Oval Definition:oval:com.redhat.rhsa:def:20131540
Revision Date:2013-11-21Version:643
Title:RHSA-2013:1540: evolution security, bug fix, and enhancement update (Low)
Description:Evolution is the integrated collection of email, calendaring, contact management, communications, and personal information management (PIM) tools for the GNOME desktop environment.

  • A flaw was found in the way Evolution selected GnuPG public keys when encrypting emails. This could result in emails being encrypted with public keys other than the one belonging to the intended recipient. (CVE-2013-4166)

  • The Evolution packages have been upgraded to upstream version 2.32.3, which provides a number of bug fixes and enhancements over the previous version. These changes include implementation of Gnome XDG Config Folders, and support for Exchange Web Services (EWS) protocol to connect to Microsoft Exchange servers. EWS support has been added as a part of the evolution-exchange packages. (BZ#883010, BZ#883014, BZ#883015, BZ#883017, BZ#524917, BZ#524921, BZ#883044)

  • The gtkhtml3 packages have been upgraded to upstream version 2.32.2, which provides a number of bug fixes and enhancements over the previous version. (BZ#883019)

  • The libgdata packages have been upgraded to upstream version 0.6.4, which provides a number of bug fixes and enhancements over the previous version. (BZ#883032)

    This update also fixes the following bug:

  • The Exchange Calendar could not fetch the "Free" and "Busy" information for meeting attendees when using Microsoft Exchange 2010 servers, and this information thus could not be displayed. This happened because Microsoft Exchange 2010 servers use more strict rules for "Free" and "Busy" information fetching. With this update, the respective code in the openchange packages has been modified so the "Free" and "Busy" information fetching now complies with the fetching rules on Microsoft Exchange 2010 servers. The "Free" and "Busy" information can now be displayed as expected in the Exchange Calendar. (BZ#665967)

    All Evolution users are advised to upgrade to these updated packages, which contain backported patches to correct these issues and add these enhancements. All running instances of Evolution must be restarted for this update to take effect.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2013-4166
    RHSA-2013:1540
    RHSA-2013:1540-02
    RHSA-2013:1540-02
    Platform(s):Red Hat Enterprise Linux 6
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 6 is installed
  • AND
  • cheese is earlier than 0:2.28.1-8.el6
  • AND cheese is signed with Red Hat redhatrelease2 key
  • control-center is earlier than 1:2.28.1-39.el6
  • AND control-center is signed with Red Hat redhatrelease2 key
  • control-center-devel is earlier than 1:2.28.1-39.el6
  • AND control-center-devel is signed with Red Hat redhatrelease2 key
  • control-center-extra is earlier than 1:2.28.1-39.el6
  • AND control-center-extra is signed with Red Hat redhatrelease2 key
  • control-center-filesystem is earlier than 1:2.28.1-39.el6
  • AND control-center-filesystem is signed with Red Hat redhatrelease2 key
  • gnome-panel is earlier than 0:2.30.2-15.el6
  • AND gnome-panel is signed with Red Hat redhatrelease2 key
  • gnome-panel-devel is earlier than 0:2.30.2-15.el6
  • AND gnome-panel-devel is signed with Red Hat redhatrelease2 key
  • gnome-panel-libs is earlier than 0:2.30.2-15.el6
  • AND gnome-panel-libs is signed with Red Hat redhatrelease2 key
  • nautilus-sendto is earlier than 0:2.28.2-4.el6
  • AND nautilus-sendto is signed with Red Hat redhatrelease2 key
  • nautilus-sendto-devel is earlier than 0:2.28.2-4.el6
  • AND nautilus-sendto-devel is signed with Red Hat redhatrelease2 key
  • finch is earlier than 0:2.7.9-11.el6
  • AND finch is signed with Red Hat redhatrelease2 key
  • finch-devel is earlier than 0:2.7.9-11.el6
  • AND finch-devel is signed with Red Hat redhatrelease2 key
  • libpurple is earlier than 0:2.7.9-11.el6
  • AND libpurple is signed with Red Hat redhatrelease2 key
  • libpurple-devel is earlier than 0:2.7.9-11.el6
  • AND libpurple-devel is signed with Red Hat redhatrelease2 key
  • libpurple-perl is earlier than 0:2.7.9-11.el6
  • AND libpurple-perl is signed with Red Hat redhatrelease2 key
  • libpurple-tcl is earlier than 0:2.7.9-11.el6
  • AND libpurple-tcl is signed with Red Hat redhatrelease2 key
  • pidgin is earlier than 0:2.7.9-11.el6
  • AND pidgin is signed with Red Hat redhatrelease2 key
  • pidgin-devel is earlier than 0:2.7.9-11.el6
  • AND pidgin-devel is signed with Red Hat redhatrelease2 key
  • pidgin-docs is earlier than 0:2.7.9-11.el6
  • AND pidgin-docs is signed with Red Hat redhatrelease2 key
  • pidgin-perl is earlier than 0:2.7.9-11.el6
  • AND pidgin-perl is signed with Red Hat redhatrelease2 key
  • planner is earlier than 0:0.14.4-10.el6
  • AND planner is signed with Red Hat redhatrelease2 key
  • planner-devel is earlier than 0:0.14.4-10.el6
  • AND planner-devel is signed with Red Hat redhatrelease2 key
  • planner-eds is earlier than 0:0.14.4-10.el6
  • AND planner-eds is signed with Red Hat redhatrelease2 key
  • gnome-python2-applet is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-applet is signed with Red Hat redhatrelease2 key
  • gnome-python2-brasero is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-brasero is signed with Red Hat redhatrelease2 key
  • gnome-python2-bugbuddy is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-bugbuddy is signed with Red Hat redhatrelease2 key
  • gnome-python2-desktop is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-desktop is signed with Red Hat redhatrelease2 key
  • gnome-python2-evince is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-evince is signed with Red Hat redhatrelease2 key
  • gnome-python2-evolution is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-evolution is signed with Red Hat redhatrelease2 key
  • gnome-python2-gnomedesktop is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-gnomedesktop is signed with Red Hat redhatrelease2 key
  • gnome-python2-gnomekeyring is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-gnomekeyring is signed with Red Hat redhatrelease2 key
  • gnome-python2-gnomeprint is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-gnomeprint is signed with Red Hat redhatrelease2 key
  • gnome-python2-gtksourceview is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-gtksourceview is signed with Red Hat redhatrelease2 key
  • gnome-python2-libgtop2 is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-libgtop2 is signed with Red Hat redhatrelease2 key
  • gnome-python2-libwnck is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-libwnck is signed with Red Hat redhatrelease2 key
  • gnome-python2-metacity is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-metacity is signed with Red Hat redhatrelease2 key
  • gnome-python2-rsvg is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-rsvg is signed with Red Hat redhatrelease2 key
  • gnome-python2-totem is earlier than 0:2.28.0-5.el6
  • AND gnome-python2-totem is signed with Red Hat redhatrelease2 key
  • ekiga is earlier than 0:3.2.6-4.el6
  • AND ekiga is signed with Red Hat redhatrelease2 key
  • totem is earlier than 0:2.28.6-4.el6
  • AND totem is signed with Red Hat redhatrelease2 key
  • totem-devel is earlier than 0:2.28.6-4.el6
  • AND totem-devel is signed with Red Hat redhatrelease2 key
  • totem-jamendo is earlier than 0:2.28.6-4.el6
  • AND totem-jamendo is signed with Red Hat redhatrelease2 key
  • totem-mozplugin is earlier than 0:2.28.6-4.el6
  • AND totem-mozplugin is signed with Red Hat redhatrelease2 key
  • totem-nautilus is earlier than 0:2.28.6-4.el6
  • AND totem-nautilus is signed with Red Hat redhatrelease2 key
  • totem-upnp is earlier than 0:2.28.6-4.el6
  • AND totem-upnp is signed with Red Hat redhatrelease2 key
  • totem-youtube is earlier than 0:2.28.6-4.el6
  • AND totem-youtube is signed with Red Hat redhatrelease2 key
  • libgdata is earlier than 0:0.6.4-2.el6
  • AND libgdata is signed with Red Hat redhatrelease2 key
  • libgdata-devel is earlier than 0:0.6.4-2.el6
  • AND libgdata-devel is signed with Red Hat redhatrelease2 key
  • gtkhtml3 is earlier than 0:3.32.2-2.el6
  • AND gtkhtml3 is signed with Red Hat redhatrelease2 key
  • gtkhtml3-devel is earlier than 0:3.32.2-2.el6
  • AND gtkhtml3-devel is signed with Red Hat redhatrelease2 key
  • evolution-data-server is earlier than 0:2.32.3-18.el6
  • AND evolution-data-server is signed with Red Hat redhatrelease2 key
  • evolution-data-server-devel is earlier than 0:2.32.3-18.el6
  • AND evolution-data-server-devel is signed with Red Hat redhatrelease2 key
  • evolution-data-server-doc is earlier than 0:2.32.3-18.el6
  • AND evolution-data-server-doc is signed with Red Hat redhatrelease2 key
  • evolution is earlier than 0:2.32.3-30.el6
  • AND evolution is signed with Red Hat redhatrelease2 key
  • evolution-devel is earlier than 0:2.32.3-30.el6
  • AND evolution-devel is signed with Red Hat redhatrelease2 key
  • evolution-devel-docs is earlier than 0:2.32.3-30.el6
  • AND evolution-devel-docs is signed with Red Hat redhatrelease2 key
  • evolution-help is earlier than 0:2.32.3-30.el6
  • AND evolution-help is signed with Red Hat redhatrelease2 key
  • evolution-perl is earlier than 0:2.32.3-30.el6
  • AND evolution-perl is signed with Red Hat redhatrelease2 key
  • evolution-pst is earlier than 0:2.32.3-30.el6
  • AND evolution-pst is signed with Red Hat redhatrelease2 key
  • evolution-spamassassin is earlier than 0:2.32.3-30.el6
  • AND evolution-spamassassin is signed with Red Hat redhatrelease2 key
  • openchange is earlier than 0:1.0-6.el6
  • AND openchange is signed with Red Hat redhatrelease2 key
  • openchange-client is earlier than 0:1.0-6.el6
  • AND openchange-client is signed with Red Hat redhatrelease2 key
  • openchange-devel is earlier than 0:1.0-6.el6
  • AND openchange-devel is signed with Red Hat redhatrelease2 key
  • openchange-devel-docs is earlier than 0:1.0-6.el6
  • AND openchange-devel-docs is signed with Red Hat redhatrelease2 key
  • evolution-mapi is earlier than 0:0.32.2-12.el6
  • AND evolution-mapi is signed with Red Hat redhatrelease2 key
  • evolution-mapi-devel is earlier than 0:0.32.2-12.el6
  • AND evolution-mapi-devel is signed with Red Hat redhatrelease2 key
  • evolution-exchange is earlier than 0:2.32.3-16.el6
  • AND evolution-exchange is signed with Red Hat redhatrelease2 key
  • BACK