Summary
The remote host is missing an update to gupnp
announced via advisory FEDORA-2009-5861.
Solution
Apply the appropriate updates.
This update can be installed with the yum update program. Use su -c 'yum update gupnp' at the command line.
For more information, refer to Managing Software with yum, available at http://docs.fedoraproject.org/yum/.
https://secure1.securityspace.com/smysecure/catid.html?in=FEDORA-2009-5861
Insight
Update Information:
New upstream release that fixes a bug where the gupnp stack crashes when passed empty content.
ChangeLog: http://git.gupnp.org/cgit.cgi?url=gupnp/tree/NEWS&id=ce714a6700ce03953a2886a66ec57db59205f4e6 Bug report: http://bugzilla.openedhand.com/show_bug.cgi?id=1604
Other bugs fixed:
- bug#1570: gupnp doesn't set the pkgconfig lib dir correctly in 64 bit env.
- bug#1574: Avoid using asserts.
- bug#1592: gupnp_device_info_get_icon_url() does not return the closest match.
- bug#1604: Crash on action without any content.
ChangeLog:
* Wed Jun 3 2009 Peter Robinson 0.12.8-1
- New upstream release
* Mon Apr 27 2009 Peter Robinson 0.12.7-1
- New upstream release
* Wed Mar 4 2009 Peter Robinson 0.12.6-4
- Move docs to noarch sub package
* Mon Mar 2 2009 Peter Robinson 0.12.6-3
- Add some extra -devel Requires packages
* Tue Feb 24 2009 Fedora Release Engineering - 0.12.6-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild * Mon Feb 23 2009 Peter Robinson 0.12.6-1
- New upstream release
* Wed Jan 14 2009 Peter Robinson 0.12.5-1
- New upstream release
* Thu Dec 18 2008 Peter Robinson 0.12.4-3
- Add gtk-doc build req
* Sat Nov 22 2008 Peter Robinson 0.12.4-2
- Fix summary
* Mon Nov 17 2008 Peter Robinson 0.12.4-1
- New upstream release
Severity
Classification
-
CVE CVE-2009-2174 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
Related Vulnerabilities