<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="6dd48677ec191fa7d9fdef481ba2a8ee"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="tomboy-4698"
    timestamp="1195090377"
    engine="1.0">
  <yum:name>tomboy</yum:name>
  <summary lang="en">tomboy security update</summary>
  <summary lang="de">tomboy Sicherheitsupdate</summary>
  <description lang="en">The tomboy mediaplayer used LD_LIBRARY_PATH unsafely by
allowing empty LD_LIBRARY_PATH components.

This would enable the player to load its shared libraries
of the current directory which might contain user supplied
shared libraries, potentially supplied from the network by
an attacker. (CVE-2005-4790)
</description>
  <description lang="de">Der tomboy Medienabspieler benutzte LD_LIBRARY_PATH auf
unsichere Weise durch Erlauben von leeren Komponenten
innerhalb von LD_LIBRARY_PATH.

Dadurch versucht der Player, auch dynamische Bibliotheken
aus seinem aktuellen Verzeichnis zu laden, wodurch ein
Angreifer potentiell solche Bibliotheken unterschieben
kann.  (CVE-2005-4790)
</description>
  <yum:version ver="4698" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="tomboy" epoch="0" ver="0.8.0" rel="9.2" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>tomboy</name>
      <arch>i586</arch>
      <version epoch="0" ver="0.8.0" rel="9.2"/>
      <checksum type="sha" pkgid="YES">a3a6d1e6a2d2fddb26740fb175f3b44cb388a25f</checksum>
      <time file="1195125194" build="1195090377"/>
      <size package="496899" installed="1712123" archive="1439240"/>
      <location href="rpm/i586/tomboy-0.8.0-9.2.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="tomboy" epoch="0" ver="0.8.0" rel="9.2" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="tomboy"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <patchrpm>
          <location href="rpm/i586/tomboy-0.8.0-9.2.i586.patch.rpm"/>
          <checksum type="sha">f4c4adefc7410703f2cb789060b541cd250d6ded</checksum>
          <time file="1195129280" build="1195090377"/>
          <size package="386810" archive="1007340"/>
          <base-version epoch="0" ver="0.8.0" rel="9"/>
        </patchrpm>
        <deltarpm>
          <location href="rpm/i586/tomboy-0.8.0-9_9.2.i586.delta.rpm"/>
          <checksum type="sha">fd22a084128c656207e5e5652abb80e959a976dd</checksum>
          <time file="1195129281" build="1195090377"/>
          <size package="38199" archive="0"/>
          <base-version epoch="0" ver="0.8.0" rel="9" md5sum="a120f4d9a9b1824a5fd327ac7d4da508" buildtime="1190817219" sequence_info="tomboy-0.8.0-9-7ae111da190cbe140374a376ab1a7d26f34811f1"/>
        </deltarpm>
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>tomboy</name>
      <arch>ppc</arch>
      <version epoch="0" ver="0.8.0" rel="9.2"/>
      <checksum type="sha" pkgid="YES">81224cfe464881d5817c756a5881bf3d53249525</checksum>
      <time file="1195120471" build="1195081603"/>
      <size package="503909" installed="1733631" archive="1460748"/>
      <location href="rpm/ppc/tomboy-0.8.0-9.2.ppc.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="tomboy" epoch="0" ver="0.8.0" rel="9.2" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="tomboy"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <patchrpm>
          <location href="rpm/ppc/tomboy-0.8.0-9.2.ppc.patch.rpm"/>
          <checksum type="sha">8b49761cfbe45e9d43a1cb0def43099eb75ff255</checksum>
          <time file="1195129283" build="1195081603"/>
          <size package="470401" archive="1373896"/>
          <base-version epoch="0" ver="0.7.6" rel="2"/>
          <base-version epoch="0" ver="0.8.0" rel="9"/>
        </patchrpm>
        <deltarpm>
          <location href="rpm/ppc/tomboy-0.8.0-9_9.2.ppc.delta.rpm"/>
          <checksum type="sha">72a25ba21c6bd5535378e76e655be648050e559a</checksum>
          <time file="1195129284" build="1195081603"/>
          <size package="38347" archive="0"/>
          <base-version epoch="0" ver="0.8.0" rel="9" md5sum="0884acc4a5aec6d661f2e6082c55b898" buildtime="1190814995" sequence_info="tomboy-0.8.0-9-82f7cb99111c9d1f84174d6a40a8a0bff34811f1"/>
        </deltarpm>
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>tomboy</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="0.8.0" rel="9.2"/>
      <checksum type="sha" pkgid="YES">69bca1e9ca970de8da8497fbe573c875da44d843</checksum>
      <time file="1195124851" build="1195091434"/>
      <size package="445481" installed="1217911" archive="1187708"/>
      <location href="rpm/x86_64/tomboy-0.8.0-9.2.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="tomboy" epoch="0" ver="0.8.0" rel="9.2" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="tomboy"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <patchrpm>
          <location href="rpm/x86_64/tomboy-0.8.0-9.2.x86_64.patch.rpm"/>
          <checksum type="sha">f76de32a871dea9f62958888c224378e509b0d8b</checksum>
          <time file="1195129285" build="1195091434"/>
          <size package="353177" archive="920692"/>
          <base-version epoch="0" ver="0.8.0" rel="9"/>
        </patchrpm>
        <deltarpm>
          <location href="rpm/x86_64/tomboy-0.8.0-9_9.2.x86_64.delta.rpm"/>
          <checksum type="sha">3ba727fdf3c362890ad0435ba0ef07781a5ba92b</checksum>
          <time file="1195129286" build="1195091434"/>
          <size package="38592" archive="0"/>
          <base-version epoch="0" ver="0.8.0" rel="9" md5sum="ca778a64e12f1bac89113bd249ee60f1" buildtime="1190817614" sequence_info="tomboy-0.8.0-9-623b6f2bfa6a70816a77e900bbda38a7f34811f1"/>
        </deltarpm>
      </pkgfiles>
    </package>
  </atoms>
</patch>
