Hello community, here is the log from the commit of package kdeaddons3 checked in at Wed Oct 3 00:59:10 CEST 2007. -------- --- KDE/kdeaddons3/kdeaddons3.changes 2007-08-04 18:57:34.000000000 +0200 +++ /mounts/work_src_done/STABLE/kdeaddons3/kdeaddons3.changes 2007-09-28 15:55:28.000000000 +0200 @@ -1,0 +2,5 @@ +Fri Sep 28 15:55:13 CEST 2007 - dmueller@suse.de + +- fix quoting in realmedia handler (#326912) + +------------------------------------------------------------------- New: ---- r718346.diff ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ kdeaddons3.spec ++++++ --- /var/tmp/diff_new_pack.r20484/_old 2007-10-03 00:58:42.000000000 +0200 +++ /var/tmp/diff_new_pack.r20484/_new 2007-10-03 00:58:42.000000000 +0200 @@ -12,12 +12,12 @@ Name: kdeaddons3 BuildRequires: SDL-devel db-devel gtk-devel kdebase3-devel kdegames3-devel kdemultimedia3-devel kdemultimedia3-extra kdepim3-devel -License: GPL v2 or later, LGPL v2 or later +License: GPL v2 or later; LGPL v2 or later Group: System/GUI/KDE Summary: Additional Modules for Kate, Kicker, Konqueror, and Noatun BuildRoot: %{_tmppath}/%{name}-%{version}-build Version: 3.5.7 -Release: 5 +Release: 6 Url: http://www.kde.org Requires: kdelibs3 >= %(rpm -q --queryformat '%{VERSION}' kdelibs3) Source: kdeaddons-%{version}.tar.bz2 @@ -27,6 +27,7 @@ Patch3: google-suggest.diff Patch4: permanent-searchbar.diff Patch5: use-db.diff +Patch6: r718346.diff %description This package contains some fun and useful additional modules: @@ -162,6 +163,7 @@ %patch3 %patch4 %patch5 +%patch6 . /etc/opt/kde3/common_options update_admin @@ -349,8 +351,9 @@ /opt/kde3/share/services/kaddressbook/geo_xxport.desktop /opt/kde3/share/icons/*/*/*/ksig.* %doc /opt/kde3/share/doc/HTML/en/ksig - %changelog +* Fri Sep 28 2007 - dmueller@suse.de +- fix quoting in realmedia handler (#326912) * Sat Aug 04 2007 - stbinner@suse.de - add 3_5_BRANCH.diff * Tue Jul 17 2007 - stbinner@suse.de ++++++ r718346.diff ++++++ ------------------------------------------------------------------------ r718346 | mueller | 2007-09-28 15:53:06 +0200 (Fri, 28 Sep 2007) | 2 lines fix shell insertion vulnerability (novell 326912) ------------------------------------------------------------------------ Index: konq-plugins/mediarealfolder/kio_media_realfolder =================================================================== --- konq-plugins/mediarealfolder/kio_media_realfolder (revision 718345) +++ konq-plugins/mediarealfolder/kio_media_realfolder (revision 718346) @@ -1,17 +1,20 @@ #! /usr/bin/env perl -@parts = split(///, $ARGV[0]); +use warnings; +use strict; -my $medium = $parts[$#parts]; +my @parts = split(///, $ARGV[0]); -open(IN, "dcop kded mediamanager properties $medium |"); +my $medium = $parts[$#parts]; -@prop = <IN>; +open(IN, "-|") || exec "dcop", "kded", "mediamanager", "properties", $medium; +my @prop = <IN>; +close(IN); if ($prop[6] =~ /^//) { - $mountpoint = $prop[6]; + my $mountpoint = $prop[6]; chomp($mountpoint); - exec "kfmclient exec 'file://$mountpoint/'"; + exec "kfmclient", "exec", "file://$mountpoint/"; } ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Remember to have fun... --------------------------------------------------------------------- To unsubscribe, e-mail: opensuse-commit+unsubscribe@opensuse.org For additional commands, e-mail: opensuse-commit+help@opensuse.org