Date: Wed, 18 Feb 2009 14:23:56 -0600 Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: FASTBUGS for SL 4.x i386/x86_64 Comments: To: "scientific-linux-errata@fnal.gov" The following FASTBUGS have been uploaded to i386: isdn4k-utils-3.2-19.i386.rpm isdn4k-utils-devel-3.2-19.i386.rpm isdn4k-utils-vboxgetty-3.2-19.i386.rpm sudo-1.6.7p5-30.1.5.i386.rpm xisdnload-3.2-19.i386.rpm x86_64: isdn4k-utils-3.2-19.el4.x86_64.rpm isdn4k-utils-devel-3.2-19.el4.x86_64.rpm isdn4k-utils-vboxgetty-3.2-19.el4.x86_64.rpm sudo-1.6.7p5-30.1.5.x86_64.rpm xisdnload-3.2-19.el4.x86_64.rpm -Connie Sieh -Troy Dawson Date: Thu, 19 Feb 2009 15:53:03 -0600 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: imap on SL3.x i386/x86_64 Comments: To: "scientific-linux-errata@fnal.gov" Synopsis: Moderate: imap security update Issue date: 2009-02-19 CVE Names: CVE-2008-5005 A buffer overflow flaw was discovered in the dmail and tmail mail delivery utilities shipped with imap. If either of these utilities were used as a mail delivery agent, a remote attacker could potentially use this flaw to run arbitrary code as the targeted user by sending a specially-crafted mail message to the victim. (CVE-2008-5005) SL 3.0.x SRPMS: imap-2002d-15.src.rpm i386: imap-2002d-15.i386.rpm imap-devel-2002d-15.i386.rpm imap-utils-2002d-15.i386.rpm x86_64: imap-2002d-15.x86_64.rpm imap-devel-2002d-15.x86_64.rpm imap-utils-2002d-15.x86_64.rpm -Connie Sieh -Troy Dawson