, as well as other command
line tools.
--------------------------------------------------------------------------------
Update Information:
An update to address a buffer overflow which could allow a local attacker to
elevate privileges.
--------------------------------------------------------------------------------
ChangeLog:
* Tue Jun 15 2010 Kalev Lember <kalev@smartlink.ee> - 1.5.2-3
- Patch for CVE-2010-0407
* Wed Jun 17 2009 Bob Relyea <rrelyea@redhat.com> - 1.5.2-2
- Pick up security fixes from upstream
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #596426 - CVE-2010-0407 pcsc-lite: Privilege escalation via specially-crafted client to PC/SC Smart Card daemon messages
https://bugzilla.redhat.com/show_bug.cgi?id=596426
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update pcsc-lite' at the command line.
For more information, refer to "Managing Software with yum",
available at
http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce