Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora 10: Update Prelude-Manager Permissions to Improve Security

fedora
Calendar Grey May 2, 2009
Dist Fedora Esm H88
The recent update for Fedora 10 focuses on refining prelude-manager permissions to strengthen the security of database access.
The configuration file of prelude-manager contains a database password and is world readable

Summary

Prelude Manager is the main program of the Prelude Hybrid IDS

suite. It is a multithreaded server which handles connections from

the Prelude sensors. It is able to register local or remote

sensors, let the operator configure them remotely, receive alerts,

and store alerts in a database or any format supported by

reporting plugins, thus providing centralized logging and

analysis. It also provides relaying capabilities for failover and

replication. The IDMEF standard is used for alert representation.

Support for filtering plugins allows you to hook in different

places in the Manager to define custom criteria for alert relaying

and logging.

Update Information:

The configuration file of prelude-manager contains a database password and is world readable. This update restricts permissions to the root account.

Change Log

* Wed Apr 22 2009 Steve Grubb 0.9.14.2-2 - Adjusted permissions on dirs and conf files

References

Fedora Update Notification FEDORA-2009-3931 2009-04-27 20:37:27
Name : prelude-manager Product : Fedora 10 Version : 0.9.14.2 Release : 2.fc10 URL : https://prelude-ids.org/ Summary : Prelude-Manager Description : Prelude Manager is the main program of the Prelude Hybrid IDS suite. It is a multithreaded server which handles connections from the Prelude sensors. It is able to register local or remote sensors, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. It also provides relaying capabilities for failover and replication. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert relaying and logging.

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update prelude-manager' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
important
Lowest
Low
Medium
High
Critical

Name: prelude-manager
Product: Fedora 10
Version: 0.9.14.2
Release: 2.fc10
Summary: Prelude-Manager

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here