-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-ea5c403b3e 2025-07-23 00:57:56.630601+00:00 -------------------------------------------------------------------------------- Name : transfig Product : Fedora 42 Version : 3.2.9a^20250619.ee3f4d8 Release : 2.fc42 URL : https://sourceforge.net/projects/mcj/ Summary : Utility for converting FIG files (made by xfig) to other formats Description : The transfig utility creates a makefile which translates FIG (created by xfig) or PIC figures into a specified LaTeX graphics language (for example, PostScript(TM)). Transfig is used to create TeX documents which are portable (i.e., they can be printed in a wide variety of environments). Install transfig if you need a utility for translating FIG or PIC figures into certain graphics languages. -------------------------------------------------------------------------------- Update Information: Add smoke tests -------------------------------------------------------------------------------- ChangeLog: * Mon Jul 14 2025 Marian Koncek <mkoncek@xxxxxxxxxx> - 1:3.2.9a^20250619.ee3f4d8-2 - Add smoke tests * Thu Jun 19 2025 Marian Koncek <mkoncek@xxxxxxxxxx> - 1:3.2.9a^20250619.ee3f4d8-1 - Update to latest upstream snapshot ee3f4d841d1ba7d5b1b57544c5068822ca92b1af -------------------------------------------------------------------------------- References: [ 1 ] Bug #2373187 - CVE-2025-46399 transfig: Fig2dev Segmentation Fault Vulnerability [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2373187 [ 2 ] Bug #2373193 - CVE-2025-46400 transfig: fig2dev segmentation fault in read_arcobject [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2373193 [ 3 ] Bug #2373196 - CVE-2025-46398 transfig: fig2dev stack-overflow via read_objects [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2373196 [ 4 ] Bug #2373198 - CVE-2025-46397 transfig: fig2dev stack-overflow [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2373198 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-ea5c403b3e' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- package-announce@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to package-announce-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/package-announce@xxxxxxxxxxxxxxxxxxxxxxx Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue