Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Fedora 20: Security Advisory for mksh R50f Critical Fix

fedora
Calendar Grey April 30, 2015
Dist Fedora Esm H88
The R50f mksh version released from Fedora 20 addresses major security vulnerabilities and includes important patches. Upgrade today!
R50f is a required security and bugfix release: * Add a patch marker for vendor patch versioning to mksh.1 * SECURITY: make unset HISTFILE actually work * Document some more iss...

Summary

mksh is the MirBSD enhanced version of the Public Domain Korn shell (pdksh),

a bourne-compatible shell which is largely similar to the original AT&T Korn

shell. It includes bug fixes and feature improvements in order to produce a

modern, robust shell good for interactive and especially script use, being a

bourne shell replacement, pdksh successor and an alternative to the C shell.

Update Information:

R50f is a required security and bugfix release:

* Add a patch marker for vendor patch versioning to mksh.1 * SECURITY: make unset HISTFILE actually work * Document some more issues with the current history code * Remove some unused code * RCSID-only sync with OpenBSD, for bogus and irrelevant changes * Also disable field splitting for alias 'local= ypeset' * Fix read -n-1 to not be identical to read -N-1 * Several fixes and improvements to lksh(1) and mksh(1) manpages * More code (int → size_t), comment and testsuite fixes * Make dot.mkshrc more robust (LP#1441853) * Fix issues with IFS=' read, found by edualbus * Fix integer overflows related to file descriptor parsing, found by Pawel Wylecial (LP#1440685); reduce memory usage for I/O redirs * Document in the manpage how to set ±U according to the current locale settings via LANG/LC_* parameters (cf. Debian #782225) * Some code cleanup and restructuring * Handle number parsing ...

Read the Full Advisory

Change Log

* Mon Apr 20 2015 Robert Scheck 50f-1 - Upgrade to 50f * Thu Mar 19 2015 Robert Scheck 50e-1 - Upgrade to 50e - Apply https://fedoraproject.org/wiki/Features/UsrMove * Wed Oct 8 2014 Robert Scheck 50d-1 - Upgrade to 50d (#1150493) * Fri Oct 3 2014 Robert Scheck 50c-1 - Upgrade to 50c * Thu Sep 11 2014 Robert Scheck 50b-1 - Upgrade to 50b * Sun Aug 17 2014 Fedora Release Engineering - 50-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild * Thu Jul 3 2014 Robert Scheck 50-1 - Upgrade to 50 * Sat Jun 7 2014 Fedora Release Engineering - 49-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Tue Jan 14 2014 Robert Scheck 49-1 - Upgrade to 49

References

Fedora Update Notification FEDORA-2015-6505 2015-04-21 13:43:40
Name : mksh Product : Fedora 20 Version : 50f Release : 1.fc20 URL : Summary : MirBSD enhanced version of the Korn Shell Description : mksh is the MirBSD enhanced version of the Public Domain Korn shell (pdksh), a bourne-compatible shell which is largely similar to the original AT&T Korn shell. It includes bug fixes and feature improvements in order to produce a modern, robust shell good for interactive and especially script use, being a bourne shell replacement, pdksh successor and an alternative to the C shell.

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update mksh' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: mksh
Product: Fedora 20
Version: 50f
Release: 1.fc20
URL: Summary : MirBSD enhanced version of the Korn Shell

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here