Bug 8422

Summary: Security update request for opera, to 12.12
Product: Mageia Reporter: Anssi Hannula <anssi.hannula>
Component: SecurityAssignee: QA Team <qa-bugs>
Status: RESOLVED FIXED QA Contact:
Severity: normal    
Priority: Normal CC: davidwhodgins, sysadmin-bugs, tmb, verlindenjohan
Version: 2Keywords: Security, validated_update
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard: MGA2-64-OK MGA2-32-OK
Source RPM: opera CVE:
Status comment:

Description Anssi Hannula 2012-12-18 13:15:24 CET
Opera 12.12 has been pushed to mga2 nonfree/updates_testing.

Suggested advisory
===================
Opera 12.12 fixes several security and stability issues found in previous
versions and contains other general fixes.

Fixed an issue where malformed GIF images could allow execution of arbitrary code. (kb 1038, critical severity)

Fixed an issue where private data could be disclosed to other computer users, or be modified by them, as reported by Jann Horn. (kb 1039, high severity)

Fixed an issue where repeated attempts to access a target site could trigger address field spoofing, as reported by Masato Kinugawa. (kb 1040, low severity)

For a complete list of changes including the non-security fixes, see the referenced changelog.

http://www.opera.com/support/kb/view/1038/
http://www.opera.com/support/kb/view/1039/
http://www.opera.com/support/kb/view/1040/
http://www.opera.com/docs/changelogs/unified/1212/
====================

Packages:
opera-12.12-1.mga2.nonfree
Comment 1 Johan Verlinden 2012-12-18 18:48:31 CET
Testing x86_64, MGA2

CC: (none) => verlindenjohan

Comment 2 Dave Hodgins 2012-12-18 20:20:24 CET
Testing complete on Mageia 2 i586 and x86-64

Could someone from the sysadmin team push the srpm
opera-12.12-1.mga2.nonfree.src.rpm
from Mageia 2 Nonfree Updates Testing to Nonfree Updates.

Advisory: Opera 12.12 fixes several security and stability issues found in previous
versions and contains other general fixes.

Fixed an issue where malformed GIF images could allow execution of arbitrary
code. (kb 1038, critical severity)

Fixed an issue where private data could be disclosed to other computer users,
or be modified by them, as reported by Jann Horn. (kb 1039, high severity)

Fixed an issue where repeated attempts to access a target site could trigger
address field spoofing, as reported by Masato Kinugawa. (kb 1040, low severity)

For a complete list of changes including the non-security fixes, see the
referenced changelog.

http://www.opera.com/support/kb/view/1038/
http://www.opera.com/support/kb/view/1039/
http://www.opera.com/support/kb/view/1040/
http://www.opera.com/docs/changelogs/unified/1212/

https://bugs.mageia.org/show_bug.cgi?id=8422

Keywords: (none) => validated_update
CC: (none) => davidwhodgins, sysadmin-bugs
Whiteboard: (none) => MGA2-64-OK MGA2-32-OK

Comment 3 Dave Hodgins 2012-12-20 20:56:24 CET
Ping sysadmin team. Opera is ready to push to updates.  See Comment 2 for details.
Comment 4 Thomas Backlund 2012-12-20 23:22:55 CET
Update pushed:
https://wiki.mageia.org/en/Support/Advisories/MGASA-2012-0364

Status: NEW => RESOLVED
CC: (none) => tmb
Resolution: (none) => FIXED