Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Sun, 1 Aug 2010 20:32:52 -0500 Reply-To: Connie SiehSender: Security Errata for Scientific Linux From: Connie Sieh Subject: Security ERRATA Important: freetype on SL3 Comments: To: scientific Synopsis: Important: freetype security update Issue date: 2010-07-30 CVE Names: CVE-2010-2500 CVE-2010-2527 CVE-2010-2541 FreeType is a free, high-quality, portable font engine that can open and manage font files. It also loads, hints, and renders individual glyphs efficiently. These packages provide both the FreeType 1 and FreeType 2 font engines. An integer overflow flaw was found in the way the FreeType font engine processed font files. If a user loaded a carefully-crafted font file with an application linked against FreeType, it could cause the application to crash or, possibly, execute arbitrary code with the privileges of the user running the application. (CVE-2010-2500) Several buffer overflow flaws were found in the FreeType demo applications. If a user loaded a carefully-crafted font file with a demo application, it could cause the application to crash or, possibly, execute arbitrary code with the privileges of the user running the application. (CVE-2010-2527, CVE-2010-2541) We would like to thank Robert Swiecki of the Google Security Team for the discovery of the CVE-2010-2500 and CVE-2010-2527 issues. Note: All of the issues in this erratum only affect the FreeType 2 font engine. Users are advised to upgrade to these updated packages, which contain backported patches to correct these issues. The X server must be restarted (log out, then log back in) for this update to take effect. SL 3 Source: freetype-2.1.4-15.el3.src.rpm i386: freetype-2.1.4-15.el3.i386.rpm freetype-devel-2.1.4-15.el3.i386.rpm x86_64: freetype-2.1.4-15.el3.i386.rpm freetype-2.1.4-15.el3.x86_64.rpm freetype-devel-2.1.4-15.el3.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Tue, 3 Aug 2010 20:29:26 -0500 Reply-To: Connie Sieh Sender: Security Errata for Scientific Linux From: Connie Sieh Subject: Security ERRATA Moderate: lftp for SL 5 Comments: To: scientific Synopsis: Moderate: lftp security update Issue date: 2010-08-02 CVE Names: CVE-2010-2251 LFTP is a sophisticated file transfer program for the FTP and HTTP protocols. Like Bash, it has job control and uses the Readline library for input. It has bookmarks, built-in mirroring, and can transfer several files in parallel. It is designed with reliability in mind. It was discovered that lftp trusted the file name provided in the flaw to write or overwrite files in the current working directory of a victim running lftp, by sending a different file from what the victim requested. (CVE-2010-2251) To correct this flaw, the following changes were made to lftp: the "xfer:clobber" option now defaults to "no", causing lftp to not overwrite existing files, and a new option, "xfer:auto-rename", which defaults to "no", has been introduced to control whether lftp should use server-suggested file names. Refer to the "Settings" section of the lftp(1) manual page for additional details on changing lftp settings. All lftp users should upgrade to this updated package, which contains a backported patch to correct this issue. Source: lftp-3.7.11-4.el5_5.3.src.rpm i386: lftp-3.7.11-4.el5_5.3.i386.rpm x86_64: lftp-3.7.11-4.el5_5.3.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Tue, 3 Aug 2010 20:48:52 -0500 Reply-To: Connie Sieh Sender: Security Errata for Scientific Linux From: Connie Sieh Subject: Re: Security ERRATA Moderate: lvm2-cluster,lvm2 for SL5 Comments: To: =?ISO-8859-1?Q?Herv=E9_Riboulot?= Comments: cc: scientific In-Reply-To: <4C551EF8.4020105@wanadoo.fr> The following have been uploaded to the security errata area because of dependencies of lvm2. i386: device-mapper-1.02.39-1.el5_5.2.i386.rpm device-mapper-event-1.02.39-1.el5_5.2.i386.rpm x86_64: device-mapper-1.02.39-1.el5_5.2.i386.rpm device-mapper-1.02.39-1.el5_5.2.x86_64.rpm device-mapper-event-1.02.39-1.el5_5.2.x86_64.rpm -Connie Sieh On Sun, 1 Aug 2010, Herv=E9 Riboulot wrote: > Hello, > > I cannot process the security update due to dependencies issues: 'Error: > Missing Dependency: device-mapper >=3D 1.02.39-1.el5_5.1 is needed by package > lvm2-2.02.56-8.el5_5.6.x86_64 (sl-security)'. > > Device-mapper (i386 and 86_64) are installed: > > rpm -qa device-mapper > device-mapper-1.02.39-1.el5.x86_64 > device-mapper-1.02.39-1.el5.i386 > > > I'm running SL 5.5 on the following configuration: 2.6.18-194.8.1.el5 #1 > SMP Thu Jul 1 16:05:53 EDT 2010 x86_64 x86_64 x86_64 GNU/Linux > > Best regards, > > > > > Le 01.08.2010 06:29, Connie Sieh a =E9crit: >> >> Issue date: 2010-07-28 >> CVE Names: CVE-2010-2526 >> Description: >> >> It was discovered that the cluster logical volume manager daemon (clvmd) >> did not verify the credentials of clients connecting to its control UNIX >> abstract socket, allowing local, unprivileged users to send control >> commands that were intended to only be available to the privileged root >> user. This could allow a local, unprivileged user to cause clvmd to exit, >> or request clvmd to activate, deactivate, or reload any logical volume on >> the local system or another system in the cluster. (CVE-2010-2526) >> >> Note: This update changes clvmd to use a pathname-based socket rather than >> an abstract socket. As such, the lvm2 update 2010:0569, which changes >> LVM to also use this pathname-based socket, must also be installed for LVM >> to be able to communicate with the updated clvmd. >> >> All lvm2-cluster users should upgrade to this updated package, which >> contains a backported patch to correct this issue. After installing the >> updated package, clvmd must be restarted for the update to take effect. >> >> 5. Bugs fixed >> >> CVE-2010-2526 lvm2-cluster: insecurity when communicating between lvm2 and >> clvmd >> >> 6. Package List: >> >> SRPM: >> lvm2-cluster-2.02.56-7.el5_5.4.src.rpm >> >> i386: >> lvm2-cluster-2.02.56-7.el5_5.4.i386.rpm >> >> x86_64: >> lvm2-cluster-2.02.56-7.el5_5.4.x86_64.rpm >> >> >> lvm2 update included because of dependency. >> >> i386: >> lvm2-2.02.56-8.el5_5.6.i386.rpm >> x86_64: >> lvm2-2.02.56-8.el5_5.6.x86_64.rpm >> >> -Connie Sieh >> -Troy Dawson >> >> > > > > > > From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Thu, 5 Aug 2010 15:01:56 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Important: tomcat5 on SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Important: tomcat5 security update Issue date: 2010-08-02 CVE Names: CVE-2009-2693 CVE-2009-2696 CVE-2009-2902 CVE-2010-2227 A flaw was found in the way Tomcat handled the Transfer-Encoding header in HTTP requests. A specially-crafted HTTP request could prevent Tomcat from sending replies, or cause Tomcat to return truncated replies, or replies containing data related to the requests of other users, for all subsequent HTTP requests. (CVE-2010-2227) The Tomcat security update RHSA-2009:1164 did not, unlike the erratum text stated, provide a fix for CVE-2009-0781, a cross-site scripting (XSS) flaw in the examples calendar application. With some web browsers, remote attackers could use this flaw to inject arbitrary web script or HTML via the "time" parameter. (CVE-2009-2696) Two directory traversal flaws were found in the Tomcat deployment process. A specially-crafted WAR file could, when deployed, cause a file to be created outside of the web root into any directory writable by the Tomcat user, or could lead to the deletion of files in the Tomcat host's work directory. (CVE-2009-2693, CVE-2009-2902) Tomcat must be restarted for this update to take effect. SL 5.x SRPMS: tomcat5-5.5.23-0jpp.9.el5_5.src.rpm i386: tomcat5-5.5.23-0jpp.9.el5_5.i386.rpm tomcat5-admin-webapps-5.5.23-0jpp.9.el5_5.i386.rpm tomcat5-common-lib-5.5.23-0jpp.9.el5_5.i386.rpm tomcat5-jasper-5.5.23-0jpp.9.el5_5.i386.rpm tomcat5-jasper-javadoc-5.5.23-0jpp.9.el5_5.i386.rpm tomcat5-jsp-2.0-api-5.5.23-0jpp.9.el5_5.i386.rpm tomcat5-jsp-2.0-api-javadoc-5.5.23-0jpp.9.el5_5.i386.rpm tomcat5-server-lib-5.5.23-0jpp.9.el5_5.i386.rpm tomcat5-servlet-2.4-api-5.5.23-0jpp.9.el5_5.i386.rpm tomcat5-servlet-2.4-api-javadoc-5.5.23-0jpp.9.el5_5.i386.rpm tomcat5-webapps-5.5.23-0jpp.9.el5_5.i386.rpm x86_64: tomcat5-5.5.23-0jpp.9.el5_5.x86_64.rpm tomcat5-admin-webapps-5.5.23-0jpp.9.el5_5.x86_64.rpm tomcat5-common-lib-5.5.23-0jpp.9.el5_5.x86_64.rpm tomcat5-jasper-5.5.23-0jpp.9.el5_5.x86_64.rpm tomcat5-jasper-javadoc-5.5.23-0jpp.9.el5_5.x86_64.rpm tomcat5-jsp-2.0-api-5.5.23-0jpp.9.el5_5.x86_64.rpm tomcat5-jsp-2.0-api-javadoc-5.5.23-0jpp.9.el5_5.x86_64.rpm tomcat5-server-lib-5.5.23-0jpp.9.el5_5.x86_64.rpm tomcat5-servlet-2.4-api-5.5.23-0jpp.9.el5_5.x86_64.rpm tomcat5-servlet-2.4-api-javadoc-5.5.23-0jpp.9.el5_5.x86_64.rpm tomcat5-webapps-5.5.23-0jpp.9.el5_5.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Thu, 5 Aug 2010 15:03:13 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: gnupg2 on SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Moderate: gnupg2 security update Issue date: 2010-08-04 CVE Names: CVE-2010-2547 A use-after-free flaw was found in the way gpgsm, a Cryptographic Message Syntax (CMS) encryption and signing tool, handled X.509 certificates with a large number of Subject Alternate Names. A specially-crafted X.509 certificate could, when imported, cause gpgsm to crash or, possibly, execute arbitrary code. (CVE-2010-2547) SL 5.x SRPMS: gnupg2-2.0.10-3.el5_5.1.src.rpm i386: gnupg2-2.0.10-3.el5_5.1.i386.rpm x86_64: gnupg2-2.0.10-3.el5_5.1.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Fri, 6 Aug 2010 14:12:48 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Important: freetype on SL3.x, SL4.x, SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Important: freetype security update Issue date: 2010-08-05 CVE Names: CVE-2010-1797 Two stack overflow flaws were found in the way the FreeType font engine processed certain Compact Font Format (CFF) character strings (opcodes). If a user loaded a specially-crafted font file with an application linked against FreeType, it could cause the application to crash or, possibly, execute arbitrary code with the privileges of the user running the application. (CVE-2010-1797) Note: CVE-2010-1797 only affects the FreeType 2 font engine. The X server must be restarted (log out, then log back in) for this update to take effect. SL 3.0.x SRPMS: freetype-2.1.4-16.el3.src.rpm i386: freetype-2.1.4-16.el3.i386.rpm freetype-demos-2.1.4-16.el3.i386.rpm freetype-devel-2.1.4-16.el3.i386.rpm freetype-utils-2.1.4-16.el3.i386.rpm x86_64: freetype-2.1.4-16.el3.i386.rpm freetype-2.1.4-16.el3.x86_64.rpm freetype-demos-2.1.4-16.el3.x86_64.rpm freetype-devel-2.1.4-16.el3.x86_64.rpm freetype-utils-2.1.4-16.el3.x86_64.rpm SL 4.x SRPMS: freetype-2.1.9-15.el4.8.src.rpm i386: freetype-2.1.9-15.el4.8.i386.rpm freetype-demos-2.1.9-15.el4.8.i386.rpm freetype-devel-2.1.9-15.el4.8.i386.rpm freetype-utils-2.1.9-15.el4.8.i386.rpm x86_64: freetype-2.1.9-15.el4.8.i386.rpm freetype-2.1.9-15.el4.8.x86_64.rpm freetype-demos-2.1.9-15.el4.8.x86_64.rpm freetype-devel-2.1.9-15.el4.8.x86_64.rpm freetype-utils-2.1.9-15.el4.8.x86_64.rpm SL 5.x SRPMS: freetype-2.2.1-26.el5_5.src.rpm i386: freetype-2.2.1-26.el5_5.i386.rpm freetype-demos-2.2.1-26.el5_5.i386.rpm freetype-devel-2.2.1-26.el5_5.i386.rpm x86_64: freetype-2.2.1-26.el5_5.i386.rpm freetype-2.2.1-26.el5_5.x86_64.rpm freetype-demos-2.2.1-26.el5_5.x86_64.rpm freetype-devel-2.2.1-26.el5_5.i386.rpm freetype-devel-2.2.1-26.el5_5.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Mon, 9 Aug 2010 08:09:57 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Important: kernel on SL4.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Important: kernel security and bug fix update Issue date: 2010-08-05 CVE Names: CVE-2010-2248 CVE-2010-2521 This update fixes the following security issues: * a flaw was found in the CIFSSMBWrite() function in the Linux kernel Common Internet File System (CIFS) implementation. A remote attacker could send a specially-crafted SMB response packet to a target CIFS client, resulting in a kernel panic (denial of service). (CVE-2010-2248, Important) * buffer overflow flaws were found in the Linux kernel's implementation of the server-side External Data Representation (XDR) for the Network File System (NFS) version 4. An attacker on the local network could send a specially-crafted large compound request to the NFSv4 server, which could possibly result in a kernel panic (denial of service) or, potentially, code execution. (CVE-2010-2521, Important) This update also fixes the following bug: * the rpc_call_async() function in the SUN Remote Procedure Call (RPC) subsystem in the Linux kernel had a reference counting bug. In certain situations, some Network Lock Manager (NLM) messages may have triggered this bug on NFSv2 and NFSv3 servers, leading to a kernel panic (with "kernel BUG at fs/lockd/host.c:[xxx]!" logged to "/var/log/messages"). (BZ#612962) The system must be rebooted for this update to take effect. SL 4.x SRPMS: kernel-2.6.9-89.0.28.EL.src.rpm i386: kernel-2.6.9-89.0.28.EL.i686.rpm kernel-devel-2.6.9-89.0.28.EL.i686.rpm kernel-doc-2.6.9-89.0.28.EL.noarch.rpm kernel-hugemem-2.6.9-89.0.28.EL.i686.rpm kernel-hugemem-devel-2.6.9-89.0.28.EL.i686.rpm kernel-smp-2.6.9-89.0.28.EL.i686.rpm kernel-smp-devel-2.6.9-89.0.28.EL.i686.rpm kernel-xenU-2.6.9-89.0.28.EL.i686.rpm kernel-xenU-devel-2.6.9-89.0.28.EL.i686.rpm Dependancies: kernel-module-fuse-2.6.9-89.0.28.EL-2.7.3-1.SL.i686.rpm kernel-module-fuse-2.6.9-89.0.28.ELhugemem-2.7.3-1.SL.i686.rpm kernel-module-fuse-2.6.9-89.0.28.ELsmp-2.7.3-1.SL.i686.rpm kernel-module-fuse-2.6.9-89.0.28.ELxenU-2.7.3-1.SL.i686.rpm kernel-module-ipw3945-2.6.9-89.0.28.EL-1.1.0-1.SL4.i686.rpm kernel-module-ipw3945-2.6.9-89.0.28.ELhugemem-1.1.0-1.SL4.i686.rpm kernel-module-ipw3945-2.6.9-89.0.28.ELsmp-1.1.0-1.SL4.i686.rpm kernel-module-ipw3945-2.6.9-89.0.28.ELxenU-1.1.0-1.SL4.i686.rpm kernel-module-ndiswrapper-2.6.9-89.0.28.EL-1.41-1.SL.i686.rpm kernel-module-ndiswrapper-2.6.9-89.0.28.ELhugemem-1.41-1.SL.i686.rpm kernel-module-ndiswrapper-2.6.9-89.0.28.ELsmp-1.41-1.SL.i686.rpm kernel-module-ndiswrapper-2.6.9-89.0.28.ELxenU-1.41-1.SL.i686.rpm kernel-module-openafs-2.6.9-89.0.28.EL-1.4.7-68.2.SL4.i686.rpm kernel-module-openafs-2.6.9-89.0.28.ELhugemem-1.4.7-68.2.SL4.i686.rpm kernel-module-openafs-2.6.9-89.0.28.ELsmp-1.4.7-68.2.SL4.i686.rpm kernel-module-openafs-2.6.9-89.0.28.ELxenU-1.4.7-68.2.SL4.i686.rpm kernel-module-r1000-2.6.9-89.0.28.EL-2.2-2.SL4x.i686.rpm kernel-module-r1000-2.6.9-89.0.28.ELhugemem-2.2-2.SL4x.i686.rpm kernel-module-r1000-2.6.9-89.0.28.ELsmp-2.2-2.SL4x.i686.rpm kernel-module-r1000-2.6.9-89.0.28.ELxenU-2.2-2.SL4x.i686.rpm kernel-module-squashfs-2.6.9-89.0.28.EL-3.1.2-3.i686.rpm kernel-module-squashfs-2.6.9-89.0.28.ELhugemem-3.1.2-3.i686.rpm kernel-module-squashfs-2.6.9-89.0.28.ELsmp-3.1.2-3.i686.rpm kernel-module-squashfs-2.6.9-89.0.28.ELxenU-3.1.2-3.i686.rpm kernel-module-unionfs-2.6.9-89.0.28.EL-1.1.5-3.i686.rpm kernel-module-unionfs-2.6.9-89.0.28.ELsmp-1.1.5-3.i686.rpm x86_64: kernel-2.6.9-89.0.28.EL.x86_64.rpm kernel-devel-2.6.9-89.0.28.EL.x86_64.rpm kernel-doc-2.6.9-89.0.28.EL.noarch.rpm kernel-largesmp-2.6.9-89.0.28.EL.x86_64.rpm kernel-largesmp-devel-2.6.9-89.0.28.EL.x86_64.rpm kernel-smp-2.6.9-89.0.28.EL.x86_64.rpm kernel-smp-devel-2.6.9-89.0.28.EL.x86_64.rpm kernel-xenU-2.6.9-89.0.28.EL.x86_64.rpm kernel-xenU-devel-2.6.9-89.0.28.EL.x86_64.rpm Dependancies kernel-module-fuse-2.6.9-89.0.28.EL-2.7.3-1.SL.x86_64.rpm kernel-module-fuse-2.6.9-89.0.28.ELlargesmp-2.7.3-1.SL.x86_64.rpm kernel-module-fuse-2.6.9-89.0.28.ELsmp-2.7.3-1.SL.x86_64.rpm kernel-module-fuse-2.6.9-89.0.28.ELxenU-2.7.3-1.SL.x86_64.rpm kernel-module-ipw3945-2.6.9-89.0.28.EL-1.1.0-1.SL4.x86_64.rpm kernel-module-ipw3945-2.6.9-89.0.28.ELlargesmp-1.1.0-1.SL4.x86_64.rpm kernel-module-ipw3945-2.6.9-89.0.28.ELsmp-1.1.0-1.SL4.x86_64.rpm kernel-module-ipw3945-2.6.9-89.0.28.ELxenU-1.1.0-1.SL4.x86_64.rpm kernel-module-ndiswrapper-2.6.9-89.0.28.EL-1.41-1.SL.x86_64.rpm kernel-module-ndiswrapper-2.6.9-89.0.28.ELlargesmp-1.41-1.SL.x86_64.rpm kernel-module-ndiswrapper-2.6.9-89.0.28.ELsmp-1.41-1.SL.x86_64.rpm kernel-module-ndiswrapper-2.6.9-89.0.28.ELxenU-1.41-1.SL.x86_64.rpm kernel-module-openafs-2.6.9-89.0.28.EL-1.4.7-68.2.SL4.x86_64.rpm kernel-module-openafs-2.6.9-89.0.28.ELlargesmp-1.4.7-68.2.SL4.x86_64.rpm kernel-module-openafs-2.6.9-89.0.28.ELsmp-1.4.7-68.2.SL4.x86_64.rpm kernel-module-openafs-2.6.9-89.0.28.ELxenU-1.4.7-68.2.SL4.x86_64.rpm kernel-module-r1000-2.6.9-89.0.28.EL-2.2-2.SL4x.x86_64.rpm kernel-module-r1000-2.6.9-89.0.28.ELlargesmp-2.2-2.SL4x.x86_64.rpm kernel-module-r1000-2.6.9-89.0.28.ELsmp-2.2-2.SL4x.x86_64.rpm kernel-module-r1000-2.6.9-89.0.28.ELxenU-2.2-2.SL4x.x86_64.rpm kernel-module-squashfs-2.6.9-89.0.28.EL-3.1.2-3.x86_64.rpm kernel-module-squashfs-2.6.9-89.0.28.ELlargesmp-3.1.2-3.x86_64.rpm kernel-module-squashfs-2.6.9-89.0.28.ELsmp-3.1.2-3.x86_64.rpm kernel-module-squashfs-2.6.9-89.0.28.ELxenU-3.1.2-3.x86_64.rpm kernel-module-unionfs-2.6.9-89.0.28.EL-1.1.5-3.x86_64.rpm kernel-module-unionfs-2.6.9-89.0.28.ELsmp-1.1.5-3.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Mon, 9 Aug 2010 08:15:15 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Low: tzdata on SL3.x, SL4.x, SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Low: tzdata enhancement update Issue date: 2010-08-09 This updated package addresses the following change to Daylight Saving Time (DST) observations: * during Ramadan, that is, during the period between 2010-08-11 and 2010-09-08, Egypt will suspend DST. The DST period will be officially restored on 2010-09-09. (BZ#618593, BZ#618597, BZ#618599) SL 3.0.x SRPMS: tzdata-2010k-1.el3.src.rpm i386: tzdata-2010k-1.el3.noarch.rpm x86_64: tzdata-2010k-1.el3.noarch.rpm SL 4.x SRPMS: tzdata-2010k-1.el4.src.rpm i386: tzdata-2010k-1.el4.noarch.rpm x86_64: tzdata-2010k-1.el4.noarch.rpm SL 5.x SRPMS: tzdata-2010k-1.el5.src.rpm i386: tzdata-2010k-1.el5.i386.rpm tzdata-java-2010k-1.el5.i386.rpm x86_64: tzdata-2010k-1.el5.x86_64.rpm tzdata-java-2010k-1.el5.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Wed, 11 Aug 2010 14:19:07 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: dbus-glib on SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Moderate: dbus-glib security update Issue date: 2010-08-10 CVE Names: CVE-2010-1172 It was discovered that dbus-glib did not enforce the "access" flag on exported GObject properties. If such a property were read/write internally but specified as read-only externally, a malicious, local user could use this flaw to modify that property of an application. Such a change could impact the application's behavior (for example, if an IP address were changed the network may not come up properly after reboot) and possibly lead to a denial of service. (CVE-2010-1172) Due to the way dbus-glib translates an application's XML definitions of service interfaces and properties into C code at application build time, applications built against dbus-glib that use read-only properties needed to be rebuilt to fully fix the flaw. As such, this update provides NetworkManager packages that have been rebuilt against the updated dbus-glib packages. No other applications shipped with Scientific Linux 5 were affected. Running instances of NetworkManager must be restarted (service NetworkManager restart) for this update to take effect. SL 5.x SRPMS: NetworkManager-0.7.0-10.el5_5.1.src.rpm dbus-glib-0.73-10.el5_5.src.rpm i386: dbus-glib-0.73-10.el5_5.i386.rpm dbus-glib-devel-0.73-10.el5_5.i386.rpm NetworkManager-0.7.0-10.el5_5.1.i386.rpm NetworkManager-devel-0.7.0-10.el5_5.1.i386.rpm NetworkManager-glib-0.7.0-10.el5_5.1.i386.rpm NetworkManager-glib-devel-0.7.0-10.el5_5.1.i386.rpm NetworkManager-gnome-0.7.0-10.el5_5.1.i386.rpm x86_64: dbus-glib-0.73-10.el5_5.i386.rpm dbus-glib-0.73-10.el5_5.x86_64.rpm dbus-glib-devel-0.73-10.el5_5.i386.rpm dbus-glib-devel-0.73-10.el5_5.x86_64.rpm NetworkManager-0.7.0-10.el5_5.1.i386.rpm NetworkManager-0.7.0-10.el5_5.1.x86_64.rpm NetworkManager-devel-0.7.0-10.el5_5.1.i386.rpm NetworkManager-devel-0.7.0-10.el5_5.1.x86_64.rpm NetworkManager-glib-0.7.0-10.el5_5.1.i386.rpm NetworkManager-glib-0.7.0-10.el5_5.1.x86_64.rpm NetworkManager-glib-devel-0.7.0-10.el5_5.1.i386.rpm NetworkManager-glib-devel-0.7.0-10.el5_5.1.x86_64.rpm NetworkManager-gnome-0.7.0-10.el5_5.1.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Thu, 12 Aug 2010 10:22:15 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: wireshark on SL3.x, SL4.x, SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Moderate: wireshark security update Issue date: 2010-08-11 CVE Names: CVE-2010-1455 CVE-2010-2283 CVE-2010-2284 CVE-2010-2286 CVE-2010-2287 CVE-2010-2995 Multiple buffer overflow flaws were found in the Wireshark SigComp Universal Decompressor Virtual Machine (UDVM) dissector. If Wireshark read a malformed packet off a network or opened a malicious dump file, it could crash or, possibly, execute arbitrary code as the user running Wireshark. (CVE-2010-2287, CVE-2010-2995) Several denial of service flaws were found in Wireshark. Wireshark could crash or stop responding if it read a malformed packet off a network, or opened a malicious dump file. (CVE-2010-1455, CVE-2010-2283, CVE-2010-2284, CVE-2010-2286) NOTE: This errata updates Wireshark to version 1.0.15 to resolve these issues. All running instances of Wireshark must be restarted for the update to take effect. SL 3.0.x SRPMS: wireshark-1.0.15-EL3.1.src.rpm i386: wireshark-1.0.15-EL3.1.i386.rpm wireshark-gnome-1.0.15-EL3.1.i386.rpm x86_64: wireshark-1.0.15-EL3.1.x86_64.rpm wireshark-gnome-1.0.15-EL3.1.x86_64.rpm SL 4.x SRPMS: wireshark-1.0.15-1.el4_8.1.src.rpm i386: wireshark-1.0.15-1.el4_8.1.i386.rpm wireshark-gnome-1.0.15-1.el4_8.1.i386.rpm x86_64: wireshark-1.0.15-1.el4_8.1.x86_64.rpm wireshark-gnome-1.0.15-1.el4_8.1.x86_64.rpm SL 5.x SRPMS: wireshark-1.0.15-1.el5_5.1.src.rpm i386: wireshark-1.0.15-1.el5_5.1.i386.rpm wireshark-gnome-1.0.15-1.el5_5.1.i386.rpm x86_64: wireshark-1.0.15-1.el5_5.1.x86_64.rpm wireshark-gnome-1.0.15-1.el5_5.1.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Thu, 12 Aug 2010 16:07:55 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Important: kernel on SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Important: kernel security and bug fix update Issue date: 2010-08-10 CVE Names: CVE-2010-1084 CVE-2010-2066 CVE-2010-2070 CVE-2010-2226 CVE-2010-2248 CVE-2010-2521 CVE-2010-2524 This update fixes the following security issues: * instances of unsafe sprintf() use were found in the Linux kernel Bluetooth implementation. Creating a large number of Bluetooth L2CAP, SCO, or RFCOMM sockets could result in arbitrary memory pages being overwritten. A local, unprivileged user could use this flaw to cause a kernel panic (denial of service) or escalate their privileges. (CVE-2010-1084, Important) * a flaw was found in the Xen hypervisor implementation when using the Intel Itanium architecture, allowing guests to enter an unsupported state. An unprivileged guest user could trigger this flaw by setting the BE (Big Endian) bit of the Processor Status Register (PSR), leading to the guest crashing (denial of service). (CVE-2010-2070, Important) * a flaw was found in the CIFSSMBWrite() function in the Linux kernel Common Internet File System (CIFS) implementation. A remote attacker could send a specially-crafted SMB response packet to a target CIFS client, resulting in a kernel panic (denial of service). (CVE-2010-2248, Important) * buffer overflow flaws were found in the Linux kernel's implementation of the server-side External Data Representation (XDR) for the Network File System (NFS) version 4. An attacker on the local network could send a specially-crafted large compound request to the NFSv4 server, which could possibly result in a kernel panic (denial of service) or, potentially, code execution. (CVE-2010-2521, Important) * a flaw was found in the handling of the SWAPEXT IOCTL in the Linux kernel XFS file system implementation. A local user could use this flaw to read write-only files, that they do not own, on an XFS file system. This could lead to unintended information disclosure. (CVE-2010-2226, Moderate) * a flaw was found in the dns_resolver upcall used by CIFS. A local, unprivileged user could redirect a Microsoft Distributed File System link to another IP address, tricking the client into mounting the share from a server of the user's choosing. (CVE-2010-2524, Moderate) * a missing check was found in the mext_check_arguments() function in the ext4 file system code. A local user could use this flaw to cause the MOVE_EXT IOCTL to overwrite the contents of an append-only file on an ext4 file system, if they have write permissions for that file. (CVE-2010-2066, Low) The system must be rebooted for this update to take effect. SL 5.x SRPMS: kernel-2.6.18-194.11.1.el5.src.rpm i386: kernel-2.6.18-194.11.1.el5.i686.rpm kernel-debug-2.6.18-194.11.1.el5.i686.rpm kernel-debug-devel-2.6.18-194.11.1.el5.i686.rpm kernel-devel-2.6.18-194.11.1.el5.i686.rpm kernel-doc-2.6.18-194.11.1.el5.noarch.rpm kernel-headers-2.6.18-194.11.1.el5.i386.rpm kernel-PAE-2.6.18-194.11.1.el5.i686.rpm kernel-PAE-devel-2.6.18-194.11.1.el5.i686.rpm kernel-xen-2.6.18-194.11.1.el5.i686.rpm kernel-xen-devel-2.6.18-194.11.1.el5.i686.rpm Dependancies: kernel-module-aufs-2.6.18-194.11.1.el5-0.20090202.cvs-6.sl5.i686.rpm kernel-module-aufs-2.6.18-194.11.1.el5PAE-0.20090202.cvs-6.sl5.i686.rpm kernel-module-aufs-2.6.18-194.11.1.el5xen-0.20090202.cvs-6.sl5.i686.rpm kernel-module-ipw3945-2.6.18-194.11.1.el5-1.2.0-2.sl5.i686.rpm kernel-module-ipw3945-2.6.18-194.11.1.el5PAE-1.2.0-2.sl5.i686.rpm kernel-module-ipw3945-2.6.18-194.11.1.el5xen-1.2.0-2.sl5.i686.rpm kernel-module-madwifi-2.6.18-194.11.1.el5-0.9.4-15.sl5.i686.rpm kernel-module-madwifi-2.6.18-194.11.1.el5PAE-0.9.4-15.sl5.i686.rpm kernel-module-madwifi-2.6.18-194.11.1.el5xen-0.9.4-15.sl5.i686.rpm kernel-module-madwifi-hal-2.6.18-194.11.1.el5-0.9.4-15.sl5.i686.rpm kernel-module-madwifi-hal-2.6.18-194.11.1.el5PAE-0.9.4-15.sl5.i686.rpm kernel-module-madwifi-hal-2.6.18-194.11.1.el5xen-0.9.4-15.sl5.i686.rpm kernel-module-ndiswrapper-2.6.18-194.11.1.el5-1.55-1.SL.i686.rpm kernel-module-ndiswrapper-2.6.18-194.11.1.el5PAE-1.55-1.SL.i686.rpm kernel-module-ndiswrapper-2.6.18-194.11.1.el5xen-1.55-1.SL.i686.rpm kernel-module-openafs-2.6.18-194.11.1.el5-1.4.12-79.sl5.i686.rpm kernel-module-openafs-2.6.18-194.11.1.el5PAE-1.4.12-79.sl5.i686.rpm kernel-module-openafs-2.6.18-194.11.1.el5xen-1.4.12-79.sl5.i686.rpm kernel-module-xfs-2.6.18-194.11.1.el5-0.4-2.sl5.i686.rpm kernel-module-xfs-2.6.18-194.11.1.el5PAE-0.4-2.sl5.i686.rpm kernel-module-xfs-2.6.18-194.11.1.el5xen-0.4-2.sl5.i686.rpm x86_64: kernel-2.6.18-194.11.1.el5.x86_64.rpm kernel-debug-2.6.18-194.11.1.el5.x86_64.rpm kernel-debug-devel-2.6.18-194.11.1.el5.x86_64.rpm kernel-devel-2.6.18-194.11.1.el5.x86_64.rpm kernel-doc-2.6.18-194.11.1.el5.noarch.rpm kernel-headers-2.6.18-194.11.1.el5.x86_64.rpm kernel-xen-2.6.18-194.11.1.el5.x86_64.rpm kernel-xen-devel-2.6.18-194.11.1.el5.x86_64.rpm Dependancies: kernel-module-aufs-2.6.18-194.11.1.el5-0.20090202.cvs-6.sl5.x86_64.rpm kernel-module-aufs-2.6.18-194.11.1.el5xen-0.20090202.cvs-6.sl5.x86_64.rpm kernel-module-ipw3945-2.6.18-194.11.1.el5-1.2.0-2.sl5.x86_64.rpm kernel-module-ipw3945-2.6.18-194.11.1.el5xen-1.2.0-2.sl5.x86_64.rpm kernel-module-madwifi-2.6.18-194.11.1.el5-0.9.4-15.sl5.x86_64.rpm kernel-module-madwifi-2.6.18-194.11.1.el5xen-0.9.4-15.sl5.x86_64.rpm kernel-module-madwifi-hal-2.6.18-194.11.1.el5-0.9.4-15.sl5.x86_64.rpm kernel-module-madwifi-hal-2.6.18-194.11.1.el5xen-0.9.4-15.sl5.x86_64.rpm kernel-module-ndiswrapper-2.6.18-194.11.1.el5-1.55-1.SL.x86_64.rpm kernel-module-ndiswrapper-2.6.18-194.11.1.el5xen-1.55-1.SL.x86_64.rpm kernel-module-openafs-2.6.18-194.11.1.el5-1.4.12-79.sl5.x86_64.rpm kernel-module-openafs-2.6.18-194.11.1.el5xen-1.4.12-79.sl5.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Thu, 12 Aug 2010 16:10:13 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Low: libvirt on SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Low: libvirt security and bug fix update Issue date: 2010-08-10 CVE Names: CVE-2010-2239 CVE-2010-2242 It was found that libvirt did not set the user-defined backing store format when creating a new image, possibly resulting in applications having to probe the backing store to discover the format. A privileged guest user could use this flaw to read arbitrary files on the host. (CVE-2010-2239) It was found that libvirt created insecure iptables rules on the host when a guest system was configured for IP masquerading, allowing the guest to use privileged ports on the host when accessing network resources. A privileged guest user could use this flaw to access network resources that would otherwise not be accessible to the guest. (CVE-2010-2242) This update also fixes the following bugs: * a Linux software bridge assumes the MAC address of the enslaved interface with the numerically lowest MAC address. When the bridge changes its MAC address, for a period of time it does not relay packets across network segments, resulting in a temporary network "blackout". The bridge should thus avoid changing its MAC address in order not to disrupt network communications. The Linux kernel assigns network TAP devices a random MAC address. Occasionally, this random MAC address is lower than that of the physical interface which is enslaved (for example, eth0 or eth1), which causes the bridge to change its MAC address, thereby disrupting network communications for a period of time. With this update, libvirt now sets an explicit MAC address for all TAP devices created using the configured MAC address from the XML, but with the high bit set to 0xFE. The result is that TAP device MAC addresses are now numerically greater than those for physical interfaces, and bridges should no longer attempt to switch their MAC address to that of the TAP device, thus avoiding potential spurious network disruptions. (BZ#617243) * a memory leak in the libvirt driver for the Xen hypervisor has been fixed with this update. (BZ#619711) * the xm and virsh management user interfaces for virtual guests can be called on the command line to list the number of active guests. However, under certain circumstances, running the "virsh list" command resulted in virsh not listing all of the virtual guests that were active (that is, running) at the time. This update incorporates a fix that matches the logic used for determining active guests with that of "xm list", such that both commands should now list the same number of active virtual guests under all circumstances. (BZ#618200) After installing the updated packages, the system must be rebooted for the update to take effect. SL 5.x SRPMS: libvirt-0.6.3-33.el5_5.3.src.rpm i386: libvirt-0.6.3-33.el5_5.3.i386.rpm libvirt-devel-0.6.3-33.el5_5.3.i386.rpm libvirt-python-0.6.3-33.el5_5.3.i386.rpm x86_64: libvirt-0.6.3-33.el5_5.3.i386.rpm libvirt-0.6.3-33.el5_5.3.x86_64.rpm libvirt-devel-0.6.3-33.el5_5.3.i386.rpm libvirt-devel-0.6.3-33.el5_5.3.x86_64.rpm libvirt-python-0.6.3-33.el5_5.3.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Tue, 17 Aug 2010 11:36:02 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: FASTBUGS for SL 4.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "The following FASTBUGS have been uploaded to i386: dump-0.4b39-5.el4.i386.rpm jwhois-3.2.2-17.el4.i386.rpm lvm2-2.02.42-5.el4_8.4.i386.rpm lvm2-cluster-2.02.42-5.el4_8.2.i386.rpm nss_ldap-253-7.el4_8.4.i386.rpm perl-Archive-Tar-1.39.1-1.el4_8.2.noarch.rpm rhnlib-2.1.4-14.el4_8.2.noarch.rpm rmt-0.4b39-5.el4.i386.rpm setup-2.5.37-4.el4_8.1.noarch.rpm tcsh-6.13-10.el4_8.1.i386.rpm up2date-4.8.1-33.el4_8.9.i386.rpm up2date-gnome-4.8.1-33.el4_8.9.i386.rpm x86_64: dump-0.4b39-5.el4.x86_64.rpm jwhois-3.2.2-17.el4.x86_64.rpm lvm2-2.02.42-5.el4_8.4.x86_64.rpm lvm2-cluster-2.02.42-5.el4_8.2.x86_64.rpm nss_ldap-253-7.el4_8.4.i386.rpm nss_ldap-253-7.el4_8.4.x86_64.rpm perl-Archive-Tar-1.39.1-1.el4_8.2.noarch.rpm rhnlib-2.1.4-14.el4_8.2.noarch.rpm rmt-0.4b39-5.el4.x86_64.rpm setup-2.5.37-4.el4_8.1.noarch.rpm tcsh-6.13-10.el4_8.1.x86_64.rpm up2date-4.8.1-33.el4_8.9.x86_64.rpm up2date-gnome-4.8.1-33.el4_8.9.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Tue, 17 Aug 2010 11:36:54 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: FASTBUGS for SL 5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "The following FASTBUGS have been uploaded to i386: autofs-5.0.1-0.rc2.143.el5_5.4.i386.rpm compat-openldap-2.3.43_2.2.29-12.el5_5.2.i386.rpm cups-1.3.7-18.el5_5.7.i386.rpm cups-devel-1.3.7-18.el5_5.7.i386.rpm cups-libs-1.3.7-18.el5_5.7.i386.rpm cups-lpd-1.3.7-18.el5_5.7.i386.rpm dhclient-3.0.5-23.el5_5.1.i386.rpm dhcp-3.0.5-23.el5_5.1.i386.rpm dhcp-devel-3.0.5-23.el5_5.1.i386.rpm gdb-7.0.1-23.el5_5.2.i386.rpm java-1.6.0-openjdk-1.6.0.0-1.13.b16.el5.i386.rpm java-1.6.0-openjdk-demo-1.6.0.0-1.13.b16.el5.i386.rpm java-1.6.0-openjdk-devel-1.6.0.0-1.13.b16.el5.i386.rpm java-1.6.0-openjdk-javadoc-1.6.0.0-1.13.b16.el5.i386.rpm java-1.6.0-openjdk-src-1.6.0.0-1.13.b16.el5.i386.rpm libdhcp4client-3.0.5-23.el5_5.1.i386.rpm libdhcp4client-devel-3.0.5-23.el5_5.1.i386.rpm libvolume_id-095-14.21.el5_5.1.i386.rpm libvolume_id-devel-095-14.21.el5_5.1.i386.rpm man-pages-2.39-17.el5.noarch.rpm man-pages-ja-20060815-14.el5.noarch.rpm nfs-utils-1.0.9-47.el5_5.i386.rpm openais-0.80.6-16.el5_5.7.i386.rpm openais-devel-0.80.6-16.el5_5.7.i386.rpm openldap-2.3.43-12.el5_5.2.i386.rpm openldap-clients-2.3.43-12.el5_5.2.i386.rpm openldap-devel-2.3.43-12.el5_5.2.i386.rpm openldap-servers-2.3.43-12.el5_5.2.i386.rpm openldap-servers-overlays-2.3.43-12.el5_5.2.i386.rpm openldap-servers-sql-2.3.43-12.el5_5.2.i386.rpm passwd-0.73-2.i386.rpm perl-Archive-Tar-1.39.1-1.el5_5.2.noarch.rpm systemtap-1.1-3.el5_5.2.i386.rpm systemtap-client-1.1-3.el5_5.2.i386.rpm systemtap-initscript-1.1-3.el5_5.2.i386.rpm systemtap-runtime-1.1-3.el5_5.2.i386.rpm systemtap-sdt-devel-1.1-3.el5_5.2.i386.rpm systemtap-server-1.1-3.el5_5.2.i386.rpm systemtap-testsuite-1.1-3.el5_5.2.i386.rpm tmpwatch-2.9.7-1.1.el5.5.i386.rpm udev-095-14.21.el5_5.1.i386.rpm xen-3.0.3-105.el5_5.5.i386.rpm xen-devel-3.0.3-105.el5_5.5.i386.rpm xen-libs-3.0.3-105.el5_5.5.i386.rpm x86_64: autofs-5.0.1-0.rc2.143.el5_5.4.x86_64.rpm compat-openldap-2.3.43_2.2.29-12.el5_5.2.i386.rpm compat-openldap-2.3.43_2.2.29-12.el5_5.2.x86_64.rpm cups-1.3.7-18.el5_5.7.x86_64.rpm cups-devel-1.3.7-18.el5_5.7.i386.rpm cups-devel-1.3.7-18.el5_5.7.x86_64.rpm cups-libs-1.3.7-18.el5_5.7.i386.rpm cups-libs-1.3.7-18.el5_5.7.x86_64.rpm cups-lpd-1.3.7-18.el5_5.7.x86_64.rpm dhclient-3.0.5-23.el5_5.1.x86_64.rpm dhcp-3.0.5-23.el5_5.1.x86_64.rpm dhcp-devel-3.0.5-23.el5_5.1.i386.rpm dhcp-devel-3.0.5-23.el5_5.1.x86_64.rpm gdb-7.0.1-23.el5_5.2.x86_64.rpm java-1.6.0-openjdk-1.6.0.0-1.13.b16.el5.x86_64.rpm java-1.6.0-openjdk-demo-1.6.0.0-1.13.b16.el5.x86_64.rpm java-1.6.0-openjdk-devel-1.6.0.0-1.13.b16.el5.x86_64.rpm java-1.6.0-openjdk-javadoc-1.6.0.0-1.13.b16.el5.x86_64.rpm java-1.6.0-openjdk-src-1.6.0.0-1.13.b16.el5.x86_64.rpm kmod-kvm-83-164.el5_5.15.x86_64.rpm kvm-83-164.el5_5.15.x86_64.rpm kvm-qemu-img-83-164.el5_5.15.x86_64.rpm kvm-tools-83-164.el5_5.15.x86_64.rpm libdhcp4client-3.0.5-23.el5_5.1.i386.rpm libdhcp4client-3.0.5-23.el5_5.1.x86_64.rpm libdhcp4client-devel-3.0.5-23.el5_5.1.i386.rpm libdhcp4client-devel-3.0.5-23.el5_5.1.x86_64.rpm libvolume_id-095-14.21.el5_5.1.i386.rpm libvolume_id-095-14.21.el5_5.1.x86_64.rpm libvolume_id-devel-095-14.21.el5_5.1.i386.rpm libvolume_id-devel-095-14.21.el5_5.1.x86_64.rpm man-pages-2.39-17.el5.noarch.rpm man-pages-ja-20060815-14.el5.noarch.rpm nfs-utils-1.0.9-47.el5_5.x86_64.rpm openais-0.80.6-16.el5_5.7.x86_64.rpm openais-devel-0.80.6-16.el5_5.7.i386.rpm openais-devel-0.80.6-16.el5_5.7.x86_64.rpm openldap-2.3.43-12.el5_5.2.i386.rpm openldap-2.3.43-12.el5_5.2.x86_64.rpm openldap-clients-2.3.43-12.el5_5.2.x86_64.rpm openldap-devel-2.3.43-12.el5_5.2.i386.rpm openldap-devel-2.3.43-12.el5_5.2.x86_64.rpm openldap-servers-2.3.43-12.el5_5.2.x86_64.rpm openldap-servers-overlays-2.3.43-12.el5_5.2.x86_64.rpm openldap-servers-sql-2.3.43-12.el5_5.2.x86_64.rpm passwd-0.73-2.x86_64.rpm perl-Archive-Tar-1.39.1-1.el5_5.2.noarch.rpm qspice-0.3.0-54.el5_5.1.x86_64.rpm qspice-libs-0.3.0-54.el5_5.1.x86_64.rpm qspice-libs-devel-0.3.0-54.el5_5.1.x86_64.rpm systemtap-1.1-3.el5_5.2.x86_64.rpm systemtap-client-1.1-3.el5_5.2.x86_64.rpm systemtap-initscript-1.1-3.el5_5.2.x86_64.rpm systemtap-runtime-1.1-3.el5_5.2.x86_64.rpm systemtap-sdt-devel-1.1-3.el5_5.2.i386.rpm systemtap-sdt-devel-1.1-3.el5_5.2.x86_64.rpm systemtap-server-1.1-3.el5_5.2.x86_64.rpm systemtap-testsuite-1.1-3.el5_5.2.x86_64.rpm tmpwatch-2.9.7-1.1.el5.5.x86_64.rpm udev-095-14.21.el5_5.1.x86_64.rpm xen-3.0.3-105.el5_5.5.x86_64.rpm xen-devel-3.0.3-105.el5_5.5.i386.rpm xen-devel-3.0.3-105.el5_5.5.x86_64.rpm xen-libs-3.0.3-105.el5_5.5.i386.rpm xen-libs-3.0.3-105.el5_5.5.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Fri, 20 Aug 2010 14:17:50 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Important: kvm on SL5.x x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Important: kvm security and bug fix update Issue date: 2010-08-19 CVE Names: CVE-2010-0431 CVE-2010-0435 CVE-2010-2784 It was found that QEMU-KVM on the host did not validate all pointersprovided from a guest system's QXL graphics card driver. A privileged guest user could use this flaw to cause the host to dereference an invalid pointer, causing the guest to crash (denial of service) or, possibly, resulting in the privileged guest user escalating their privileges on the host. (CVE-2010-0431) A flaw was found in QEMU-KVM, allowing the guest some control over the index used to access the callback array during sub-page MMIO initialization. A privileged guest user could use this flaw to crash the guest (denial of service) or, possibly, escalate their privileges on the host. (CVE-2010-2784) A NULL pointer dereference flaw was found when the host system had a processor with the Intel VT-x extension enabled. A privileged guest user could use this flaw to trick the host into emulating a certain instruction, which could crash the host (denial of service). (CVE-2010-0435) This update also fixes the following bugs: * running a "qemu-img" check on a faulty virtual machine image ended with a segmentation fault. With this update, the segmentation fault no longer occurs when running the "qemu-img" check. (BZ#610342) * when attempting to transfer a file between two guests that were joined in the same virtual LAN (VLAN), the receiving guest unexpectedly quit. With this update, the transfer completes successfully. (BZ#610343) * installation of a system was occasionally failing in KVM. This was caused by KVM using wrong permissions for large guest pages. With this update, the installation completes successfully. (BZ#616796) * previously, the migration process would fail for a virtual machine because the virtual machine could not map all the memory. This was caused by a conflict that was initiated when a virtual machine was initially run and then migrated right away. With this update, the conflict no longer occurs and the migration process no longer fails. (BZ#618205) * using a thinly provisioned VirtIO disk on iSCSI storage and performing a "qemu-img" check during an "e_no_space" event returned cluster errors. With this update, the errors no longer appear. (BZ#618206) NOTE: The following procedure must be performed before this update will take effect: 1) Stop all KVM guest virtual machines. 2) Either reboot the hypervisor machine or, as the root user, remove (using "modprobe -r [module]") and reload (using "modprobe [module]") all of the following modules which are currently running (determined using "lsmod"): kvm, ksm, kvm-intel or kvm-amd. 3) Restart the KVM guest virtual machines. SL 5.x SRPMS: kvm-83-164.el5_5.21.src.rpm x86_64: kmod-kvm-83-164.el5_5.21.x86_64.rpm kvm-83-164.el5_5.21.x86_64.rpm kvm-qemu-img-83-164.el5_5.21.x86_64.rpm kvm-tools-83-164.el5_5.21.x86_64.rpm Dependancies for SL 50-53: celt051-0.5.1.3-0.el5.i386.rpm celt051-0.5.1.3-0.el5.x86_64.rpm celt051-devel-0.5.1.3-0.el5.i386.rpm celt051-devel-0.5.1.3-0.el5.x86_64.rpm etherboot-pxes-5.4.4-13.el5.x86_64.rpm etherboot-roms-5.4.4-13.el5.x86_64.rpm etherboot-roms-kvm-5.4.4-13.el5.x86_64.rpm etherboot-zroms-5.4.4-13.el5.x86_64.rpm etherboot-zroms-kvm-5.4.4-13.el5.x86_64.rpm log4cpp-1.0-9.el5.i386.rpm log4cpp-1.0-9.el5.x86_64.rpm log4cpp-devel-1.0-9.el5.i386.rpm log4cpp-devel-1.0-9.el5.x86_64.rpm log4cpp-docs-1.0-9.el5.x86_64.rpm qcairo-1.8.7.1-3.el5.i386.rpm qcairo-1.8.7.1-3.el5.x86_64.rpm qcairo-devel-1.8.7.1-3.el5.i386.rpm qcairo-devel-1.8.7.1-3.el5.x86_64.rpm qffmpeg-devel-0.4.9-0.15.20080908.el5.i386.rpm qffmpeg-devel-0.4.9-0.15.20080908.el5.x86_64.rpm qffmpeg-libs-0.4.9-0.15.20080908.el5.i386.rpm qffmpeg-libs-0.4.9-0.15.20080908.el5.x86_64.rpm qpixman-0.13.3-4.el5.i386.rpm qpixman-0.13.3-4.el5.x86_64.rpm qpixman-devel-0.13.3-4.el5.i386.rpm qpixman-devel-0.13.3-4.el5.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Fri, 20 Aug 2010 14:17:51 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Important: qspice on SL5.x x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Important: qspice security update Issue date: 2010-08-19 CVE Names: CVE-2010-0428 CVE-2010-0429 It was found that the libspice component of QEMU-KVM on the host did not validate all pointers provided from a guest system's QXL graphics card driver. A privileged guest user could use this flaw to cause the host to dereference an invalid pointer, causing the guest to crash (denial of service) or, possibly, resulting in the privileged guest user escalating their privileges on the host. (CVE-2010-0428) It was found that the libspice component of QEMU-KVM on the host could be forced to perform certain memory management operations on memory addresses controlled by a guest. A privileged guest user could use this flaw to crash the guest (denial of service) or, possibly, escalate their privileges on the host. (CVE-2010-0429) SL 5.x SRPMS: qspice-0.3.0-54.el5_5.2.src.rpm x86_64: qspice-0.3.0-54.el5_5.2.x86_64.rpm qspice-libs-0.3.0-54.el5_5.2.x86_64.rpm qspice-libs-devel-0.3.0-54.el5_5.2.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Tue, 24 Aug 2010 15:41:06 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Re: Security ERRATA Important: kernel on SL4.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "In-Reply-To: <4C5FFE25.1040506@fnal.gov> The following kernel dependencies are now available SL4: SRPMS: cman-kernel-2.6.9-56.7.el4_8.16.src.rpm cmirror-kernel-2.6.9-43.12.el4_8.13.src.rpm dlm-kernel-2.6.9-58.6.el4_8.18.src.rpm GFS-kernel-2.6.9-85.2.el4_8.14.src.rpm gnbd-kernel-2.6.9-10.56.el4_8.15.src.rpm i386: cman-kernel-2.6.9-56.7.4.el4_8.16.i686.rpm cman-kernel-hugemem-2.6.9-56.7.4.el4_8.16.i686.rpm cman-kernel-smp-2.6.9-56.7.4.el4_8.16.i686.rpm cman-kernel-xenU-2.6.9-56.7.4.el4_8.16.i686.rpm cman-kernheaders-2.6.9-56.7.4.el4_8.16.i686.rpm cmirror-kernel-2.6.9-43.12.1.el4_8.13.i686.rpm cmirror-kernel-hugemem-2.6.9-43.12.1.el4_8.13.i686.rpm cmirror-kernel-smp-2.6.9-43.12.1.el4_8.13.i686.rpm cmirror-kernel-xenU-2.6.9-43.12.1.el4_8.13.i686.rpm dlm-kernel-2.6.9-58.6.1.el4_8.18.i686.rpm dlm-kernel-hugemem-2.6.9-58.6.1.el4_8.18.i686.rpm dlm-kernel-smp-2.6.9-58.6.1.el4_8.18.i686.rpm dlm-kernel-xenU-2.6.9-58.6.1.el4_8.18.i686.rpm dlm-kernheaders-2.6.9-58.6.1.el4_8.18.i686.rpm GFS-kernel-2.6.9-85.2.1.el4_8.14.i686.rpm GFS-kernel-hugemem-2.6.9-85.2.1.el4_8.14.i686.rpm GFS-kernel-smp-2.6.9-85.2.1.el4_8.14.i686.rpm GFS-kernel-xenU-2.6.9-85.2.1.el4_8.14.i686.rpm GFS-kernheaders-2.6.9-85.2.1.el4_8.14.i686.rpm gnbd-kernel-2.6.9-10.56.3.el4_8.15.i686.rpm gnbd-kernel-hugemem-2.6.9-10.56.3.el4_8.15.i686.rpm gnbd-kernel-smp-2.6.9-10.56.3.el4_8.15.i686.rpm gnbd-kernel-xenU-2.6.9-10.56.3.el4_8.15.i686.rpm gnbd-kernheaders-2.6.9-10.56.3.el4_8.15.i686.rpm x86_64: cman-kernel-2.6.9-56.7.4.el4_8.16.x86_64.rpm cman-kernel-largesmp-2.6.9-56.7.4.el4_8.16.x86_64.rpm cman-kernel-smp-2.6.9-56.7.4.el4_8.16.x86_64.rpm cman-kernel-xenU-2.6.9-56.7.4.el4_8.16.x86_64.rpm cman-kernheaders-2.6.9-56.7.4.el4_8.16.x86_64.rpm cmirror-kernel-2.6.9-43.12.1.el4_8.13.x86_64.rpm cmirror-kernel-largesmp-2.6.9-43.12.1.el4_8.13.x86_64.rpm cmirror-kernel-smp-2.6.9-43.12.1.el4_8.13.x86_64.rpm cmirror-kernel-xenU-2.6.9-43.12.1.el4_8.13.x86_64.rpm dlm-kernel-2.6.9-58.6.1.el4_8.18.x86_64.rpm dlm-kernel-largesmp-2.6.9-58.6.1.el4_8.18.x86_64.rpm dlm-kernel-smp-2.6.9-58.6.1.el4_8.18.x86_64.rpm dlm-kernel-xenU-2.6.9-58.6.1.el4_8.18.x86_64.rpm dlm-kernheaders-2.6.9-58.6.1.el4_8.18.x86_64.rpm GFS-kernel-2.6.9-85.2.1.el4_8.14.x86_64.rpm GFS-kernel-largesmp-2.6.9-85.2.1.el4_8.14.x86_64.rpm GFS-kernel-smp-2.6.9-85.2.1.el4_8.14.x86_64.rpm GFS-kernel-xenU-2.6.9-85.2.1.el4_8.14.x86_64.rpm GFS-kernheaders-2.6.9-85.2.1.el4_8.14.x86_64.rpm gnbd-kernel-2.6.9-10.56.3.el4_8.15.x86_64.rpm gnbd-kernel-largesmp-2.6.9-10.56.3.el4_8.15.x86_64.rpm gnbd-kernel-smp-2.6.9-10.56.3.el4_8.15.x86_64.rpm gnbd-kernel-xenU-2.6.9-10.56.3.el4_8.15.x86_64.rpm gnbd-kernheaders-2.6.9-10.56.3.el4_8.15.x86_64.rpm NOTE: You might notice that the binary rpm names do not match the source rpm names. This is because we had to implement a fix for previously "poorly named rpms". We apologize for this and hope it does not cause too much problem. This group of rpm's will continue to have this strange naming convention until they raise the version of the cluster packages, or until the end of SL4. Thanks Troy Dawson Troy J Dawson wrote: > Synopsis: Important: kernel security and bug fix update > Issue date: 2010-08-05 > CVE Names: CVE-2010-2248 CVE-2010-2521 > > This update fixes the following security issues: > > * a flaw was found in the CIFSSMBWrite() function in the Linux kernel > Common Internet File System (CIFS) implementation. A remote attacker > could send a specially-crafted SMB response packet to a target CIFS > client, resulting in a kernel panic (denial of service). (CVE-2010-2248, > Important) > > * buffer overflow flaws were found in the Linux kernel's implementation > of the server-side External Data Representation (XDR) for the Network > File System (NFS) version 4. An attacker on the local network could send > a specially-crafted large compound request to the NFSv4 server, which > could possibly result in a kernel panic (denial of service) or, > potentially, code execution. (CVE-2010-2521, Important) > > This update also fixes the following bug: > > * the rpc_call_async() function in the SUN Remote Procedure Call (RPC) > subsystem in the Linux kernel had a reference counting bug. In certain > situations, some Network Lock Manager (NLM) messages may have triggered > this bug on NFSv2 and NFSv3 servers, leading to a kernel panic (with > "kernel BUG at fs/lockd/host.c:[xxx]!" logged to "/var/log/messages"). > (BZ#612962) > > The system must be rebooted for this update to take effect. > > SL 4.x > > SRPMS: > kernel-2.6.9-89.0.28.EL.src.rpm > i386: > kernel-2.6.9-89.0.28.EL.i686.rpm > kernel-devel-2.6.9-89.0.28.EL.i686.rpm > kernel-doc-2.6.9-89.0.28.EL.noarch.rpm > kernel-hugemem-2.6.9-89.0.28.EL.i686.rpm > kernel-hugemem-devel-2.6.9-89.0.28.EL.i686.rpm > kernel-smp-2.6.9-89.0.28.EL.i686.rpm > kernel-smp-devel-2.6.9-89.0.28.EL.i686.rpm > kernel-xenU-2.6.9-89.0.28.EL.i686.rpm > kernel-xenU-devel-2.6.9-89.0.28.EL.i686.rpm > Dependancies: > kernel-module-fuse-2.6.9-89.0.28.EL-2.7.3-1.SL.i686.rpm > kernel-module-fuse-2.6.9-89.0.28.ELhugemem-2.7.3-1.SL.i686.rpm > kernel-module-fuse-2.6.9-89.0.28.ELsmp-2.7.3-1.SL.i686.rpm > kernel-module-fuse-2.6.9-89.0.28.ELxenU-2.7.3-1.SL.i686.rpm > kernel-module-ipw3945-2.6.9-89.0.28.EL-1.1.0-1.SL4.i686.rpm > kernel-module-ipw3945-2.6.9-89.0.28.ELhugemem-1.1.0-1.SL4.i686.rpm > kernel-module-ipw3945-2.6.9-89.0.28.ELsmp-1.1.0-1.SL4.i686.rpm > kernel-module-ipw3945-2.6.9-89.0.28.ELxenU-1.1.0-1.SL4.i686.rpm > kernel-module-ndiswrapper-2.6.9-89.0.28.EL-1.41-1.SL.i686.rpm > kernel-module-ndiswrapper-2.6.9-89.0.28.ELhugemem-1.41-1.SL.i686.rpm > kernel-module-ndiswrapper-2.6.9-89.0.28.ELsmp-1.41-1.SL.i686.rpm > kernel-module-ndiswrapper-2.6.9-89.0.28.ELxenU-1.41-1.SL.i686.rpm > kernel-module-openafs-2.6.9-89.0.28.EL-1.4.7-68.2.SL4.i686.rpm > kernel-module-openafs-2.6.9-89.0.28.ELhugemem-1.4.7-68.2.SL4.i686.rpm > kernel-module-openafs-2.6.9-89.0.28.ELsmp-1.4.7-68.2.SL4.i686.rpm > kernel-module-openafs-2.6.9-89.0.28.ELxenU-1.4.7-68.2.SL4.i686.rpm > kernel-module-r1000-2.6.9-89.0.28.EL-2.2-2.SL4x.i686.rpm > kernel-module-r1000-2.6.9-89.0.28.ELhugemem-2.2-2.SL4x.i686.rpm > kernel-module-r1000-2.6.9-89.0.28.ELsmp-2.2-2.SL4x.i686.rpm > kernel-module-r1000-2.6.9-89.0.28.ELxenU-2.2-2.SL4x.i686.rpm > kernel-module-squashfs-2.6.9-89.0.28.EL-3.1.2-3.i686.rpm > kernel-module-squashfs-2.6.9-89.0.28.ELhugemem-3.1.2-3.i686.rpm > kernel-module-squashfs-2.6.9-89.0.28.ELsmp-3.1.2-3.i686.rpm > kernel-module-squashfs-2.6.9-89.0.28.ELxenU-3.1.2-3.i686.rpm > kernel-module-unionfs-2.6.9-89.0.28.EL-1.1.5-3.i686.rpm > kernel-module-unionfs-2.6.9-89.0.28.ELsmp-1.1.5-3.i686.rpm > > > x86_64: > kernel-2.6.9-89.0.28.EL.x86_64.rpm > kernel-devel-2.6.9-89.0.28.EL.x86_64.rpm > kernel-doc-2.6.9-89.0.28.EL.noarch.rpm > kernel-largesmp-2.6.9-89.0.28.EL.x86_64.rpm > kernel-largesmp-devel-2.6.9-89.0.28.EL.x86_64.rpm > kernel-smp-2.6.9-89.0.28.EL.x86_64.rpm > kernel-smp-devel-2.6.9-89.0.28.EL.x86_64.rpm > kernel-xenU-2.6.9-89.0.28.EL.x86_64.rpm > kernel-xenU-devel-2.6.9-89.0.28.EL.x86_64.rpm > Dependancies > kernel-module-fuse-2.6.9-89.0.28.EL-2.7.3-1.SL.x86_64.rpm > kernel-module-fuse-2.6.9-89.0.28.ELlargesmp-2.7.3-1.SL.x86_64.rpm > kernel-module-fuse-2.6.9-89.0.28.ELsmp-2.7.3-1.SL.x86_64.rpm > kernel-module-fuse-2.6.9-89.0.28.ELxenU-2.7.3-1.SL.x86_64.rpm > kernel-module-ipw3945-2.6.9-89.0.28.EL-1.1.0-1.SL4.x86_64.rpm > kernel-module-ipw3945-2.6.9-89.0.28.ELlargesmp-1.1.0-1.SL4.x86_64.rpm > kernel-module-ipw3945-2.6.9-89.0.28.ELsmp-1.1.0-1.SL4.x86_64.rpm > kernel-module-ipw3945-2.6.9-89.0.28.ELxenU-1.1.0-1.SL4.x86_64.rpm > kernel-module-ndiswrapper-2.6.9-89.0.28.EL-1.41-1.SL.x86_64.rpm > kernel-module-ndiswrapper-2.6.9-89.0.28.ELlargesmp-1.41-1.SL.x86_64.rpm > kernel-module-ndiswrapper-2.6.9-89.0.28.ELsmp-1.41-1.SL.x86_64.rpm > kernel-module-ndiswrapper-2.6.9-89.0.28.ELxenU-1.41-1.SL.x86_64.rpm > kernel-module-openafs-2.6.9-89.0.28.EL-1.4.7-68.2.SL4.x86_64.rpm > kernel-module-openafs-2.6.9-89.0.28.ELlargesmp-1.4.7-68.2.SL4.x86_64.rpm > kernel-module-openafs-2.6.9-89.0.28.ELsmp-1.4.7-68.2.SL4.x86_64.rpm > kernel-module-openafs-2.6.9-89.0.28.ELxenU-1.4.7-68.2.SL4.x86_64.rpm > kernel-module-r1000-2.6.9-89.0.28.EL-2.2-2.SL4x.x86_64.rpm > kernel-module-r1000-2.6.9-89.0.28.ELlargesmp-2.2-2.SL4x.x86_64.rpm > kernel-module-r1000-2.6.9-89.0.28.ELsmp-2.2-2.SL4x.x86_64.rpm > kernel-module-r1000-2.6.9-89.0.28.ELxenU-2.2-2.SL4x.x86_64.rpm > kernel-module-squashfs-2.6.9-89.0.28.EL-3.1.2-3.x86_64.rpm > kernel-module-squashfs-2.6.9-89.0.28.ELlargesmp-3.1.2-3.x86_64.rpm > kernel-module-squashfs-2.6.9-89.0.28.ELsmp-3.1.2-3.x86_64.rpm > kernel-module-squashfs-2.6.9-89.0.28.ELxenU-3.1.2-3.x86_64.rpm > kernel-module-unionfs-2.6.9-89.0.28.EL-1.1.5-3.x86_64.rpm > kernel-module-unionfs-2.6.9-89.0.28.ELsmp-1.1.5-3.x86_64.rpm > > > -Connie Sieh > -Troy Dawson > > > -- __________________________________________________ Troy Dawson This email address is being protected from spambots. You need JavaScript enabled to view it. (630)840-6468 Fermilab ComputingDivision/LSCS/CSI/USS Group __________________________________________________ From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Wed, 25 Aug 2010 15:18:33 -0500 Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Important: openoffice.org on SL4.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Important: openoffice.org security update Issue date: 2010-08-23 CVE Names: CVE-2010-2935 CVE-2010-2936 An integer truncation error, leading to a heap-based buffer overflow, was found in the way the OpenOffice.org Impress presentation application sanitized a file's dictionary property items. An attacker could use this flaw to create a specially-crafted Microsoft Office PowerPoint file that, when opened, would cause OpenOffice.org Impress to crash or, possibly, execute arbitrary code with the privileges of the user running OpenOffice.org Impress. (CVE-2010-2935) An integer overflow flaw, leading to a heap-based buffer overflow, was found in the way OpenOffice.org Impress processed polygons in input documents. An attacker could use this flaw to create a specially-crafted Microsoft Office PowerPoint file that, when opened, would cause OpenOffice.org Impress to crash or, possibly, execute arbitrary code with the privileges of the user running OpenOffice.org Impress. (CVE-2010-2936) SL 4.x SRPMS: openoffice.org-1.1.5-10.6.0.7.EL4.5.src.rpm i386: openoffice.org-1.1.5-10.6.0.7.EL4.5.i386.rpm openoffice.org-i18n-1.1.5-10.6.0.7.EL4.5.i386.rpm openoffice.org-kde-1.1.5-10.6.0.7.EL4.5.i386.rpm openoffice.org-libs-1.1.5-10.6.0.7.EL4.5.i386.rpm x86_64: openoffice.org-1.1.5-10.6.0.7.EL4.5.i386.rpm openoffice.org-i18n-1.1.5-10.6.0.7.EL4.5.i386.rpm openoffice.org-kde-1.1.5-10.6.0.7.EL4.5.i386.rpm openoffice.org-libs-1.1.5-10.6.0.7.EL4.5.i386.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Wed, 25 Aug 2010 15:19:46 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: ImageMagick on SL4.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Moderate: ImageMagick security update Issue date: 2010-08-25 CVE Names: CVE-2009-1882 An integer overflow flaw, leading to a heap-based buffer overflow, was found in the ImageMagick routine responsible for creating X11 images. An attacker could create a specially-crafted image file that, when opened by a victim, would cause ImageMagick to crash or, potentially, execute arbitrary code. (CVE-2009-1882) All running instances of ImageMagick must be restarted for this update to take effect. SL 4.x SRPMS: ImageMagick-6.0.7.1-20.el4_8.1.src.rpm i386: ImageMagick-6.0.7.1-20.el4_8.1.i386.rpm ImageMagick-c++-6.0.7.1-20.el4_8.1.i386.rpm ImageMagick-c++-devel-6.0.7.1-20.el4_8.1.i386.rpm ImageMagick-devel-6.0.7.1-20.el4_8.1.i386.rpm ImageMagick-perl-6.0.7.1-20.el4_8.1.i386.rpm x86_64: ImageMagick-6.0.7.1-20.el4_8.1.x86_64.rpm ImageMagick-c++-6.0.7.1-20.el4_8.1.x86_64.rpm ImageMagick-c++-devel-6.0.7.1-20.el4_8.1.x86_64.rpm ImageMagick-devel-6.0.7.1-20.el4_8.1.x86_64.rpm ImageMagick-perl-6.0.7.1-20.el4_8.1.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Wed, 25 Aug 2010 15:21:28 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: ImageMagick on SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Moderate: ImageMagick security and bug fix update Issue date: 2010-08-25 CVE Names: CVE-2009-1882 An integer overflow flaw, leading to a heap-based buffer overflow, was found in the ImageMagick routine responsible for creating X11 images. An attacker could create a specially-crafted image file that, when opened by a victim, would cause ImageMagick to crash or, potentially, execute arbitrary code. (CVE-2009-1882) This update also fixes the following bug: * previously, portions of certain RGB images on the right side were not rendered and left black when converting or displaying them. With this update, RGB images display correctly. (BZ#625058) All running instances of ImageMagick must be restarted for this update to take effect. SL 5.x SRPMS: ImageMagick-6.2.8.0-4.el5_5.2.src.rpm i386: ImageMagick-6.2.8.0-4.el5_5.2.i386.rpm ImageMagick-c++-6.2.8.0-4.el5_5.2.i386.rpm ImageMagick-c++-devel-6.2.8.0-4.el5_5.2.i386.rpm ImageMagick-devel-6.2.8.0-4.el5_5.2.i386.rpm ImageMagick-perl-6.2.8.0-4.el5_5.2.i386.rpm x86_64: ImageMagick-6.2.8.0-4.el5_5.2.i386.rpm ImageMagick-6.2.8.0-4.el5_5.2.x86_64.rpm ImageMagick-c++-6.2.8.0-4.el5_5.2.i386.rpm ImageMagick-c++-6.2.8.0-4.el5_5.2.x86_64.rpm ImageMagick-c++-devel-6.2.8.0-4.el5_5.2.i386.rpm ImageMagick-c++-devel-6.2.8.0-4.el5_5.2.x86_64.rpm ImageMagick-devel-6.2.8.0-4.el5_5.2.i386.rpm ImageMagick-devel-6.2.8.0-4.el5_5.2.x86_64.rpm ImageMagick-perl-6.2.8.0-4.el5_5.2.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Wed, 25 Aug 2010 15:36:30 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: qspice-client on SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Moderate: qspice-client security update Issue date: 2010-08-25 CVE Names: CVE-2010-2792 The qspice-client package provides the client side of the SPICE protocol. A race condition was found in the way the SPICE Mozilla Firefox plug-in and the SPICE client communicated. A local attacker could use this flaw to trick the plug-in and the SPICE client into communicating over an attacker-controlled socket, possibly gaining access to authentication details, or resulting in a man-in-the-middle attack on the SPICE connection. (CVE-2010-2792) NOTE: Because qspice-client was originally only x86_64, there are several dependencies for i386 going out with this errata. SL 5.x SRPMS: qspice-client-0.3.0-4.el5_5.src.rpm i386: qspice-client-0.3.0-4.el5_5.i386.rpm Dependancies: celt051-0.5.1.3-0.el5.i386.rpm celt051-devel-0.5.1.3-0.el5.i386.rpm log4cpp-1.0-9.el5.i386.rpm log4cpp-devel-1.0-9.el5.i386.rpm log4cpp-docs-1.0-9.el5.i386.rpm qcairo-1.8.7.1-3.el5.i386.rpm qcairo-devel-1.8.7.1-3.el5.i386.rpm qffmpeg-devel-0.4.9-0.15.20080908.el5.i386.rpm qffmpeg-devel-0.4.9-0.16.20080908.el5_5.i386.rpm qffmpeg-libs-0.4.9-0.15.20080908.el5.i386.rpm qffmpeg-libs-0.4.9-0.16.20080908.el5_5.i386.rpm qpixman-0.13.3-4.el5.i386.rpm qpixman-devel-0.13.3-4.el5.i386.rpm x86_64: qspice-client-0.3.0-4.el5_5.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Wed, 25 Aug 2010 15:36:33 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: spice-xpi on SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Moderate: spice-xpi security and bug fix update Issue date: 2010-08-25 CVE Names: CVE-2010-2792 CVE-2010-2794 The spice-xpi package provides a plug-in that allows the SPICE client to run from within Mozilla Firefox. A race condition was found in the way the SPICE Firefox plug-in and the SPICE client communicated. A local attacker could use this flaw to trick the plug-in and the SPICE client into communicating over an attacker-controlled socket, possibly gaining access to authentication details, or resulting in a man-in-the-middle attack on the SPICE connection. (CVE-2010-2792) It was found that the SPICE Firefox plug-in used a predictable name for its log file. A local attacker could use this flaw to conduct a symbolic link attack, allowing them to overwrite arbitrary files accessible to the user running Firefox. (CVE-2010-2794) This update also fixes the following bugs: * a bug prevented users of Red Hat Enterprise Linux 5.5, with all updates applied, from running the SPICE Firefox plug-in when using Firefox 3.6.4. With this update, the plug-in works correctly with Firefox 3.6.4 and the latest version in Red Hat Enterprise Linux 5.5, Firefox 3.6.7. (BZ#618244) * unused code has been removed during source code refactoring. This also resolves a bug in the SPICE Firefox plug-in that caused it to close random file descriptors. (BZ#594006, BZ#619067) Note: This update should be installed together with the qspice-client security update. After installing the update, Firefox must be restarted for the changes to take effect. SL 5.x SRPMS: spice-xpi-2.2-2.3.el5_5.src.rpm i386: spice-xpi-2.2-2.3.el5_5.i386.rpm x86_64: spice-xpi-2.2-2.3.el5_5.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Thu, 26 Aug 2010 10:18:32 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Important: openoffice.org on SL3.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Important: openoffice.org security update Issue date: 2010-08-23 CVE Names: CVE-2010-2935 CVE-2010-2936 An integer truncation error, leading to a heap-based buffer overflow, was found in the way the OpenOffice.org Impress presentation application sanitized a file's dictionary property items. An attacker could use this flaw to create a specially-crafted Microsoft Office PowerPoint file that, when opened, would cause OpenOffice.org Impress to crash or, possibly, execute arbitrary code with the privileges of the user running OpenOffice.org Impress. (CVE-2010-2935) An integer overflow flaw, leading to a heap-based buffer overflow, was found in the way OpenOffice.org Impress processed polygons in input documents. An attacker could use this flaw to create a specially-crafted Microsoft Office PowerPoint file that, when opened, would cause OpenOffice.org Impress to crash or, possibly, execute arbitrary code with the privileges of the user running OpenOffice.org Impress. (CVE-2010-2936) All running instances of OpenOffice.org applications must be restarted for this update to take effect. SL 3.0.x SRPMS: openoffice.org-1.1.2-48.2.0.EL3.src.rpm i386: openoffice.org-1.1.2-48.2.0.EL3.i386.rpm openoffice.org-i18n-1.1.2-48.2.0.EL3.i386.rpm openoffice.org-libs-1.1.2-48.2.0.EL3.i386.rpm x86_64: openoffice.org-1.1.2-48.2.0.EL3.i386.rpm openoffice.org-i18n-1.1.2-48.2.0.EL3.i386.rpm openoffice.org-libs-1.1.2-48.2.0.EL3.i386.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Thu, 26 Aug 2010 13:34:18 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Important: openoffice.org2 on SL4.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Important: openoffice.org2 security update Issue date: 2010-08-23 CVE Names: CVE-2010-2935 CVE-2010-2936 An integer truncation error, leading to a heap-based buffer overflow, was found in the way the OpenOffice.org Impress presentation application sanitized a file's dictionary property items. An attacker could use this flaw to create a specially-crafted Microsoft Office PowerPoint file that, when opened, would cause OpenOffice.org Impress to crash or, possibly, execute arbitrary code with the privileges of the user running OpenOffice.org Impress. (CVE-2010-2935) An integer overflow flaw, leading to a heap-based buffer overflow, was found in the way OpenOffice.org Impress processed polygons in input documents. An attacker could use this flaw to create a specially-crafted Microsoft Office PowerPoint file that, when opened, would cause OpenOffice.org Impress to crash or, possibly, execute arbitrary code with the privileges of the user running OpenOffice.org Impress. (CVE-2010-2936) All running instances of OpenOffice.org applications must be restarted for this update to take effect. SL 4.x SRPMS: openoffice.org2-2.0.4-5.7.0.6.1.el4_8.6.src.rpm i386: openoffice.org2-base-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-calc-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-core-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-draw-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-emailmerge-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-graphicfilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-impress-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-javafilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-af_ZA-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ar-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-bg_BG-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-bn-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ca_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-cs_CZ-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-cy_GB-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-da_DK-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-de-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-el_GR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-es-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-et_EE-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-eu_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-fi_FI-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-fr-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ga_IE-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-gl_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-gu_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-he_IL-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-hi_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-hr_HR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-hu_HU-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-it-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ja_JP-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ko_KR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-lt_LT-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ms_MY-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-nb_NO-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-nl-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-nn_NO-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-pa_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-pl_PL-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-pt_BR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-pt_PT-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ru-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-sk_SK-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-sl_SI-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-sr_CS-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-sv-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ta_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-th_TH-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-tr_TR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-zh_CN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-zh_TW-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-zu_ZA-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-math-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-pyuno-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-testtools-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-writer-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-xsltfilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm x86_64: openoffice.org2-base-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-calc-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-core-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-draw-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-graphicfilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-impress-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-javafilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-af_ZA-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ar-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-bg_BG-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-bn-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ca_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-cs_CZ-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-cy_GB-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-da_DK-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-de-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-el_GR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-es-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-et_EE-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-eu_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-fi_FI-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-fr-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ga_IE-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-gl_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-gu_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-he_IL-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-hi_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-hr_HR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-hu_HU-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-it-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ja_JP-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ko_KR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-lt_LT-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ms_MY-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-nb_NO-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-nl-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-nn_NO-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-pa_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-pl_PL-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-pt_BR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-pt_PT-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ru-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-sk_SK-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-sl_SI-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-sr_CS-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-sv-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-ta_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-th_TH-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-tr_TR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-zh_CN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-zh_TW-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-langpack-zu_ZA-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-math-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-testtools-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-writer-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm openoffice.org2-xsltfilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Fri, 27 Aug 2010 14:45:37 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Low: gdm on SL4.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Low: gdm security and bug fix update Issue date: 2010-08-26 CVE Names: CVE-2007-5079 A flaw was found in the way the gdm package was built. The gdm package was missing TCP wrappers support on 64-bit platforms, which could result in an administrator believing they had access restrictions enabled when they did not. (CVE-2007-5079) This update also fixes the following bug: * sometimes the system would hang instead of properly shutting down when a user chose "Shut down" from the login screen. (BZ#625818) GDM must be restarted for this update to take effect. Rebooting achieves this, but changing the runlevel from 5 to 3 and back to 5 also restarts GDM. SL 4.x SRPMS: gdm-2.6.0.5-7.rhel4.19.el4_8.2.src.rpm i386: gdm-2.6.0.5-7.rhel4.19.el4_8.2.i386.rpm x86_64: gdm-2.6.0.5-7.rhel4.19.el4_8.2.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Mon, 30 Aug 2010 15:19:54 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Moderate: httpd on SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Moderate: httpd security and bug fix update Issue date: 2010-08-30 CVE Names: CVE-2010-1452 CVE-2010-2791 A flaw was discovered in the way the mod_proxy module of the Apache HTTP Server handled the timeouts of requests forwarded by a reverse proxy to the back-end server. If the proxy was configured to reuse existing back-end connections, it could return a response intended for another user under certain timeout conditions, possibly leading to information disclosure. (CVE-2010-2791) A flaw was found in the way the mod_dav module of the Apache HTTP Server handled certain requests. If a remote attacker were to send a carefully crafted request to the server, it could cause the httpd child process to crash. (CVE-2010-1452) This update also fixes the following bugs: * numerous issues in the INFLATE filter provided by mod_deflate. "Inflate error -5 on flush" errors may have been logged. This update upgrades mod_deflate to the newer upstream version from Apache HTTP Server 2.2.15. (BZ#625435) * the response would be corrupted if mod_filter applied the DEFLATE filter to a resource requiring a subrequest with an internal redirect. (BZ#625451) * the OID() function used in the mod_ssl "SSLRequire" directive did not correctly evaluate extensions of an unknown type. (BZ#625452) After installing the updatedpackages, the httpd daemon must be restarted for the update to take effect. SL 5.x SRPMS: httpd-2.2.3-43.el5_5.3.src.rpm i386: httpd-2.2.3-43.sl5.3.i386.rpm httpd-devel-2.2.3-43.sl5.3.i386.rpm httpd-manual-2.2.3-43.sl5.3.i386.rpm mod_ssl-2.2.3-43.sl5.3.i386.rpm x86_64: httpd-2.2.3-43.sl5.3.x86_64.rpm httpd-devel-2.2.3-43.sl5.3.i386.rpm httpd-devel-2.2.3-43.sl5.3.x86_64.rpm httpd-manual-2.2.3-43.sl5.3.x86_64.rpm mod_ssl-2.2.3-43.sl5.3.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Tue, 31 Aug 2010 13:17:11 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA Important: kernel on SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Important: kernel security update Issue date: 2010-08-30 CVE Names: CVE-2010-2240 This update fixes the following security issue: * when an application has a stack overflow, the stack could silently overwrite another memory mapped area instead of a segmentation fault occurring, which could cause an application to execute arbitrary code, possibly leading to privilege escalation. It is known that the X Window System server can be used to trigger this flaw. (CVE-2010-2240, Important) The system must be rebooted for this update to take effect. SL 5.x SRPMS: kernel-2.6.18-194.11.3.el5.src.rpm i386: kernel-2.6.18-194.11.3.el5.i686.rpm kernel-debug-2.6.18-194.11.3.el5.i686.rpm kernel-debug-devel-2.6.18-194.11.3.el5.i686.rpm kernel-devel-2.6.18-194.11.3.el5.i686.rpm kernel-doc-2.6.18-194.11.3.el5.noarch.rpm kernel-headers-2.6.18-194.11.3.el5.i386.rpm kernel-PAE-2.6.18-194.11.3.el5.i686.rpm kernel-PAE-devel-2.6.18-194.11.3.el5.i686.rpm kernel-xen-2.6.18-194.11.3.el5.i686.rpm kernel-xen-devel-2.6.18-194.11.3.el5.i686.rpm Dependencies: kernel-module-aufs-2.6.18-194.11.3.el5-0.20090202.cvs-6.sl5.i686.rpm kernel-module-aufs-2.6.18-194.11.3.el5PAE-0.20090202.cvs-6.sl5.i686.rpm kernel-module-aufs-2.6.18-194.11.3.el5xen-0.20090202.cvs-6.sl5.i686.rpm kernel-module-ndiswrapper-2.6.18-194.11.3.el5-1.55-1.SL.i686.rpm kernel-module-ndiswrapper-2.6.18-194.11.3.el5PAE-1.55-1.SL.i686.rpm kernel-module-ndiswrapper-2.6.18-194.11.3.el5xen-1.55-1.SL.i686.rpm kernel-module-openafs-2.6.18-194.11.3.el5-1.4.12-79.sl5.i686.rpm kernel-module-openafs-2.6.18-194.11.3.el5PAE-1.4.12-79.sl5.i686.rpm kernel-module-openafs-2.6.18-194.11.3.el5xen-1.4.12-79.sl5.i686.rpm kernel-module-xfs-2.6.18-194.11.3.el5-0.4-2.sl5.i686.rpm kernel-module-xfs-2.6.18-194.11.3.el5PAE-0.4-2.sl5.i686.rpm kernel-module-xfs-2.6.18-194.11.3.el5xen-0.4-2.sl5.i686.rpm x86_64: kernel-2.6.18-194.11.3.el5.x86_64.rpm kernel-debug-2.6.18-194.11.3.el5.x86_64.rpm kernel-debug-devel-2.6.18-194.11.3.el5.x86_64.rpm kernel-devel-2.6.18-194.11.3.el5.x86_64.rpm kernel-doc-2.6.18-194.11.3.el5.noarch.rpm kernel-headers-2.6.18-194.11.3.el5.x86_64.rpm kernel-xen-2.6.18-194.11.3.el5.x86_64.rpm kernel-xen-devel-2.6.18-194.11.3.el5.x86_64.rpm Dependencies: kernel-module-aufs-2.6.18-194.11.3.el5-0.20090202.cvs-6.sl5.x86_64.rpm kernel-module-aufs-2.6.18-194.11.3.el5xen-0.20090202.cvs-6.sl5.x86_64.rpm kernel-module-ndiswrapper-2.6.18-194.11.3.el5-1.55-1.SL.x86_64.rpm kernel-module-ndiswrapper-2.6.18-194.11.3.el5xen-1.55-1.SL.x86_64.rpm kernel-module-openafs-2.6.18-194.11.3.el5-1.4.11-76.sl5.x86_64.rpm kernel-module-openafs-2.6.18-194.11.3.el5-1.4.12-79.sl5.x86_64.rpm kernel-module-openafs-2.6.18-194.11.3.el5xen-1.4.11-76.sl5.x86_64.rpm kernel-module-openafs-2.6.18-194.11.3.el5xen-1.4.12-79.sl5.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Tue, 31 Aug 2010 15:01:13 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: FASTBUGS for SL 4.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "The following FASTBUGS have been uploaded to i386: fence-1.32.67-1.el4_8.5.i686.rpm iputils-20020927-22.el4_8.2.i386.rpm libxml2-2.6.16-12.8.i386.rpm libxml2-devel-2.6.16-12.8.i386.rpm libxml2-python-2.6.16-12.8.i386.rpm nss-3.12.6-2.el4_8.i386.rpm nss-devel-3.12.6-2.el4_8.i386.rpm nss-tools-3.12.6-2.el4_8.i386.rpm rgmanager-1.9.87-1.el4_8.6.i386.rpm x86_64: fence-1.32.67-1.el4_8.5.x86_64.rpm iputils-20020927-22.el4_8.2.x86_64.rpm libxml2-2.6.16-12.8.i386.rpm libxml2-2.6.16-12.8.x86_64.rpm libxml2-devel-2.6.16-12.8.x86_64.rpm libxml2-python-2.6.16-12.8.x86_64.rpm nss-3.12.6-2.el4_8.i386.rpm nss-3.12.6-2.el4_8.x86_64.rpm nss-devel-3.12.6-2.el4_8.x86_64.rpm nss-tools-3.12.6-2.el4_8.x86_64.rpm rgmanager-1.9.87-1.el4_8.6.x86_64.rpm -Connie Sieh -Troy Dawson From DUMMY-LINE Fri Jun 21 20:06:45 2019 Date: Tue, 31 Aug 2010 15:01:53 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: FASTBUGS for SL 5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "The following FASTBUGS have been uploaded to i386: apr-1.2.7-11.el5_5.2.i386.rpm apr-devel-1.2.7-11.el5_5.2.i386.rpm apr-docs-1.2.7-11.el5_5.2.i386.rpm dhclient-3.0.5-23.el5_5.2.i386.rpm dhcp-3.0.5-23.el5_5.2.i386.rpm dhcp-devel-3.0.5-23.el5_5.2.i386.rpm ipsec-tools-0.6.5-14.el5_5.5.i386.rpm libdhcp4client-3.0.5-23.el5_5.2.i386.rpm libdhcp4client-devel-3.0.5-23.el5_5.2.i386.rpm patch-2.5.4-31.el5.i386.rpm poppler-0.5.4-4.4.el5_5.13.i386.rpm poppler-devel-0.5.4-4.4.el5_5.13.i386.rpm poppler-utils-0.5.4-4.4.el5_5.13.i386.rpm rgmanager-2.0.52-6.el5_5.8.i386.rpm x86_64: apr-1.2.7-11.el5_5.2.i386.rpm apr-1.2.7-11.el5_5.2.x86_64.rpm apr-devel-1.2.7-11.el5_5.2.i386.rpm apr-devel-1.2.7-11.el5_5.2.x86_64.rpm apr-docs-1.2.7-11.el5_5.2.x86_64.rpm dhclient-3.0.5-23.el5_5.2.x86_64.rpm dhcp-3.0.5-23.el5_5.2.x86_64.rpm dhcp-devel-3.0.5-23.el5_5.2.i386.rpm dhcp-devel-3.0.5-23.el5_5.2.x86_64.rpm ipsec-tools-0.6.5-14.el5_5.5.x86_64.rpm libdhcp4client-3.0.5-23.el5_5.2.i386.rpm libdhcp4client-3.0.5-23.el5_5.2.x86_64.rpm libdhcp4client-devel-3.0.5-23.el5_5.2.i386.rpm libdhcp4client-devel-3.0.5-23.el5_5.2.x86_64.rpm patch-2.5.4-31.el5.x86_64.rpm poppler-0.5.4-4.4.el5_5.13.i386.rpm poppler-0.5.4-4.4.el5_5.13.x86_64.rpm poppler-devel-0.5.4-4.4.el5_5.13.i386.rpm poppler-devel-0.5.4-4.4.el5_5.13.x86_64.rpm poppler-utils-0.5.4-4.4.el5_5.13.x86_64.rpm rgmanager-2.0.52-6.el5_5.8.x86_64.rpm -Connie Sieh -Troy Dawson lastline