Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Scientific Linux 5.x: Important Kernel Security Update for Freetype

Scientific Large Esm H446
Important: kernel security update
From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Sun, 1 Aug 2010 20:32:52 -0500
Reply-To: Connie Sieh 
Sender: Security Errata for Scientific Linux
 
From: Connie Sieh 
Subject: Security ERRATA Important: freetype on SL3
Comments: To: scientific 

Synopsis: Important: freetype security update
Issue date: 2010-07-30
CVE Names: CVE-2010-2500 CVE-2010-2527 CVE-2010-2541

FreeType is a free, high-quality, portable font engine that can open and
manage font files. It also loads, hints, and renders individual glyphs
efficiently. These packages provide both the FreeType 1 and FreeType 2 font
engines.

An integer overflow flaw was found in the way the FreeType font engine
processed font files. If a user loaded a carefully-crafted font file with
an application linked against FreeType, it could cause the application to
crash or, possibly, execute arbitrary code with the privileges of the user
running the application. (CVE-2010-2500)

Several buffer overflow flaws were found in the FreeType demo applications.
If a user loaded a carefully-crafted font file with a demo application, it
could cause the application to crash or, possibly, execute arbitrary code
with the privileges of the user running the application. (CVE-2010-2527,
CVE-2010-2541)

We would like to thank Robert Swiecki of the Google Security Team for
the discovery of the CVE-2010-2500 and CVE-2010-2527 issues.

Note: All of the issues in this erratum only affect the FreeType 2 font
engine.

Users are advised to upgrade to these updated packages, which contain
backported patches to correct these issues. The X server must be restarted
(log out, then log back in) for this update to take effect.

SL 3

Source:
 freetype-2.1.4-15.el3.src.rpm

i386:
 freetype-2.1.4-15.el3.i386.rpm
 freetype-devel-2.1.4-15.el3.i386.rpm

x86_64:
 freetype-2.1.4-15.el3.i386.rpm
 freetype-2.1.4-15.el3.x86_64.rpm
 freetype-devel-2.1.4-15.el3.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Tue, 3 Aug 2010 20:29:26 -0500
Reply-To: Connie Sieh 
Sender: Security Errata for Scientific Linux
 
From: Connie Sieh 
Subject: Security ERRATA Moderate: lftp for SL 5
Comments: To: scientific 

Synopsis: Moderate: lftp security update
Issue date: 2010-08-02
CVE Names: CVE-2010-2251

LFTP is a sophisticated file transfer program for the FTP and HTTP
protocols. Like Bash, it has job control and uses the Readline library for
input. It has bookmarks, built-in mirroring, and can transfer several files
in parallel. It is designed with reliability in mind.

It was discovered that lftp trusted the file name provided in the
flaw to write or overwrite files in the current working directory of a
victim running lftp, by sending a different file from what the victim
requested. (CVE-2010-2251)

To correct this flaw, the following changes were made to lftp: the
"xfer:clobber" option now defaults to "no", causing lftp to not overwrite
existing files, and a new option, "xfer:auto-rename", which defaults to
"no", has been introduced to control whether lftp should use
server-suggested file names. Refer to the "Settings" section of the lftp(1)
manual page for additional details on changing lftp settings.

All lftp users should upgrade to this updated package, which contains a
backported patch to correct this issue.

Source:
 lftp-3.7.11-4.el5_5.3.src.rpm

i386:
 lftp-3.7.11-4.el5_5.3.i386.rpm

x86_64:
 lftp-3.7.11-4.el5_5.3.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Tue, 3 Aug 2010 20:48:52 -0500
Reply-To: Connie Sieh 
Sender: Security Errata for Scientific Linux
 
From: Connie Sieh 
Subject: Re: Security ERRATA Moderate: lvm2-cluster,lvm2 for SL5
Comments: To: =?ISO-8859-1?Q?Herv=E9_Riboulot?= 
Comments: cc: scientific 
In-Reply-To: <4C551EF8.4020105@wanadoo.fr>

The following have been uploaded to the security errata area because of
dependencies of lvm2.

i386:

 device-mapper-1.02.39-1.el5_5.2.i386.rpm
 device-mapper-event-1.02.39-1.el5_5.2.i386.rpm

x86_64:

 device-mapper-1.02.39-1.el5_5.2.i386.rpm
 device-mapper-1.02.39-1.el5_5.2.x86_64.rpm
 device-mapper-event-1.02.39-1.el5_5.2.x86_64.rpm

-Connie Sieh
On Sun, 1 Aug 2010, Herv=E9 Riboulot wrote:

> Hello,
>
> I cannot process the security update due to dependencies issues: 'Error:
> Missing Dependency: device-mapper >=3D 1.02.39-1.el5_5.1 is needed by package
> lvm2-2.02.56-8.el5_5.6.x86_64 (sl-security)'.
>
> Device-mapper (i386 and 86_64) are installed:
>
> rpm -qa device-mapper
> device-mapper-1.02.39-1.el5.x86_64
> device-mapper-1.02.39-1.el5.i386
>
>
> I'm running SL 5.5 on the following configuration: 2.6.18-194.8.1.el5 #1
> SMP Thu Jul 1 16:05:53 EDT 2010 x86_64 x86_64 x86_64 GNU/Linux
>
> Best regards,
>
>
>
>
> Le 01.08.2010 06:29, Connie Sieh a =E9crit:
>>
>> Issue date: 2010-07-28
>> CVE Names: CVE-2010-2526
>> Description:
>>
>> It was discovered that the cluster logical volume manager daemon (clvmd)
>> did not verify the credentials of clients connecting to its control UNIX
>> abstract socket, allowing local, unprivileged users to send control
>> commands that were intended to only be available to the privileged root
>> user. This could allow a local, unprivileged user to cause clvmd to exit,
>> or request clvmd to activate, deactivate, or reload any logical volume on
>> the local system or another system in the cluster. (CVE-2010-2526)
>>
>> Note: This update changes clvmd to use a pathname-based socket rather than
>> an abstract socket. As such, the lvm2 update 2010:0569, which changes
>> LVM to also use this pathname-based socket, must also be installed for LVM
>> to be able to communicate with the updated clvmd.
>>
>> All lvm2-cluster users should upgrade to this updated package, which
>> contains a backported patch to correct this issue. After installing the
>> updated package, clvmd must be restarted for the update to take effect.
>>
>> 5. Bugs fixed
>>
>> CVE-2010-2526 lvm2-cluster: insecurity when communicating between lvm2 and
>> clvmd
>>
>> 6. Package List:
>>
>> SRPM:
>> lvm2-cluster-2.02.56-7.el5_5.4.src.rpm
>>
>> i386:
>> lvm2-cluster-2.02.56-7.el5_5.4.i386.rpm
>>
>> x86_64:
>> lvm2-cluster-2.02.56-7.el5_5.4.x86_64.rpm
>>
>>
>> lvm2 update included because of dependency.
>>
>> i386:
>> lvm2-2.02.56-8.el5_5.6.i386.rpm
>> x86_64:
>> lvm2-2.02.56-8.el5_5.6.x86_64.rpm
>>
>> -Connie Sieh
>> -Troy Dawson
>>
>>
>
>
>
>
>
>

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Thu, 5 Aug 2010 15:01:56 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Important: tomcat5 on SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Important: tomcat5 security update
Issue date:	2010-08-02
CVE Names:	CVE-2009-2693 CVE-2009-2696 CVE-2009-2902
 CVE-2010-2227

A flaw was found in the way Tomcat handled the Transfer-Encoding header
in HTTP requests. A specially-crafted HTTP request could prevent Tomcat
from sending replies, or cause Tomcat to return truncated replies, or
replies containing data related to the requests of other users, for all
subsequent HTTP requests. (CVE-2010-2227)

The Tomcat security update RHSA-2009:1164 did not, unlike the erratum
text stated, provide a fix for CVE-2009-0781, a cross-site scripting
(XSS) flaw in the examples calendar application. With some web browsers,
remote attackers could use this flaw to inject arbitrary web script or
HTML via the "time" parameter. (CVE-2009-2696)

Two directory traversal flaws were found in the Tomcat deployment
process. A specially-crafted WAR file could, when deployed, cause a file
to be created outside of the web root into any directory writable by the
Tomcat user, or could lead to the deletion of files in the Tomcat host's
work directory. (CVE-2009-2693, CVE-2009-2902)

Tomcat must be restarted for this update to take effect.

SL 5.x

 SRPMS:
tomcat5-5.5.23-0jpp.9.el5_5.src.rpm
 i386:
tomcat5-5.5.23-0jpp.9.el5_5.i386.rpm
tomcat5-admin-webapps-5.5.23-0jpp.9.el5_5.i386.rpm
tomcat5-common-lib-5.5.23-0jpp.9.el5_5.i386.rpm
tomcat5-jasper-5.5.23-0jpp.9.el5_5.i386.rpm
tomcat5-jasper-javadoc-5.5.23-0jpp.9.el5_5.i386.rpm
tomcat5-jsp-2.0-api-5.5.23-0jpp.9.el5_5.i386.rpm
tomcat5-jsp-2.0-api-javadoc-5.5.23-0jpp.9.el5_5.i386.rpm
tomcat5-server-lib-5.5.23-0jpp.9.el5_5.i386.rpm
tomcat5-servlet-2.4-api-5.5.23-0jpp.9.el5_5.i386.rpm
tomcat5-servlet-2.4-api-javadoc-5.5.23-0jpp.9.el5_5.i386.rpm
tomcat5-webapps-5.5.23-0jpp.9.el5_5.i386.rpm
 x86_64:
tomcat5-5.5.23-0jpp.9.el5_5.x86_64.rpm
tomcat5-admin-webapps-5.5.23-0jpp.9.el5_5.x86_64.rpm
tomcat5-common-lib-5.5.23-0jpp.9.el5_5.x86_64.rpm
tomcat5-jasper-5.5.23-0jpp.9.el5_5.x86_64.rpm
tomcat5-jasper-javadoc-5.5.23-0jpp.9.el5_5.x86_64.rpm
tomcat5-jsp-2.0-api-5.5.23-0jpp.9.el5_5.x86_64.rpm
tomcat5-jsp-2.0-api-javadoc-5.5.23-0jpp.9.el5_5.x86_64.rpm
tomcat5-server-lib-5.5.23-0jpp.9.el5_5.x86_64.rpm
tomcat5-servlet-2.4-api-5.5.23-0jpp.9.el5_5.x86_64.rpm
tomcat5-servlet-2.4-api-javadoc-5.5.23-0jpp.9.el5_5.x86_64.rpm
tomcat5-webapps-5.5.23-0jpp.9.el5_5.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Thu, 5 Aug 2010 15:03:13 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Moderate: gnupg2 on SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Moderate: gnupg2 security update
Issue date:	2010-08-04
CVE Names:	CVE-2010-2547

A use-after-free flaw was found in the way gpgsm, a Cryptographic
Message Syntax (CMS) encryption and signing tool, handled X.509
certificates with a large number of Subject Alternate Names. A
specially-crafted X.509 certificate could, when imported, cause gpgsm to
crash or, possibly, execute arbitrary code. (CVE-2010-2547)

SL 5.x

 SRPMS:
gnupg2-2.0.10-3.el5_5.1.src.rpm
 i386:
gnupg2-2.0.10-3.el5_5.1.i386.rpm
 x86_64:
gnupg2-2.0.10-3.el5_5.1.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Fri, 6 Aug 2010 14:12:48 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Important: freetype on SL3.x, SL4.x,
 SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Important: freetype security update
Issue date:	2010-08-05
CVE Names:	CVE-2010-1797

Two stack overflow flaws were found in the way the FreeType font engine
processed certain Compact Font Format (CFF) character strings (opcodes).
If a user loaded a specially-crafted font file with an application
linked against FreeType, it could cause the application to crash or,
possibly, execute arbitrary code with the privileges of the user running
the application. (CVE-2010-1797)

Note: CVE-2010-1797 only affects the FreeType 2 font engine.

The X server must be restarted (log out, then log back in) for this
update to take effect.

SL 3.0.x

 SRPMS:
freetype-2.1.4-16.el3.src.rpm
 i386:
freetype-2.1.4-16.el3.i386.rpm
freetype-demos-2.1.4-16.el3.i386.rpm
freetype-devel-2.1.4-16.el3.i386.rpm
freetype-utils-2.1.4-16.el3.i386.rpm
 x86_64:
freetype-2.1.4-16.el3.i386.rpm
freetype-2.1.4-16.el3.x86_64.rpm
freetype-demos-2.1.4-16.el3.x86_64.rpm
freetype-devel-2.1.4-16.el3.x86_64.rpm
freetype-utils-2.1.4-16.el3.x86_64.rpm

SL 4.x

 SRPMS:
freetype-2.1.9-15.el4.8.src.rpm
 i386:
freetype-2.1.9-15.el4.8.i386.rpm
freetype-demos-2.1.9-15.el4.8.i386.rpm
freetype-devel-2.1.9-15.el4.8.i386.rpm
freetype-utils-2.1.9-15.el4.8.i386.rpm
 x86_64:
freetype-2.1.9-15.el4.8.i386.rpm
freetype-2.1.9-15.el4.8.x86_64.rpm
freetype-demos-2.1.9-15.el4.8.x86_64.rpm
freetype-devel-2.1.9-15.el4.8.x86_64.rpm
freetype-utils-2.1.9-15.el4.8.x86_64.rpm

SL 5.x

 SRPMS:
freetype-2.2.1-26.el5_5.src.rpm
 i386:
freetype-2.2.1-26.el5_5.i386.rpm
freetype-demos-2.2.1-26.el5_5.i386.rpm
freetype-devel-2.2.1-26.el5_5.i386.rpm
 x86_64:
freetype-2.2.1-26.el5_5.i386.rpm
freetype-2.2.1-26.el5_5.x86_64.rpm
freetype-demos-2.2.1-26.el5_5.x86_64.rpm
freetype-devel-2.2.1-26.el5_5.i386.rpm
freetype-devel-2.2.1-26.el5_5.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Mon, 9 Aug 2010 08:09:57 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Important: kernel on SL4.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Important: kernel security and bug fix update
Issue date:	2010-08-05
CVE Names:	CVE-2010-2248 CVE-2010-2521

This update fixes the following security issues:

* a flaw was found in the CIFSSMBWrite() function in the Linux kernel
Common Internet File System (CIFS) implementation. A remote attacker
could send a specially-crafted SMB response packet to a target CIFS
client, resulting in a kernel panic (denial of service). (CVE-2010-2248,
Important)

* buffer overflow flaws were found in the Linux kernel's implementation
of the server-side External Data Representation (XDR) for the Network
File System (NFS) version 4. An attacker on the local network could send
a specially-crafted large compound request to the NFSv4 server, which
could possibly result in a kernel panic (denial of service) or,
potentially, code execution. (CVE-2010-2521, Important)

This update also fixes the following bug:

* the rpc_call_async() function in the SUN Remote Procedure Call (RPC)
subsystem in the Linux kernel had a reference counting bug. In certain
situations, some Network Lock Manager (NLM) messages may have triggered
this bug on NFSv2 and NFSv3 servers, leading to a kernel panic (with
"kernel BUG at fs/lockd/host.c:[xxx]!" logged to "/var/log/messages").
(BZ#612962)

The system must be rebooted for this update to take effect.

SL 4.x

 SRPMS:
kernel-2.6.9-89.0.28.EL.src.rpm
 i386:
kernel-2.6.9-89.0.28.EL.i686.rpm
kernel-devel-2.6.9-89.0.28.EL.i686.rpm
kernel-doc-2.6.9-89.0.28.EL.noarch.rpm
kernel-hugemem-2.6.9-89.0.28.EL.i686.rpm
kernel-hugemem-devel-2.6.9-89.0.28.EL.i686.rpm
kernel-smp-2.6.9-89.0.28.EL.i686.rpm
kernel-smp-devel-2.6.9-89.0.28.EL.i686.rpm
kernel-xenU-2.6.9-89.0.28.EL.i686.rpm
kernel-xenU-devel-2.6.9-89.0.28.EL.i686.rpm
 Dependancies:
kernel-module-fuse-2.6.9-89.0.28.EL-2.7.3-1.SL.i686.rpm
kernel-module-fuse-2.6.9-89.0.28.ELhugemem-2.7.3-1.SL.i686.rpm
kernel-module-fuse-2.6.9-89.0.28.ELsmp-2.7.3-1.SL.i686.rpm
kernel-module-fuse-2.6.9-89.0.28.ELxenU-2.7.3-1.SL.i686.rpm
kernel-module-ipw3945-2.6.9-89.0.28.EL-1.1.0-1.SL4.i686.rpm
kernel-module-ipw3945-2.6.9-89.0.28.ELhugemem-1.1.0-1.SL4.i686.rpm
kernel-module-ipw3945-2.6.9-89.0.28.ELsmp-1.1.0-1.SL4.i686.rpm
kernel-module-ipw3945-2.6.9-89.0.28.ELxenU-1.1.0-1.SL4.i686.rpm
kernel-module-ndiswrapper-2.6.9-89.0.28.EL-1.41-1.SL.i686.rpm
kernel-module-ndiswrapper-2.6.9-89.0.28.ELhugemem-1.41-1.SL.i686.rpm
kernel-module-ndiswrapper-2.6.9-89.0.28.ELsmp-1.41-1.SL.i686.rpm
kernel-module-ndiswrapper-2.6.9-89.0.28.ELxenU-1.41-1.SL.i686.rpm
kernel-module-openafs-2.6.9-89.0.28.EL-1.4.7-68.2.SL4.i686.rpm
kernel-module-openafs-2.6.9-89.0.28.ELhugemem-1.4.7-68.2.SL4.i686.rpm
kernel-module-openafs-2.6.9-89.0.28.ELsmp-1.4.7-68.2.SL4.i686.rpm
kernel-module-openafs-2.6.9-89.0.28.ELxenU-1.4.7-68.2.SL4.i686.rpm
kernel-module-r1000-2.6.9-89.0.28.EL-2.2-2.SL4x.i686.rpm
kernel-module-r1000-2.6.9-89.0.28.ELhugemem-2.2-2.SL4x.i686.rpm
kernel-module-r1000-2.6.9-89.0.28.ELsmp-2.2-2.SL4x.i686.rpm
kernel-module-r1000-2.6.9-89.0.28.ELxenU-2.2-2.SL4x.i686.rpm
kernel-module-squashfs-2.6.9-89.0.28.EL-3.1.2-3.i686.rpm
kernel-module-squashfs-2.6.9-89.0.28.ELhugemem-3.1.2-3.i686.rpm
kernel-module-squashfs-2.6.9-89.0.28.ELsmp-3.1.2-3.i686.rpm
kernel-module-squashfs-2.6.9-89.0.28.ELxenU-3.1.2-3.i686.rpm
kernel-module-unionfs-2.6.9-89.0.28.EL-1.1.5-3.i686.rpm
kernel-module-unionfs-2.6.9-89.0.28.ELsmp-1.1.5-3.i686.rpm

 x86_64:
kernel-2.6.9-89.0.28.EL.x86_64.rpm
kernel-devel-2.6.9-89.0.28.EL.x86_64.rpm
kernel-doc-2.6.9-89.0.28.EL.noarch.rpm
kernel-largesmp-2.6.9-89.0.28.EL.x86_64.rpm
kernel-largesmp-devel-2.6.9-89.0.28.EL.x86_64.rpm
kernel-smp-2.6.9-89.0.28.EL.x86_64.rpm
kernel-smp-devel-2.6.9-89.0.28.EL.x86_64.rpm
kernel-xenU-2.6.9-89.0.28.EL.x86_64.rpm
kernel-xenU-devel-2.6.9-89.0.28.EL.x86_64.rpm
 Dependancies
kernel-module-fuse-2.6.9-89.0.28.EL-2.7.3-1.SL.x86_64.rpm
kernel-module-fuse-2.6.9-89.0.28.ELlargesmp-2.7.3-1.SL.x86_64.rpm
kernel-module-fuse-2.6.9-89.0.28.ELsmp-2.7.3-1.SL.x86_64.rpm
kernel-module-fuse-2.6.9-89.0.28.ELxenU-2.7.3-1.SL.x86_64.rpm
kernel-module-ipw3945-2.6.9-89.0.28.EL-1.1.0-1.SL4.x86_64.rpm
kernel-module-ipw3945-2.6.9-89.0.28.ELlargesmp-1.1.0-1.SL4.x86_64.rpm
kernel-module-ipw3945-2.6.9-89.0.28.ELsmp-1.1.0-1.SL4.x86_64.rpm
kernel-module-ipw3945-2.6.9-89.0.28.ELxenU-1.1.0-1.SL4.x86_64.rpm
kernel-module-ndiswrapper-2.6.9-89.0.28.EL-1.41-1.SL.x86_64.rpm
kernel-module-ndiswrapper-2.6.9-89.0.28.ELlargesmp-1.41-1.SL.x86_64.rpm
kernel-module-ndiswrapper-2.6.9-89.0.28.ELsmp-1.41-1.SL.x86_64.rpm
kernel-module-ndiswrapper-2.6.9-89.0.28.ELxenU-1.41-1.SL.x86_64.rpm
kernel-module-openafs-2.6.9-89.0.28.EL-1.4.7-68.2.SL4.x86_64.rpm
kernel-module-openafs-2.6.9-89.0.28.ELlargesmp-1.4.7-68.2.SL4.x86_64.rpm
kernel-module-openafs-2.6.9-89.0.28.ELsmp-1.4.7-68.2.SL4.x86_64.rpm
kernel-module-openafs-2.6.9-89.0.28.ELxenU-1.4.7-68.2.SL4.x86_64.rpm
kernel-module-r1000-2.6.9-89.0.28.EL-2.2-2.SL4x.x86_64.rpm
kernel-module-r1000-2.6.9-89.0.28.ELlargesmp-2.2-2.SL4x.x86_64.rpm
kernel-module-r1000-2.6.9-89.0.28.ELsmp-2.2-2.SL4x.x86_64.rpm
kernel-module-r1000-2.6.9-89.0.28.ELxenU-2.2-2.SL4x.x86_64.rpm
kernel-module-squashfs-2.6.9-89.0.28.EL-3.1.2-3.x86_64.rpm
kernel-module-squashfs-2.6.9-89.0.28.ELlargesmp-3.1.2-3.x86_64.rpm
kernel-module-squashfs-2.6.9-89.0.28.ELsmp-3.1.2-3.x86_64.rpm
kernel-module-squashfs-2.6.9-89.0.28.ELxenU-3.1.2-3.x86_64.rpm
kernel-module-unionfs-2.6.9-89.0.28.EL-1.1.5-3.x86_64.rpm
kernel-module-unionfs-2.6.9-89.0.28.ELsmp-1.1.5-3.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Mon, 9 Aug 2010 08:15:15 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Low: tzdata on SL3.x, SL4.x, SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Low: tzdata enhancement update
Issue date:	2010-08-09

This updated package addresses the following change to Daylight Saving
Time (DST) observations:

* during Ramadan, that is, during the period between 2010-08-11 and
2010-09-08, Egypt will suspend DST. The DST period will be officially
restored on 2010-09-09. (BZ#618593, BZ#618597, BZ#618599)

SL 3.0.x

 SRPMS:
tzdata-2010k-1.el3.src.rpm
 i386:
tzdata-2010k-1.el3.noarch.rpm
 x86_64:
tzdata-2010k-1.el3.noarch.rpm

SL 4.x

 SRPMS:
tzdata-2010k-1.el4.src.rpm
 i386:
tzdata-2010k-1.el4.noarch.rpm
 x86_64:
tzdata-2010k-1.el4.noarch.rpm

SL 5.x

 SRPMS:
tzdata-2010k-1.el5.src.rpm
 i386:
tzdata-2010k-1.el5.i386.rpm
tzdata-java-2010k-1.el5.i386.rpm
 x86_64:
tzdata-2010k-1.el5.x86_64.rpm
tzdata-java-2010k-1.el5.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Wed, 11 Aug 2010 14:19:07 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Moderate: dbus-glib on SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Moderate: dbus-glib security update
Issue date:	2010-08-10
CVE Names:	CVE-2010-1172

It was discovered that dbus-glib did not enforce the "access" flag on
exported GObject properties. If such a property were read/write
internally but specified as read-only externally, a malicious, local
user could use this flaw to modify that property of an application. Such
a change could impact the application's behavior (for example, if an IP
address were changed the network may not come up properly after reboot)
and possibly lead to a denial of service. (CVE-2010-1172)

Due to the way dbus-glib translates an application's XML definitions of
service interfaces and properties into C code at application build time,
applications built against dbus-glib that use read-only properties
needed to be rebuilt to fully fix the flaw. As such, this update
provides NetworkManager packages that have been rebuilt against the
updated dbus-glib packages. No other applications shipped with
Scientific Linux 5 were affected.

Running instances of NetworkManager must be restarted (service
NetworkManager restart) for this update to take effect.

SL 5.x

 SRPMS:
NetworkManager-0.7.0-10.el5_5.1.src.rpm
dbus-glib-0.73-10.el5_5.src.rpm
 i386:
dbus-glib-0.73-10.el5_5.i386.rpm
dbus-glib-devel-0.73-10.el5_5.i386.rpm
NetworkManager-0.7.0-10.el5_5.1.i386.rpm
NetworkManager-devel-0.7.0-10.el5_5.1.i386.rpm
NetworkManager-glib-0.7.0-10.el5_5.1.i386.rpm
NetworkManager-glib-devel-0.7.0-10.el5_5.1.i386.rpm
NetworkManager-gnome-0.7.0-10.el5_5.1.i386.rpm
 x86_64:
dbus-glib-0.73-10.el5_5.i386.rpm
dbus-glib-0.73-10.el5_5.x86_64.rpm
dbus-glib-devel-0.73-10.el5_5.i386.rpm
dbus-glib-devel-0.73-10.el5_5.x86_64.rpm
NetworkManager-0.7.0-10.el5_5.1.i386.rpm
NetworkManager-0.7.0-10.el5_5.1.x86_64.rpm
NetworkManager-devel-0.7.0-10.el5_5.1.i386.rpm
NetworkManager-devel-0.7.0-10.el5_5.1.x86_64.rpm
NetworkManager-glib-0.7.0-10.el5_5.1.i386.rpm
NetworkManager-glib-0.7.0-10.el5_5.1.x86_64.rpm
NetworkManager-glib-devel-0.7.0-10.el5_5.1.i386.rpm
NetworkManager-glib-devel-0.7.0-10.el5_5.1.x86_64.rpm
NetworkManager-gnome-0.7.0-10.el5_5.1.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Thu, 12 Aug 2010 10:22:15 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Moderate: wireshark on SL3.x, SL4.x,
 SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Moderate: wireshark security update
Issue date:	2010-08-11
CVE Names:	CVE-2010-1455 CVE-2010-2283 CVE-2010-2284
 CVE-2010-2286 CVE-2010-2287 CVE-2010-2995

Multiple buffer overflow flaws were found in the Wireshark SigComp
Universal Decompressor Virtual Machine (UDVM) dissector. If Wireshark
read a malformed packet off a network or opened a malicious dump file,
it could crash or, possibly, execute arbitrary code as the user running
Wireshark. (CVE-2010-2287, CVE-2010-2995)

Several denial of service flaws were found in Wireshark. Wireshark could
crash or stop responding if it read a malformed packet off a network, or
opened a malicious dump file. (CVE-2010-1455, CVE-2010-2283,
CVE-2010-2284, CVE-2010-2286)

NOTE: This errata updates Wireshark to version 1.0.15 to resolve these
issues.

All running instances of Wireshark must be restarted for the update to
take effect.

SL 3.0.x

 SRPMS:
wireshark-1.0.15-EL3.1.src.rpm
 i386:
wireshark-1.0.15-EL3.1.i386.rpm
wireshark-gnome-1.0.15-EL3.1.i386.rpm
 x86_64:
wireshark-1.0.15-EL3.1.x86_64.rpm
wireshark-gnome-1.0.15-EL3.1.x86_64.rpm

SL 4.x

 SRPMS:
wireshark-1.0.15-1.el4_8.1.src.rpm
 i386:
wireshark-1.0.15-1.el4_8.1.i386.rpm
wireshark-gnome-1.0.15-1.el4_8.1.i386.rpm
 x86_64:
wireshark-1.0.15-1.el4_8.1.x86_64.rpm
wireshark-gnome-1.0.15-1.el4_8.1.x86_64.rpm

SL 5.x

 SRPMS:
wireshark-1.0.15-1.el5_5.1.src.rpm
 i386:
wireshark-1.0.15-1.el5_5.1.i386.rpm
wireshark-gnome-1.0.15-1.el5_5.1.i386.rpm
 x86_64:
wireshark-1.0.15-1.el5_5.1.x86_64.rpm
wireshark-gnome-1.0.15-1.el5_5.1.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Thu, 12 Aug 2010 16:07:55 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Important: kernel on SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Important: kernel security and bug fix update
Issue date:	2010-08-10
CVE Names:	CVE-2010-1084 CVE-2010-2066 CVE-2010-2070
 CVE-2010-2226 CVE-2010-2248 CVE-2010-2521
 CVE-2010-2524

This update fixes the following security issues:

* instances of unsafe sprintf() use were found in the Linux kernel
Bluetooth implementation. Creating a large number of Bluetooth L2CAP,
SCO, or RFCOMM sockets could result in arbitrary memory pages being
overwritten. A local, unprivileged user could use this flaw to cause a
kernel panic (denial of service) or escalate their privileges.
(CVE-2010-1084, Important)

* a flaw was found in the Xen hypervisor implementation when using the
Intel Itanium architecture, allowing guests to enter an unsupported
state. An unprivileged guest user could trigger this flaw by setting the
BE (Big Endian) bit of the Processor Status Register (PSR), leading to
the guest crashing (denial of service). (CVE-2010-2070, Important)

* a flaw was found in the CIFSSMBWrite() function in the Linux kernel
Common Internet File System (CIFS) implementation. A remote attacker
could send a specially-crafted SMB response packet to a target CIFS
client, resulting in a kernel panic (denial of service). (CVE-2010-2248,
Important)

* buffer overflow flaws were found in the Linux kernel's implementation
of the server-side External Data Representation (XDR) for the Network
File System (NFS) version 4. An attacker on the local network could send
a specially-crafted large compound request to the NFSv4 server, which
could possibly result in a kernel panic (denial of service) or,
potentially, code execution. (CVE-2010-2521, Important)

* a flaw was found in the handling of the SWAPEXT IOCTL in the Linux
kernel XFS file system implementation. A local user could use this flaw
to read write-only files, that they do not own, on an XFS file system.
This could lead to unintended information disclosure. (CVE-2010-2226,
Moderate)

* a flaw was found in the dns_resolver upcall used by CIFS. A local,
unprivileged user could redirect a Microsoft Distributed File System
link to another IP address, tricking the client into mounting the share
from a server of the user's choosing. (CVE-2010-2524, Moderate)

* a missing check was found in the mext_check_arguments() function in
the ext4 file system code. A local user could use this flaw to cause the
MOVE_EXT IOCTL to overwrite the contents of an append-only file on an
ext4 file system, if they have write permissions for that file.
(CVE-2010-2066, Low)

The system must be rebooted for this update to take effect.

SL 5.x

 SRPMS:
kernel-2.6.18-194.11.1.el5.src.rpm
 i386:
kernel-2.6.18-194.11.1.el5.i686.rpm
kernel-debug-2.6.18-194.11.1.el5.i686.rpm
kernel-debug-devel-2.6.18-194.11.1.el5.i686.rpm
kernel-devel-2.6.18-194.11.1.el5.i686.rpm
kernel-doc-2.6.18-194.11.1.el5.noarch.rpm
kernel-headers-2.6.18-194.11.1.el5.i386.rpm
kernel-PAE-2.6.18-194.11.1.el5.i686.rpm
kernel-PAE-devel-2.6.18-194.11.1.el5.i686.rpm
kernel-xen-2.6.18-194.11.1.el5.i686.rpm
kernel-xen-devel-2.6.18-194.11.1.el5.i686.rpm
 Dependancies:
kernel-module-aufs-2.6.18-194.11.1.el5-0.20090202.cvs-6.sl5.i686.rpm
kernel-module-aufs-2.6.18-194.11.1.el5PAE-0.20090202.cvs-6.sl5.i686.rpm
kernel-module-aufs-2.6.18-194.11.1.el5xen-0.20090202.cvs-6.sl5.i686.rpm
kernel-module-ipw3945-2.6.18-194.11.1.el5-1.2.0-2.sl5.i686.rpm
kernel-module-ipw3945-2.6.18-194.11.1.el5PAE-1.2.0-2.sl5.i686.rpm
kernel-module-ipw3945-2.6.18-194.11.1.el5xen-1.2.0-2.sl5.i686.rpm
kernel-module-madwifi-2.6.18-194.11.1.el5-0.9.4-15.sl5.i686.rpm
kernel-module-madwifi-2.6.18-194.11.1.el5PAE-0.9.4-15.sl5.i686.rpm
kernel-module-madwifi-2.6.18-194.11.1.el5xen-0.9.4-15.sl5.i686.rpm
kernel-module-madwifi-hal-2.6.18-194.11.1.el5-0.9.4-15.sl5.i686.rpm
kernel-module-madwifi-hal-2.6.18-194.11.1.el5PAE-0.9.4-15.sl5.i686.rpm
kernel-module-madwifi-hal-2.6.18-194.11.1.el5xen-0.9.4-15.sl5.i686.rpm
kernel-module-ndiswrapper-2.6.18-194.11.1.el5-1.55-1.SL.i686.rpm
kernel-module-ndiswrapper-2.6.18-194.11.1.el5PAE-1.55-1.SL.i686.rpm
kernel-module-ndiswrapper-2.6.18-194.11.1.el5xen-1.55-1.SL.i686.rpm
kernel-module-openafs-2.6.18-194.11.1.el5-1.4.12-79.sl5.i686.rpm
kernel-module-openafs-2.6.18-194.11.1.el5PAE-1.4.12-79.sl5.i686.rpm
kernel-module-openafs-2.6.18-194.11.1.el5xen-1.4.12-79.sl5.i686.rpm
kernel-module-xfs-2.6.18-194.11.1.el5-0.4-2.sl5.i686.rpm
kernel-module-xfs-2.6.18-194.11.1.el5PAE-0.4-2.sl5.i686.rpm
kernel-module-xfs-2.6.18-194.11.1.el5xen-0.4-2.sl5.i686.rpm

 x86_64:
kernel-2.6.18-194.11.1.el5.x86_64.rpm
kernel-debug-2.6.18-194.11.1.el5.x86_64.rpm
kernel-debug-devel-2.6.18-194.11.1.el5.x86_64.rpm
kernel-devel-2.6.18-194.11.1.el5.x86_64.rpm
kernel-doc-2.6.18-194.11.1.el5.noarch.rpm
kernel-headers-2.6.18-194.11.1.el5.x86_64.rpm
kernel-xen-2.6.18-194.11.1.el5.x86_64.rpm
kernel-xen-devel-2.6.18-194.11.1.el5.x86_64.rpm
 Dependancies:
kernel-module-aufs-2.6.18-194.11.1.el5-0.20090202.cvs-6.sl5.x86_64.rpm
kernel-module-aufs-2.6.18-194.11.1.el5xen-0.20090202.cvs-6.sl5.x86_64.rpm
kernel-module-ipw3945-2.6.18-194.11.1.el5-1.2.0-2.sl5.x86_64.rpm
kernel-module-ipw3945-2.6.18-194.11.1.el5xen-1.2.0-2.sl5.x86_64.rpm
kernel-module-madwifi-2.6.18-194.11.1.el5-0.9.4-15.sl5.x86_64.rpm
kernel-module-madwifi-2.6.18-194.11.1.el5xen-0.9.4-15.sl5.x86_64.rpm
kernel-module-madwifi-hal-2.6.18-194.11.1.el5-0.9.4-15.sl5.x86_64.rpm
kernel-module-madwifi-hal-2.6.18-194.11.1.el5xen-0.9.4-15.sl5.x86_64.rpm
kernel-module-ndiswrapper-2.6.18-194.11.1.el5-1.55-1.SL.x86_64.rpm
kernel-module-ndiswrapper-2.6.18-194.11.1.el5xen-1.55-1.SL.x86_64.rpm
kernel-module-openafs-2.6.18-194.11.1.el5-1.4.12-79.sl5.x86_64.rpm
kernel-module-openafs-2.6.18-194.11.1.el5xen-1.4.12-79.sl5.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Thu, 12 Aug 2010 16:10:13 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Low: libvirt on SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Low: libvirt security and bug fix update
Issue date:	2010-08-10
CVE Names:	CVE-2010-2239 CVE-2010-2242

It was found that libvirt did not set the user-defined backing store
format when creating a new image, possibly resulting in applications
having to probe the backing store to discover the format. A privileged
guest user could use this flaw to read arbitrary files on the host.
(CVE-2010-2239)

It was found that libvirt created insecure iptables rules on the host
when a guest system was configured for IP masquerading, allowing the
guest to use privileged ports on the host when accessing network
resources. A privileged guest user could use this flaw to access network
resources that would otherwise not be accessible to the guest.
(CVE-2010-2242)

This update also fixes the following bugs:

* a Linux software bridge assumes the MAC address of the enslaved
interface with the numerically lowest MAC address. When the bridge
changes its MAC address, for a period of time it does not relay packets
across network segments, resulting in a temporary network "blackout".
The bridge should thus avoid changing its MAC address in order not to
disrupt network communications.

The Linux kernel assigns network TAP devices a random MAC address.
Occasionally, this random MAC address is lower than that of the physical
interface which is enslaved (for example, eth0 or eth1), which causes
the bridge to change its MAC address, thereby disrupting network
communications for a period of time.

With this update, libvirt now sets an explicit MAC address for all TAP
devices created using the configured MAC address from the XML, but with
the high bit set to 0xFE. The result is that TAP device MAC addresses
are now numerically greater than those for physical interfaces, and
bridges should no longer attempt to switch their MAC address to that of
the TAP device, thus avoiding potential spurious network disruptions.
(BZ#617243)

* a memory leak in the libvirt driver for the Xen hypervisor has been
fixed with this update. (BZ#619711)

* the xm and virsh management user interfaces for virtual guests can be
called on the command line to list the number of active guests. However,
under certain circumstances, running the "virsh list" command resulted
in virsh not listing all of the virtual guests that were active (that
is, running) at the time. This update incorporates a fix that matches
the logic used for determining active guests with that of "xm list",
such that both commands should now list the same number of active
virtual guests under all circumstances. (BZ#618200)

After installing the updated packages, the system must be rebooted for
the update to take effect.

SL 5.x

 SRPMS:
libvirt-0.6.3-33.el5_5.3.src.rpm
 i386:
libvirt-0.6.3-33.el5_5.3.i386.rpm
libvirt-devel-0.6.3-33.el5_5.3.i386.rpm
libvirt-python-0.6.3-33.el5_5.3.i386.rpm
 x86_64:
libvirt-0.6.3-33.el5_5.3.i386.rpm
libvirt-0.6.3-33.el5_5.3.x86_64.rpm
libvirt-devel-0.6.3-33.el5_5.3.i386.rpm
libvirt-devel-0.6.3-33.el5_5.3.x86_64.rpm
libvirt-python-0.6.3-33.el5_5.3.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Tue, 17 Aug 2010 11:36:02 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: FASTBUGS for SL 4.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

The following FASTBUGS have been uploaded to

 i386:
dump-0.4b39-5.el4.i386.rpm
jwhois-3.2.2-17.el4.i386.rpm
lvm2-2.02.42-5.el4_8.4.i386.rpm
lvm2-cluster-2.02.42-5.el4_8.2.i386.rpm
nss_ldap-253-7.el4_8.4.i386.rpm
perl-Archive-Tar-1.39.1-1.el4_8.2.noarch.rpm
rhnlib-2.1.4-14.el4_8.2.noarch.rpm
rmt-0.4b39-5.el4.i386.rpm
setup-2.5.37-4.el4_8.1.noarch.rpm
tcsh-6.13-10.el4_8.1.i386.rpm
up2date-4.8.1-33.el4_8.9.i386.rpm
up2date-gnome-4.8.1-33.el4_8.9.i386.rpm

 x86_64:
dump-0.4b39-5.el4.x86_64.rpm
jwhois-3.2.2-17.el4.x86_64.rpm
lvm2-2.02.42-5.el4_8.4.x86_64.rpm
lvm2-cluster-2.02.42-5.el4_8.2.x86_64.rpm
nss_ldap-253-7.el4_8.4.i386.rpm
nss_ldap-253-7.el4_8.4.x86_64.rpm
perl-Archive-Tar-1.39.1-1.el4_8.2.noarch.rpm
rhnlib-2.1.4-14.el4_8.2.noarch.rpm
rmt-0.4b39-5.el4.x86_64.rpm
setup-2.5.37-4.el4_8.1.noarch.rpm
tcsh-6.13-10.el4_8.1.x86_64.rpm
up2date-4.8.1-33.el4_8.9.x86_64.rpm
up2date-gnome-4.8.1-33.el4_8.9.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Tue, 17 Aug 2010 11:36:54 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: FASTBUGS for SL 5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

The following FASTBUGS have been uploaded to

 i386:
autofs-5.0.1-0.rc2.143.el5_5.4.i386.rpm
compat-openldap-2.3.43_2.2.29-12.el5_5.2.i386.rpm
cups-1.3.7-18.el5_5.7.i386.rpm
cups-devel-1.3.7-18.el5_5.7.i386.rpm
cups-libs-1.3.7-18.el5_5.7.i386.rpm
cups-lpd-1.3.7-18.el5_5.7.i386.rpm
dhclient-3.0.5-23.el5_5.1.i386.rpm
dhcp-3.0.5-23.el5_5.1.i386.rpm
dhcp-devel-3.0.5-23.el5_5.1.i386.rpm
gdb-7.0.1-23.el5_5.2.i386.rpm
java-1.6.0-openjdk-1.6.0.0-1.13.b16.el5.i386.rpm
java-1.6.0-openjdk-demo-1.6.0.0-1.13.b16.el5.i386.rpm
java-1.6.0-openjdk-devel-1.6.0.0-1.13.b16.el5.i386.rpm
java-1.6.0-openjdk-javadoc-1.6.0.0-1.13.b16.el5.i386.rpm
java-1.6.0-openjdk-src-1.6.0.0-1.13.b16.el5.i386.rpm
libdhcp4client-3.0.5-23.el5_5.1.i386.rpm
libdhcp4client-devel-3.0.5-23.el5_5.1.i386.rpm
libvolume_id-095-14.21.el5_5.1.i386.rpm
libvolume_id-devel-095-14.21.el5_5.1.i386.rpm
man-pages-2.39-17.el5.noarch.rpm
man-pages-ja-20060815-14.el5.noarch.rpm
nfs-utils-1.0.9-47.el5_5.i386.rpm
openais-0.80.6-16.el5_5.7.i386.rpm
openais-devel-0.80.6-16.el5_5.7.i386.rpm
openldap-2.3.43-12.el5_5.2.i386.rpm
openldap-clients-2.3.43-12.el5_5.2.i386.rpm
openldap-devel-2.3.43-12.el5_5.2.i386.rpm
openldap-servers-2.3.43-12.el5_5.2.i386.rpm
openldap-servers-overlays-2.3.43-12.el5_5.2.i386.rpm
openldap-servers-sql-2.3.43-12.el5_5.2.i386.rpm
passwd-0.73-2.i386.rpm
perl-Archive-Tar-1.39.1-1.el5_5.2.noarch.rpm
systemtap-1.1-3.el5_5.2.i386.rpm
systemtap-client-1.1-3.el5_5.2.i386.rpm
systemtap-initscript-1.1-3.el5_5.2.i386.rpm
systemtap-runtime-1.1-3.el5_5.2.i386.rpm
systemtap-sdt-devel-1.1-3.el5_5.2.i386.rpm
systemtap-server-1.1-3.el5_5.2.i386.rpm
systemtap-testsuite-1.1-3.el5_5.2.i386.rpm
tmpwatch-2.9.7-1.1.el5.5.i386.rpm
udev-095-14.21.el5_5.1.i386.rpm
xen-3.0.3-105.el5_5.5.i386.rpm
xen-devel-3.0.3-105.el5_5.5.i386.rpm
xen-libs-3.0.3-105.el5_5.5.i386.rpm

 x86_64:
autofs-5.0.1-0.rc2.143.el5_5.4.x86_64.rpm
compat-openldap-2.3.43_2.2.29-12.el5_5.2.i386.rpm
compat-openldap-2.3.43_2.2.29-12.el5_5.2.x86_64.rpm
cups-1.3.7-18.el5_5.7.x86_64.rpm
cups-devel-1.3.7-18.el5_5.7.i386.rpm
cups-devel-1.3.7-18.el5_5.7.x86_64.rpm
cups-libs-1.3.7-18.el5_5.7.i386.rpm
cups-libs-1.3.7-18.el5_5.7.x86_64.rpm
cups-lpd-1.3.7-18.el5_5.7.x86_64.rpm
dhclient-3.0.5-23.el5_5.1.x86_64.rpm
dhcp-3.0.5-23.el5_5.1.x86_64.rpm
dhcp-devel-3.0.5-23.el5_5.1.i386.rpm
dhcp-devel-3.0.5-23.el5_5.1.x86_64.rpm
gdb-7.0.1-23.el5_5.2.x86_64.rpm
java-1.6.0-openjdk-1.6.0.0-1.13.b16.el5.x86_64.rpm
java-1.6.0-openjdk-demo-1.6.0.0-1.13.b16.el5.x86_64.rpm
java-1.6.0-openjdk-devel-1.6.0.0-1.13.b16.el5.x86_64.rpm
java-1.6.0-openjdk-javadoc-1.6.0.0-1.13.b16.el5.x86_64.rpm
java-1.6.0-openjdk-src-1.6.0.0-1.13.b16.el5.x86_64.rpm
kmod-kvm-83-164.el5_5.15.x86_64.rpm
kvm-83-164.el5_5.15.x86_64.rpm
kvm-qemu-img-83-164.el5_5.15.x86_64.rpm
kvm-tools-83-164.el5_5.15.x86_64.rpm
libdhcp4client-3.0.5-23.el5_5.1.i386.rpm
libdhcp4client-3.0.5-23.el5_5.1.x86_64.rpm
libdhcp4client-devel-3.0.5-23.el5_5.1.i386.rpm
libdhcp4client-devel-3.0.5-23.el5_5.1.x86_64.rpm
libvolume_id-095-14.21.el5_5.1.i386.rpm
libvolume_id-095-14.21.el5_5.1.x86_64.rpm
libvolume_id-devel-095-14.21.el5_5.1.i386.rpm
libvolume_id-devel-095-14.21.el5_5.1.x86_64.rpm
man-pages-2.39-17.el5.noarch.rpm
man-pages-ja-20060815-14.el5.noarch.rpm
nfs-utils-1.0.9-47.el5_5.x86_64.rpm
openais-0.80.6-16.el5_5.7.x86_64.rpm
openais-devel-0.80.6-16.el5_5.7.i386.rpm
openais-devel-0.80.6-16.el5_5.7.x86_64.rpm
openldap-2.3.43-12.el5_5.2.i386.rpm
openldap-2.3.43-12.el5_5.2.x86_64.rpm
openldap-clients-2.3.43-12.el5_5.2.x86_64.rpm
openldap-devel-2.3.43-12.el5_5.2.i386.rpm
openldap-devel-2.3.43-12.el5_5.2.x86_64.rpm
openldap-servers-2.3.43-12.el5_5.2.x86_64.rpm
openldap-servers-overlays-2.3.43-12.el5_5.2.x86_64.rpm
openldap-servers-sql-2.3.43-12.el5_5.2.x86_64.rpm
passwd-0.73-2.x86_64.rpm
perl-Archive-Tar-1.39.1-1.el5_5.2.noarch.rpm
qspice-0.3.0-54.el5_5.1.x86_64.rpm
qspice-libs-0.3.0-54.el5_5.1.x86_64.rpm
qspice-libs-devel-0.3.0-54.el5_5.1.x86_64.rpm
systemtap-1.1-3.el5_5.2.x86_64.rpm
systemtap-client-1.1-3.el5_5.2.x86_64.rpm
systemtap-initscript-1.1-3.el5_5.2.x86_64.rpm
systemtap-runtime-1.1-3.el5_5.2.x86_64.rpm
systemtap-sdt-devel-1.1-3.el5_5.2.i386.rpm
systemtap-sdt-devel-1.1-3.el5_5.2.x86_64.rpm
systemtap-server-1.1-3.el5_5.2.x86_64.rpm
systemtap-testsuite-1.1-3.el5_5.2.x86_64.rpm
tmpwatch-2.9.7-1.1.el5.5.x86_64.rpm
udev-095-14.21.el5_5.1.x86_64.rpm
xen-3.0.3-105.el5_5.5.x86_64.rpm
xen-devel-3.0.3-105.el5_5.5.i386.rpm
xen-devel-3.0.3-105.el5_5.5.x86_64.rpm
xen-libs-3.0.3-105.el5_5.5.i386.rpm
xen-libs-3.0.3-105.el5_5.5.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Fri, 20 Aug 2010 14:17:50 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Important: kvm on SL5.x x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Important: kvm security and bug fix update
Issue date:	2010-08-19
CVE Names:	CVE-2010-0431 CVE-2010-0435 CVE-2010-2784

It was found that QEMU-KVM on the host did not validate all pointersprovided from a guest system's QXL graphics card driver. A privileged
guest user could use this flaw to cause the host to dereference an
invalid pointer, causing the guest to crash (denial of service) or,
possibly, resulting in the privileged guest user escalating their
privileges on the host. (CVE-2010-0431)

A flaw was found in QEMU-KVM, allowing the guest some control over the
index used to access the callback array during sub-page MMIO
initialization. A privileged guest user could use this flaw to crash the
guest (denial of service) or, possibly, escalate their privileges on the
host. (CVE-2010-2784)

A NULL pointer dereference flaw was found when the host system had a
processor with the Intel VT-x extension enabled. A privileged guest user
could use this flaw to trick the host into emulating a certain
instruction, which could crash the host (denial of service). (CVE-2010-0435)

This update also fixes the following bugs:

* running a "qemu-img" check on a faulty virtual machine image ended
with a segmentation fault. With this update, the segmentation fault no
longer occurs when running the "qemu-img" check. (BZ#610342)

* when attempting to transfer a file between two guests that were joined
in the same virtual LAN (VLAN), the receiving guest unexpectedly quit.
With this update, the transfer completes successfully. (BZ#610343)

* installation of a system was occasionally failing in KVM. This was
caused by KVM using wrong permissions for large guest pages. With this
update, the installation completes successfully. (BZ#616796)

* previously, the migration process would fail for a virtual machine
because the virtual machine could not map all the memory. This was
caused by a conflict that was initiated when a virtual machine was
initially run and then migrated right away. With this update, the
conflict no longer occurs and the migration process no longer fails.
(BZ#618205)

* using a thinly provisioned VirtIO disk on iSCSI storage and performing
a "qemu-img" check during an "e_no_space" event returned cluster errors.
With this update, the errors no longer appear. (BZ#618206)

NOTE: The following procedure must be performed before this update will
take effect:

1) Stop all KVM guest virtual machines.

2) Either reboot the hypervisor machine or, as the root user, remove
(using "modprobe -r [module]") and reload (using "modprobe [module]")
all of the following modules which are currently running (determined
using "lsmod"): kvm, ksm, kvm-intel or kvm-amd.

3) Restart the KVM guest virtual machines.

SL 5.x

 SRPMS:
kvm-83-164.el5_5.21.src.rpm
 x86_64:
kmod-kvm-83-164.el5_5.21.x86_64.rpm
kvm-83-164.el5_5.21.x86_64.rpm
kvm-qemu-img-83-164.el5_5.21.x86_64.rpm
kvm-tools-83-164.el5_5.21.x86_64.rpm
 Dependancies for SL 50-53:
celt051-0.5.1.3-0.el5.i386.rpm
celt051-0.5.1.3-0.el5.x86_64.rpm
celt051-devel-0.5.1.3-0.el5.i386.rpm
celt051-devel-0.5.1.3-0.el5.x86_64.rpm
etherboot-pxes-5.4.4-13.el5.x86_64.rpm
etherboot-roms-5.4.4-13.el5.x86_64.rpm
etherboot-roms-kvm-5.4.4-13.el5.x86_64.rpm
etherboot-zroms-5.4.4-13.el5.x86_64.rpm
etherboot-zroms-kvm-5.4.4-13.el5.x86_64.rpm
log4cpp-1.0-9.el5.i386.rpm
log4cpp-1.0-9.el5.x86_64.rpm
log4cpp-devel-1.0-9.el5.i386.rpm
log4cpp-devel-1.0-9.el5.x86_64.rpm
log4cpp-docs-1.0-9.el5.x86_64.rpm
qcairo-1.8.7.1-3.el5.i386.rpm
qcairo-1.8.7.1-3.el5.x86_64.rpm
qcairo-devel-1.8.7.1-3.el5.i386.rpm
qcairo-devel-1.8.7.1-3.el5.x86_64.rpm
qffmpeg-devel-0.4.9-0.15.20080908.el5.i386.rpm
qffmpeg-devel-0.4.9-0.15.20080908.el5.x86_64.rpm
qffmpeg-libs-0.4.9-0.15.20080908.el5.i386.rpm
qffmpeg-libs-0.4.9-0.15.20080908.el5.x86_64.rpm
qpixman-0.13.3-4.el5.i386.rpm
qpixman-0.13.3-4.el5.x86_64.rpm
qpixman-devel-0.13.3-4.el5.i386.rpm
qpixman-devel-0.13.3-4.el5.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Fri, 20 Aug 2010 14:17:51 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Important: qspice on SL5.x x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Important: qspice security update
Issue date:	2010-08-19
CVE Names:	CVE-2010-0428 CVE-2010-0429

It was found that the libspice component of QEMU-KVM on the host did not
validate all pointers provided from a guest system's QXL graphics card
driver. A privileged guest user could use this flaw to cause the host to
dereference an invalid pointer, causing the guest to crash (denial of
service) or, possibly, resulting in the privileged guest user escalating
their privileges on the host. (CVE-2010-0428)

It was found that the libspice component of QEMU-KVM on the host could
be forced to perform certain memory management operations on memory
addresses controlled by a guest. A privileged guest user could use this
flaw to crash the guest (denial of service) or, possibly, escalate their
privileges on the host. (CVE-2010-0429)

SL 5.x

 SRPMS:
qspice-0.3.0-54.el5_5.2.src.rpm
 x86_64:
qspice-0.3.0-54.el5_5.2.x86_64.rpm
qspice-libs-0.3.0-54.el5_5.2.x86_64.rpm
qspice-libs-devel-0.3.0-54.el5_5.2.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Tue, 24 Aug 2010 15:41:06 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Re: Security ERRATA Important: kernel on SL4.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 
In-Reply-To: <4C5FFE25.1040506@fnal.gov>

The following kernel dependencies are now available

SL4:
 SRPMS:
cman-kernel-2.6.9-56.7.el4_8.16.src.rpm
cmirror-kernel-2.6.9-43.12.el4_8.13.src.rpm
dlm-kernel-2.6.9-58.6.el4_8.18.src.rpm
GFS-kernel-2.6.9-85.2.el4_8.14.src.rpm
gnbd-kernel-2.6.9-10.56.el4_8.15.src.rpm
 i386:
cman-kernel-2.6.9-56.7.4.el4_8.16.i686.rpm
cman-kernel-hugemem-2.6.9-56.7.4.el4_8.16.i686.rpm
cman-kernel-smp-2.6.9-56.7.4.el4_8.16.i686.rpm
cman-kernel-xenU-2.6.9-56.7.4.el4_8.16.i686.rpm
cman-kernheaders-2.6.9-56.7.4.el4_8.16.i686.rpm
cmirror-kernel-2.6.9-43.12.1.el4_8.13.i686.rpm
cmirror-kernel-hugemem-2.6.9-43.12.1.el4_8.13.i686.rpm
cmirror-kernel-smp-2.6.9-43.12.1.el4_8.13.i686.rpm
cmirror-kernel-xenU-2.6.9-43.12.1.el4_8.13.i686.rpm
dlm-kernel-2.6.9-58.6.1.el4_8.18.i686.rpm
dlm-kernel-hugemem-2.6.9-58.6.1.el4_8.18.i686.rpm
dlm-kernel-smp-2.6.9-58.6.1.el4_8.18.i686.rpm
dlm-kernel-xenU-2.6.9-58.6.1.el4_8.18.i686.rpm
dlm-kernheaders-2.6.9-58.6.1.el4_8.18.i686.rpm
GFS-kernel-2.6.9-85.2.1.el4_8.14.i686.rpm
GFS-kernel-hugemem-2.6.9-85.2.1.el4_8.14.i686.rpm
GFS-kernel-smp-2.6.9-85.2.1.el4_8.14.i686.rpm
GFS-kernel-xenU-2.6.9-85.2.1.el4_8.14.i686.rpm
GFS-kernheaders-2.6.9-85.2.1.el4_8.14.i686.rpm
gnbd-kernel-2.6.9-10.56.3.el4_8.15.i686.rpm
gnbd-kernel-hugemem-2.6.9-10.56.3.el4_8.15.i686.rpm
gnbd-kernel-smp-2.6.9-10.56.3.el4_8.15.i686.rpm
gnbd-kernel-xenU-2.6.9-10.56.3.el4_8.15.i686.rpm
gnbd-kernheaders-2.6.9-10.56.3.el4_8.15.i686.rpm
 x86_64:
cman-kernel-2.6.9-56.7.4.el4_8.16.x86_64.rpm
cman-kernel-largesmp-2.6.9-56.7.4.el4_8.16.x86_64.rpm
cman-kernel-smp-2.6.9-56.7.4.el4_8.16.x86_64.rpm
cman-kernel-xenU-2.6.9-56.7.4.el4_8.16.x86_64.rpm
cman-kernheaders-2.6.9-56.7.4.el4_8.16.x86_64.rpm
cmirror-kernel-2.6.9-43.12.1.el4_8.13.x86_64.rpm
cmirror-kernel-largesmp-2.6.9-43.12.1.el4_8.13.x86_64.rpm
cmirror-kernel-smp-2.6.9-43.12.1.el4_8.13.x86_64.rpm
cmirror-kernel-xenU-2.6.9-43.12.1.el4_8.13.x86_64.rpm
dlm-kernel-2.6.9-58.6.1.el4_8.18.x86_64.rpm
dlm-kernel-largesmp-2.6.9-58.6.1.el4_8.18.x86_64.rpm
dlm-kernel-smp-2.6.9-58.6.1.el4_8.18.x86_64.rpm
dlm-kernel-xenU-2.6.9-58.6.1.el4_8.18.x86_64.rpm
dlm-kernheaders-2.6.9-58.6.1.el4_8.18.x86_64.rpm
GFS-kernel-2.6.9-85.2.1.el4_8.14.x86_64.rpm
GFS-kernel-largesmp-2.6.9-85.2.1.el4_8.14.x86_64.rpm
GFS-kernel-smp-2.6.9-85.2.1.el4_8.14.x86_64.rpm
GFS-kernel-xenU-2.6.9-85.2.1.el4_8.14.x86_64.rpm
GFS-kernheaders-2.6.9-85.2.1.el4_8.14.x86_64.rpm
gnbd-kernel-2.6.9-10.56.3.el4_8.15.x86_64.rpm
gnbd-kernel-largesmp-2.6.9-10.56.3.el4_8.15.x86_64.rpm
gnbd-kernel-smp-2.6.9-10.56.3.el4_8.15.x86_64.rpm
gnbd-kernel-xenU-2.6.9-10.56.3.el4_8.15.x86_64.rpm
gnbd-kernheaders-2.6.9-10.56.3.el4_8.15.x86_64.rpm

NOTE: You might notice that the binary rpm names do not match the source
rpm names. This is because we had to implement a fix for previously
"poorly named rpms". We apologize for this and hope it does not cause
too much problem. This group of rpm's will continue to have this
strange naming convention until they raise the version of the cluster
packages, or until the end of SL4.

Thanks
Troy Dawson

Troy J Dawson wrote:
> Synopsis:	Important: kernel security and bug fix update
> Issue date:	2010-08-05
> CVE Names:	CVE-2010-2248 CVE-2010-2521
>
> This update fixes the following security issues:
>
> * a flaw was found in the CIFSSMBWrite() function in the Linux kernel
> Common Internet File System (CIFS) implementation. A remote attacker
> could send a specially-crafted SMB response packet to a target CIFS
> client, resulting in a kernel panic (denial of service). (CVE-2010-2248,
> Important)
>
> * buffer overflow flaws were found in the Linux kernel's implementation
> of the server-side External Data Representation (XDR) for the Network
> File System (NFS) version 4. An attacker on the local network could send
> a specially-crafted large compound request to the NFSv4 server, which
> could possibly result in a kernel panic (denial of service) or,
> potentially, code execution. (CVE-2010-2521, Important)
>
> This update also fixes the following bug:
>
> * the rpc_call_async() function in the SUN Remote Procedure Call (RPC)
> subsystem in the Linux kernel had a reference counting bug. In certain
> situations, some Network Lock Manager (NLM) messages may have triggered
> this bug on NFSv2 and NFSv3 servers, leading to a kernel panic (with
> "kernel BUG at fs/lockd/host.c:[xxx]!" logged to "/var/log/messages").
> (BZ#612962)
>
> The system must be rebooted for this update to take effect.
>
> SL 4.x
>
> SRPMS:
> kernel-2.6.9-89.0.28.EL.src.rpm
> i386:
> kernel-2.6.9-89.0.28.EL.i686.rpm
> kernel-devel-2.6.9-89.0.28.EL.i686.rpm
> kernel-doc-2.6.9-89.0.28.EL.noarch.rpm
> kernel-hugemem-2.6.9-89.0.28.EL.i686.rpm
> kernel-hugemem-devel-2.6.9-89.0.28.EL.i686.rpm
> kernel-smp-2.6.9-89.0.28.EL.i686.rpm
> kernel-smp-devel-2.6.9-89.0.28.EL.i686.rpm
> kernel-xenU-2.6.9-89.0.28.EL.i686.rpm
> kernel-xenU-devel-2.6.9-89.0.28.EL.i686.rpm
> Dependancies:
> kernel-module-fuse-2.6.9-89.0.28.EL-2.7.3-1.SL.i686.rpm
> kernel-module-fuse-2.6.9-89.0.28.ELhugemem-2.7.3-1.SL.i686.rpm
> kernel-module-fuse-2.6.9-89.0.28.ELsmp-2.7.3-1.SL.i686.rpm
> kernel-module-fuse-2.6.9-89.0.28.ELxenU-2.7.3-1.SL.i686.rpm
> kernel-module-ipw3945-2.6.9-89.0.28.EL-1.1.0-1.SL4.i686.rpm
> kernel-module-ipw3945-2.6.9-89.0.28.ELhugemem-1.1.0-1.SL4.i686.rpm
> kernel-module-ipw3945-2.6.9-89.0.28.ELsmp-1.1.0-1.SL4.i686.rpm
> kernel-module-ipw3945-2.6.9-89.0.28.ELxenU-1.1.0-1.SL4.i686.rpm
> kernel-module-ndiswrapper-2.6.9-89.0.28.EL-1.41-1.SL.i686.rpm
> kernel-module-ndiswrapper-2.6.9-89.0.28.ELhugemem-1.41-1.SL.i686.rpm
> kernel-module-ndiswrapper-2.6.9-89.0.28.ELsmp-1.41-1.SL.i686.rpm
> kernel-module-ndiswrapper-2.6.9-89.0.28.ELxenU-1.41-1.SL.i686.rpm
> kernel-module-openafs-2.6.9-89.0.28.EL-1.4.7-68.2.SL4.i686.rpm
> kernel-module-openafs-2.6.9-89.0.28.ELhugemem-1.4.7-68.2.SL4.i686.rpm
> kernel-module-openafs-2.6.9-89.0.28.ELsmp-1.4.7-68.2.SL4.i686.rpm
> kernel-module-openafs-2.6.9-89.0.28.ELxenU-1.4.7-68.2.SL4.i686.rpm
> kernel-module-r1000-2.6.9-89.0.28.EL-2.2-2.SL4x.i686.rpm
> kernel-module-r1000-2.6.9-89.0.28.ELhugemem-2.2-2.SL4x.i686.rpm
> kernel-module-r1000-2.6.9-89.0.28.ELsmp-2.2-2.SL4x.i686.rpm
> kernel-module-r1000-2.6.9-89.0.28.ELxenU-2.2-2.SL4x.i686.rpm
> kernel-module-squashfs-2.6.9-89.0.28.EL-3.1.2-3.i686.rpm
> kernel-module-squashfs-2.6.9-89.0.28.ELhugemem-3.1.2-3.i686.rpm
> kernel-module-squashfs-2.6.9-89.0.28.ELsmp-3.1.2-3.i686.rpm
> kernel-module-squashfs-2.6.9-89.0.28.ELxenU-3.1.2-3.i686.rpm
> kernel-module-unionfs-2.6.9-89.0.28.EL-1.1.5-3.i686.rpm
> kernel-module-unionfs-2.6.9-89.0.28.ELsmp-1.1.5-3.i686.rpm
>
>
> x86_64:
> kernel-2.6.9-89.0.28.EL.x86_64.rpm
> kernel-devel-2.6.9-89.0.28.EL.x86_64.rpm
> kernel-doc-2.6.9-89.0.28.EL.noarch.rpm
> kernel-largesmp-2.6.9-89.0.28.EL.x86_64.rpm
> kernel-largesmp-devel-2.6.9-89.0.28.EL.x86_64.rpm
> kernel-smp-2.6.9-89.0.28.EL.x86_64.rpm
> kernel-smp-devel-2.6.9-89.0.28.EL.x86_64.rpm
> kernel-xenU-2.6.9-89.0.28.EL.x86_64.rpm
> kernel-xenU-devel-2.6.9-89.0.28.EL.x86_64.rpm
> Dependancies
> kernel-module-fuse-2.6.9-89.0.28.EL-2.7.3-1.SL.x86_64.rpm
> kernel-module-fuse-2.6.9-89.0.28.ELlargesmp-2.7.3-1.SL.x86_64.rpm
> kernel-module-fuse-2.6.9-89.0.28.ELsmp-2.7.3-1.SL.x86_64.rpm
> kernel-module-fuse-2.6.9-89.0.28.ELxenU-2.7.3-1.SL.x86_64.rpm
> kernel-module-ipw3945-2.6.9-89.0.28.EL-1.1.0-1.SL4.x86_64.rpm
> kernel-module-ipw3945-2.6.9-89.0.28.ELlargesmp-1.1.0-1.SL4.x86_64.rpm
> kernel-module-ipw3945-2.6.9-89.0.28.ELsmp-1.1.0-1.SL4.x86_64.rpm
> kernel-module-ipw3945-2.6.9-89.0.28.ELxenU-1.1.0-1.SL4.x86_64.rpm
> kernel-module-ndiswrapper-2.6.9-89.0.28.EL-1.41-1.SL.x86_64.rpm
> kernel-module-ndiswrapper-2.6.9-89.0.28.ELlargesmp-1.41-1.SL.x86_64.rpm
> kernel-module-ndiswrapper-2.6.9-89.0.28.ELsmp-1.41-1.SL.x86_64.rpm
> kernel-module-ndiswrapper-2.6.9-89.0.28.ELxenU-1.41-1.SL.x86_64.rpm
> kernel-module-openafs-2.6.9-89.0.28.EL-1.4.7-68.2.SL4.x86_64.rpm
> kernel-module-openafs-2.6.9-89.0.28.ELlargesmp-1.4.7-68.2.SL4.x86_64.rpm
> kernel-module-openafs-2.6.9-89.0.28.ELsmp-1.4.7-68.2.SL4.x86_64.rpm
> kernel-module-openafs-2.6.9-89.0.28.ELxenU-1.4.7-68.2.SL4.x86_64.rpm
> kernel-module-r1000-2.6.9-89.0.28.EL-2.2-2.SL4x.x86_64.rpm
> kernel-module-r1000-2.6.9-89.0.28.ELlargesmp-2.2-2.SL4x.x86_64.rpm
> kernel-module-r1000-2.6.9-89.0.28.ELsmp-2.2-2.SL4x.x86_64.rpm
> kernel-module-r1000-2.6.9-89.0.28.ELxenU-2.2-2.SL4x.x86_64.rpm
> kernel-module-squashfs-2.6.9-89.0.28.EL-3.1.2-3.x86_64.rpm
> kernel-module-squashfs-2.6.9-89.0.28.ELlargesmp-3.1.2-3.x86_64.rpm
> kernel-module-squashfs-2.6.9-89.0.28.ELsmp-3.1.2-3.x86_64.rpm
> kernel-module-squashfs-2.6.9-89.0.28.ELxenU-3.1.2-3.x86_64.rpm
> kernel-module-unionfs-2.6.9-89.0.28.EL-1.1.5-3.x86_64.rpm
> kernel-module-unionfs-2.6.9-89.0.28.ELsmp-1.1.5-3.x86_64.rpm
>
>
> -Connie Sieh
> -Troy Dawson
>
>
>

--
__________________________________________________
Troy Dawson This email address is being protected from spambots. You need JavaScript enabled to view it. (630)840-6468
Fermilab ComputingDivision/LSCS/CSI/USS Group
__________________________________________________

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Wed, 25 Aug 2010 15:18:33 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Important: openoffice.org on SL4.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Important: openoffice.org security update
Issue date:	2010-08-23
CVE Names:	CVE-2010-2935 CVE-2010-2936

An integer truncation error, leading to a heap-based buffer overflow,
was found in the way the OpenOffice.org Impress presentation application
sanitized a file's dictionary property items. An attacker could use this
flaw to create a specially-crafted Microsoft Office PowerPoint file
that, when opened, would cause OpenOffice.org Impress to crash or,
possibly, execute arbitrary code with the privileges of the user running
OpenOffice.org Impress. (CVE-2010-2935)

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way OpenOffice.org Impress processed polygons in input
documents. An attacker could use this flaw to create a specially-crafted
Microsoft Office PowerPoint file that, when opened, would cause
OpenOffice.org Impress to crash or, possibly, execute arbitrary code
with the privileges of the user running OpenOffice.org Impress.
(CVE-2010-2936)

SL 4.x

 SRPMS:
openoffice.org-1.1.5-10.6.0.7.EL4.5.src.rpm
 i386:
openoffice.org-1.1.5-10.6.0.7.EL4.5.i386.rpm
openoffice.org-i18n-1.1.5-10.6.0.7.EL4.5.i386.rpm
openoffice.org-kde-1.1.5-10.6.0.7.EL4.5.i386.rpm
openoffice.org-libs-1.1.5-10.6.0.7.EL4.5.i386.rpm
 x86_64:
openoffice.org-1.1.5-10.6.0.7.EL4.5.i386.rpm
openoffice.org-i18n-1.1.5-10.6.0.7.EL4.5.i386.rpm
openoffice.org-kde-1.1.5-10.6.0.7.EL4.5.i386.rpm
openoffice.org-libs-1.1.5-10.6.0.7.EL4.5.i386.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Wed, 25 Aug 2010 15:19:46 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Moderate: ImageMagick on SL4.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Moderate: ImageMagick security update
Issue date:	2010-08-25
CVE Names:	CVE-2009-1882

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the ImageMagick routine responsible for creating X11 images. An
attacker could create a specially-crafted image file that, when opened
by a victim, would cause ImageMagick to crash or, potentially, execute
arbitrary code. (CVE-2009-1882)

All running instances of ImageMagick must be restarted for this update
to take effect.

SL 4.x

 SRPMS:
ImageMagick-6.0.7.1-20.el4_8.1.src.rpm
 i386:
ImageMagick-6.0.7.1-20.el4_8.1.i386.rpm
ImageMagick-c++-6.0.7.1-20.el4_8.1.i386.rpm
ImageMagick-c++-devel-6.0.7.1-20.el4_8.1.i386.rpm
ImageMagick-devel-6.0.7.1-20.el4_8.1.i386.rpm
ImageMagick-perl-6.0.7.1-20.el4_8.1.i386.rpm
 x86_64:
ImageMagick-6.0.7.1-20.el4_8.1.x86_64.rpm
ImageMagick-c++-6.0.7.1-20.el4_8.1.x86_64.rpm
ImageMagick-c++-devel-6.0.7.1-20.el4_8.1.x86_64.rpm
ImageMagick-devel-6.0.7.1-20.el4_8.1.x86_64.rpm
ImageMagick-perl-6.0.7.1-20.el4_8.1.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Wed, 25 Aug 2010 15:21:28 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Moderate: ImageMagick on SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Moderate: ImageMagick security and bug fix update
Issue date:	2010-08-25
CVE Names:	CVE-2009-1882

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the ImageMagick routine responsible for creating X11 images. An
attacker could create a specially-crafted image file that, when opened
by a victim, would cause ImageMagick to crash or, potentially, execute
arbitrary code. (CVE-2009-1882)

This update also fixes the following bug:

* previously, portions of certain RGB images on the right side were not
rendered and left black when converting or displaying them. With this
update, RGB images display correctly. (BZ#625058)

All running instances of ImageMagick must be restarted for this update
to take effect.

SL 5.x

 SRPMS:
ImageMagick-6.2.8.0-4.el5_5.2.src.rpm
 i386:
ImageMagick-6.2.8.0-4.el5_5.2.i386.rpm
ImageMagick-c++-6.2.8.0-4.el5_5.2.i386.rpm
ImageMagick-c++-devel-6.2.8.0-4.el5_5.2.i386.rpm
ImageMagick-devel-6.2.8.0-4.el5_5.2.i386.rpm
ImageMagick-perl-6.2.8.0-4.el5_5.2.i386.rpm
 x86_64:
ImageMagick-6.2.8.0-4.el5_5.2.i386.rpm
ImageMagick-6.2.8.0-4.el5_5.2.x86_64.rpm
ImageMagick-c++-6.2.8.0-4.el5_5.2.i386.rpm
ImageMagick-c++-6.2.8.0-4.el5_5.2.x86_64.rpm
ImageMagick-c++-devel-6.2.8.0-4.el5_5.2.i386.rpm
ImageMagick-c++-devel-6.2.8.0-4.el5_5.2.x86_64.rpm
ImageMagick-devel-6.2.8.0-4.el5_5.2.i386.rpm
ImageMagick-devel-6.2.8.0-4.el5_5.2.x86_64.rpm
ImageMagick-perl-6.2.8.0-4.el5_5.2.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Wed, 25 Aug 2010 15:36:30 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Moderate: qspice-client on SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Moderate: qspice-client security update
Issue date:	2010-08-25
CVE Names:	CVE-2010-2792

The qspice-client package provides the client side of the SPICE protocol.

A race condition was found in the way the SPICE Mozilla Firefox plug-in
and the SPICE client communicated. A local attacker could use this flaw
to trick the plug-in and the SPICE client into communicating over an
attacker-controlled socket, possibly gaining access to authentication
details, or resulting in a man-in-the-middle attack on the SPICE
connection. (CVE-2010-2792)

NOTE: Because qspice-client was originally only x86_64, there are
several dependencies for i386 going out with this errata.

SL 5.x

 SRPMS:
qspice-client-0.3.0-4.el5_5.src.rpm
 i386:
qspice-client-0.3.0-4.el5_5.i386.rpm
 Dependancies:
celt051-0.5.1.3-0.el5.i386.rpm
celt051-devel-0.5.1.3-0.el5.i386.rpm
log4cpp-1.0-9.el5.i386.rpm
log4cpp-devel-1.0-9.el5.i386.rpm
log4cpp-docs-1.0-9.el5.i386.rpm
qcairo-1.8.7.1-3.el5.i386.rpm
qcairo-devel-1.8.7.1-3.el5.i386.rpm
qffmpeg-devel-0.4.9-0.15.20080908.el5.i386.rpm
qffmpeg-devel-0.4.9-0.16.20080908.el5_5.i386.rpm
qffmpeg-libs-0.4.9-0.15.20080908.el5.i386.rpm
qffmpeg-libs-0.4.9-0.16.20080908.el5_5.i386.rpm
qpixman-0.13.3-4.el5.i386.rpm
qpixman-devel-0.13.3-4.el5.i386.rpm

 x86_64:
qspice-client-0.3.0-4.el5_5.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Wed, 25 Aug 2010 15:36:33 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Moderate: spice-xpi on SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Moderate: spice-xpi security and bug fix update
Issue date:	2010-08-25
CVE Names:	CVE-2010-2792 CVE-2010-2794

The spice-xpi package provides a plug-in that allows the SPICE client to
run from within Mozilla Firefox.

A race condition was found in the way the SPICE Firefox plug-in and the
SPICE client communicated. A local attacker could use this flaw to trick
the plug-in and the SPICE client into communicating over an
attacker-controlled socket, possibly gaining access to authentication
details, or resulting in a man-in-the-middle attack on the SPICE
connection. (CVE-2010-2792)

It was found that the SPICE Firefox plug-in used a predictable name for
its log file. A local attacker could use this flaw to conduct a symbolic
link attack, allowing them to overwrite arbitrary files accessible to
the user running Firefox. (CVE-2010-2794)

This update also fixes the following bugs:

* a bug prevented users of Red Hat Enterprise Linux 5.5, with all
updates applied, from running the SPICE Firefox plug-in when using
Firefox 3.6.4. With this update, the plug-in works correctly with
Firefox 3.6.4 and the latest version in Red Hat Enterprise Linux 5.5,
Firefox 3.6.7. (BZ#618244)

* unused code has been removed during source code refactoring. This also
resolves a bug in the SPICE Firefox plug-in that caused it to close
random file descriptors. (BZ#594006, BZ#619067)

Note: This update should be installed together with the qspice-client
security update.

After installing the update, Firefox must be restarted for the changes
to take effect.

SL 5.x

 SRPMS:
spice-xpi-2.2-2.3.el5_5.src.rpm
 i386:
spice-xpi-2.2-2.3.el5_5.i386.rpm
 x86_64:
spice-xpi-2.2-2.3.el5_5.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Thu, 26 Aug 2010 10:18:32 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Important: openoffice.org on SL3.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Important: openoffice.org security update
Issue date:	2010-08-23
CVE Names:	CVE-2010-2935 CVE-2010-2936

An integer truncation error, leading to a heap-based buffer overflow,
was found in the way the OpenOffice.org Impress presentation application
sanitized a file's dictionary property items. An attacker could use this
flaw to create a specially-crafted Microsoft Office PowerPoint file
that, when opened, would cause OpenOffice.org Impress to crash or,
possibly, execute arbitrary code with the privileges of the user running
OpenOffice.org Impress. (CVE-2010-2935)

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way OpenOffice.org Impress processed polygons in input
documents. An attacker could use this flaw to create a specially-crafted
Microsoft Office PowerPoint file that, when opened, would cause
OpenOffice.org Impress to crash or, possibly, execute arbitrary code
with the privileges of the user running OpenOffice.org Impress.
(CVE-2010-2936)

All running instances of OpenOffice.org applications must be restarted
for this update to take effect.

SL 3.0.x

 SRPMS:
openoffice.org-1.1.2-48.2.0.EL3.src.rpm
 i386:
openoffice.org-1.1.2-48.2.0.EL3.i386.rpm
openoffice.org-i18n-1.1.2-48.2.0.EL3.i386.rpm
openoffice.org-libs-1.1.2-48.2.0.EL3.i386.rpm
 x86_64:
openoffice.org-1.1.2-48.2.0.EL3.i386.rpm
openoffice.org-i18n-1.1.2-48.2.0.EL3.i386.rpm
openoffice.org-libs-1.1.2-48.2.0.EL3.i386.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Thu, 26 Aug 2010 13:34:18 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Important: openoffice.org2 on SL4.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Important: openoffice.org2 security update
Issue date:	2010-08-23
CVE Names:	CVE-2010-2935 CVE-2010-2936

An integer truncation error, leading to a heap-based buffer overflow,
was found in the way the OpenOffice.org Impress presentation application
sanitized a file's dictionary property items. An attacker could use this
flaw to create a specially-crafted Microsoft Office PowerPoint file
that, when opened, would cause OpenOffice.org Impress to crash or,
possibly, execute arbitrary code with the privileges of the user running
OpenOffice.org Impress. (CVE-2010-2935)

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way OpenOffice.org Impress processed polygons in input
documents. An attacker could use this flaw to create a specially-crafted
Microsoft Office PowerPoint file that, when opened, would cause
OpenOffice.org Impress to crash or, possibly, execute arbitrary code
with the privileges of the user running OpenOffice.org Impress.
(CVE-2010-2936)

All running instances of OpenOffice.org applications must be restarted
for this update to take effect.

SL 4.x

 SRPMS:
openoffice.org2-2.0.4-5.7.0.6.1.el4_8.6.src.rpm
 i386:
openoffice.org2-base-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-calc-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-core-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-draw-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-emailmerge-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-graphicfilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-impress-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-javafilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-af_ZA-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ar-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-bg_BG-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-bn-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ca_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-cs_CZ-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-cy_GB-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-da_DK-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-de-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-el_GR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-es-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-et_EE-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-eu_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-fi_FI-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-fr-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ga_IE-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-gl_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-gu_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-he_IL-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-hi_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-hr_HR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-hu_HU-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-it-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ja_JP-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ko_KR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-lt_LT-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ms_MY-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-nb_NO-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-nl-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-nn_NO-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-pa_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-pl_PL-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-pt_BR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-pt_PT-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ru-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-sk_SK-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-sl_SI-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-sr_CS-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-sv-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ta_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-th_TH-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-tr_TR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-zh_CN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-zh_TW-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-zu_ZA-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-math-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-pyuno-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-testtools-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-writer-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-xsltfilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm

 x86_64:
openoffice.org2-base-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-calc-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-core-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-draw-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-graphicfilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-impress-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-javafilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-af_ZA-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ar-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-bg_BG-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-bn-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ca_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-cs_CZ-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-cy_GB-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-da_DK-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-de-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-el_GR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-es-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-et_EE-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-eu_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-fi_FI-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-fr-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ga_IE-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-gl_ES-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-gu_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-he_IL-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-hi_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-hr_HR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-hu_HU-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-it-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ja_JP-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ko_KR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-lt_LT-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ms_MY-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-nb_NO-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-nl-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-nn_NO-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-pa_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-pl_PL-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-pt_BR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-pt_PT-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ru-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-sk_SK-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-sl_SI-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-sr_CS-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-sv-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-ta_IN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-th_TH-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-tr_TR-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-zh_CN-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-zh_TW-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-langpack-zu_ZA-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-math-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-testtools-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-writer-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm
openoffice.org2-xsltfilter-2.0.4-5.7.0.6.1.el4_8.6.i386.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Fri, 27 Aug 2010 14:45:37 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Low: gdm on SL4.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Low: gdm security and bug fix update
Issue date:	2010-08-26
CVE Names:	CVE-2007-5079

A flaw was found in the way the gdm package was built. The gdm package
was missing TCP wrappers support on 64-bit platforms, which could result
in an administrator believing they had access restrictions enabled when
they did not. (CVE-2007-5079)

This update also fixes the following bug:

* sometimes the system would hang instead of properly shutting down when
a user chose "Shut down" from the login screen. (BZ#625818)

GDM must be restarted for this update to take effect. Rebooting achieves
this, but changing the runlevel from 5 to 3 and back to 5 also restarts GDM.

SL 4.x

 SRPMS:
gdm-2.6.0.5-7.rhel4.19.el4_8.2.src.rpm
 i386:
gdm-2.6.0.5-7.rhel4.19.el4_8.2.i386.rpm
 x86_64:
gdm-2.6.0.5-7.rhel4.19.el4_8.2.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Mon, 30 Aug 2010 15:19:54 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Moderate: httpd on SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Moderate: httpd security and bug fix update
Issue date:	2010-08-30
CVE Names:	CVE-2010-1452 CVE-2010-2791

A flaw was discovered in the way the mod_proxy module of the Apache HTTP
Server handled the timeouts of requests forwarded by a reverse proxy to
the back-end server. If the proxy was configured to reuse existing
back-end connections, it could return a response intended for another
user under certain timeout conditions, possibly leading to information
disclosure. (CVE-2010-2791)

A flaw was found in the way the mod_dav module of the Apache HTTP Server
handled certain requests. If a remote attacker were to send a carefully
crafted request to the server, it could cause the httpd child process to
crash. (CVE-2010-1452)

This update also fixes the following bugs:

* numerous issues in the INFLATE filter provided by mod_deflate.
"Inflate error -5 on flush" errors may have been logged. This update
upgrades mod_deflate to the newer upstream version from Apache HTTP
Server 2.2.15. (BZ#625435)

* the response would be corrupted if mod_filter applied the DEFLATE
filter to a resource requiring a subrequest with an internal redirect.
(BZ#625451)

* the OID() function used in the mod_ssl "SSLRequire" directive did not
correctly evaluate extensions of an unknown type. (BZ#625452)

After installing the updatedpackages, the httpd daemon must be restarted
for the update to take effect.

SL 5.x

 SRPMS:
httpd-2.2.3-43.el5_5.3.src.rpm
 i386:
httpd-2.2.3-43.sl5.3.i386.rpm
httpd-devel-2.2.3-43.sl5.3.i386.rpm
httpd-manual-2.2.3-43.sl5.3.i386.rpm
mod_ssl-2.2.3-43.sl5.3.i386.rpm
 x86_64:
httpd-2.2.3-43.sl5.3.x86_64.rpm
httpd-devel-2.2.3-43.sl5.3.i386.rpm
httpd-devel-2.2.3-43.sl5.3.x86_64.rpm
httpd-manual-2.2.3-43.sl5.3.x86_64.rpm
mod_ssl-2.2.3-43.sl5.3.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Tue, 31 Aug 2010 13:17:11 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: Security ERRATA Important: kernel on SL5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

Synopsis:	Important: kernel security update
Issue date:	2010-08-30
CVE Names:	CVE-2010-2240

This update fixes the following security issue:

* when an application has a stack overflow, the stack could silently
overwrite another memory mapped area instead of a segmentation fault
occurring, which could cause an application to execute arbitrary code,
possibly leading to privilege escalation. It is known that the X Window
System server can be used to trigger this flaw. (CVE-2010-2240, Important)

The system must be rebooted for this update to take effect.

SL 5.x

 SRPMS:
kernel-2.6.18-194.11.3.el5.src.rpm
 i386:
kernel-2.6.18-194.11.3.el5.i686.rpm
kernel-debug-2.6.18-194.11.3.el5.i686.rpm
kernel-debug-devel-2.6.18-194.11.3.el5.i686.rpm
kernel-devel-2.6.18-194.11.3.el5.i686.rpm
kernel-doc-2.6.18-194.11.3.el5.noarch.rpm
kernel-headers-2.6.18-194.11.3.el5.i386.rpm
kernel-PAE-2.6.18-194.11.3.el5.i686.rpm
kernel-PAE-devel-2.6.18-194.11.3.el5.i686.rpm
kernel-xen-2.6.18-194.11.3.el5.i686.rpm
kernel-xen-devel-2.6.18-194.11.3.el5.i686.rpm
 Dependencies:
kernel-module-aufs-2.6.18-194.11.3.el5-0.20090202.cvs-6.sl5.i686.rpm
kernel-module-aufs-2.6.18-194.11.3.el5PAE-0.20090202.cvs-6.sl5.i686.rpm
kernel-module-aufs-2.6.18-194.11.3.el5xen-0.20090202.cvs-6.sl5.i686.rpm
kernel-module-ndiswrapper-2.6.18-194.11.3.el5-1.55-1.SL.i686.rpm
kernel-module-ndiswrapper-2.6.18-194.11.3.el5PAE-1.55-1.SL.i686.rpm
kernel-module-ndiswrapper-2.6.18-194.11.3.el5xen-1.55-1.SL.i686.rpm
kernel-module-openafs-2.6.18-194.11.3.el5-1.4.12-79.sl5.i686.rpm
kernel-module-openafs-2.6.18-194.11.3.el5PAE-1.4.12-79.sl5.i686.rpm
kernel-module-openafs-2.6.18-194.11.3.el5xen-1.4.12-79.sl5.i686.rpm
kernel-module-xfs-2.6.18-194.11.3.el5-0.4-2.sl5.i686.rpm
kernel-module-xfs-2.6.18-194.11.3.el5PAE-0.4-2.sl5.i686.rpm
kernel-module-xfs-2.6.18-194.11.3.el5xen-0.4-2.sl5.i686.rpm

 x86_64:
kernel-2.6.18-194.11.3.el5.x86_64.rpm
kernel-debug-2.6.18-194.11.3.el5.x86_64.rpm
kernel-debug-devel-2.6.18-194.11.3.el5.x86_64.rpm
kernel-devel-2.6.18-194.11.3.el5.x86_64.rpm
kernel-doc-2.6.18-194.11.3.el5.noarch.rpm
kernel-headers-2.6.18-194.11.3.el5.x86_64.rpm
kernel-xen-2.6.18-194.11.3.el5.x86_64.rpm
kernel-xen-devel-2.6.18-194.11.3.el5.x86_64.rpm
 Dependencies:
kernel-module-aufs-2.6.18-194.11.3.el5-0.20090202.cvs-6.sl5.x86_64.rpm
kernel-module-aufs-2.6.18-194.11.3.el5xen-0.20090202.cvs-6.sl5.x86_64.rpm
kernel-module-ndiswrapper-2.6.18-194.11.3.el5-1.55-1.SL.x86_64.rpm
kernel-module-ndiswrapper-2.6.18-194.11.3.el5xen-1.55-1.SL.x86_64.rpm
kernel-module-openafs-2.6.18-194.11.3.el5-1.4.11-76.sl5.x86_64.rpm
kernel-module-openafs-2.6.18-194.11.3.el5-1.4.12-79.sl5.x86_64.rpm
kernel-module-openafs-2.6.18-194.11.3.el5xen-1.4.11-76.sl5.x86_64.rpm
kernel-module-openafs-2.6.18-194.11.3.el5xen-1.4.12-79.sl5.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Tue, 31 Aug 2010 15:01:13 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: FASTBUGS for SL 4.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

The following FASTBUGS have been uploaded to

 i386:
fence-1.32.67-1.el4_8.5.i686.rpm
iputils-20020927-22.el4_8.2.i386.rpm
libxml2-2.6.16-12.8.i386.rpm
libxml2-devel-2.6.16-12.8.i386.rpm
libxml2-python-2.6.16-12.8.i386.rpm
nss-3.12.6-2.el4_8.i386.rpm
nss-devel-3.12.6-2.el4_8.i386.rpm
nss-tools-3.12.6-2.el4_8.i386.rpm
rgmanager-1.9.87-1.el4_8.6.i386.rpm

 x86_64:
fence-1.32.67-1.el4_8.5.x86_64.rpm
iputils-20020927-22.el4_8.2.x86_64.rpm
libxml2-2.6.16-12.8.i386.rpm
libxml2-2.6.16-12.8.x86_64.rpm
libxml2-devel-2.6.16-12.8.x86_64.rpm
libxml2-python-2.6.16-12.8.x86_64.rpm
nss-3.12.6-2.el4_8.i386.rpm
nss-3.12.6-2.el4_8.x86_64.rpm
nss-devel-3.12.6-2.el4_8.x86_64.rpm
nss-tools-3.12.6-2.el4_8.x86_64.rpm
rgmanager-1.9.87-1.el4_8.6.x86_64.rpm

-Connie Sieh
-Troy Dawson

From DUMMY-LINE Fri Jun 21 20:06:45 2019
Date: Tue, 31 Aug 2010 15:01:53 -0500
Reply-To: Troy Dawson 
Sender: Security Errata for Scientific Linux
 
From: Troy Dawson 
Subject: FASTBUGS for SL 5.x i386/x86_64
Comments: To: "This email address is being protected from spambots. You need JavaScript enabled to view it."
 

The following FASTBUGS have been uploaded to

 i386:
apr-1.2.7-11.el5_5.2.i386.rpm
apr-devel-1.2.7-11.el5_5.2.i386.rpm
apr-docs-1.2.7-11.el5_5.2.i386.rpm
dhclient-3.0.5-23.el5_5.2.i386.rpm
dhcp-3.0.5-23.el5_5.2.i386.rpm
dhcp-devel-3.0.5-23.el5_5.2.i386.rpm
ipsec-tools-0.6.5-14.el5_5.5.i386.rpm
libdhcp4client-3.0.5-23.el5_5.2.i386.rpm
libdhcp4client-devel-3.0.5-23.el5_5.2.i386.rpm
patch-2.5.4-31.el5.i386.rpm
poppler-0.5.4-4.4.el5_5.13.i386.rpm
poppler-devel-0.5.4-4.4.el5_5.13.i386.rpm
poppler-utils-0.5.4-4.4.el5_5.13.i386.rpm
rgmanager-2.0.52-6.el5_5.8.i386.rpm

 x86_64:
apr-1.2.7-11.el5_5.2.i386.rpm
apr-1.2.7-11.el5_5.2.x86_64.rpm
apr-devel-1.2.7-11.el5_5.2.i386.rpm
apr-devel-1.2.7-11.el5_5.2.x86_64.rpm
apr-docs-1.2.7-11.el5_5.2.x86_64.rpm
dhclient-3.0.5-23.el5_5.2.x86_64.rpm
dhcp-3.0.5-23.el5_5.2.x86_64.rpm
dhcp-devel-3.0.5-23.el5_5.2.i386.rpm
dhcp-devel-3.0.5-23.el5_5.2.x86_64.rpm
ipsec-tools-0.6.5-14.el5_5.5.x86_64.rpm
libdhcp4client-3.0.5-23.el5_5.2.i386.rpm
libdhcp4client-3.0.5-23.el5_5.2.x86_64.rpm
libdhcp4client-devel-3.0.5-23.el5_5.2.i386.rpm
libdhcp4client-devel-3.0.5-23.el5_5.2.x86_64.rpm
patch-2.5.4-31.el5.x86_64.rpm
poppler-0.5.4-4.4.el5_5.13.i386.rpm
poppler-0.5.4-4.4.el5_5.13.x86_64.rpm
poppler-devel-0.5.4-4.4.el5_5.13.i386.rpm
poppler-devel-0.5.4-4.4.el5_5.13.x86_64.rpm
poppler-utils-0.5.4-4.4.el5_5.13.x86_64.rpm
rgmanager-2.0.52-6.el5_5.8.x86_64.rpm

-Connie Sieh
-Troy Dawson
lastline