httpd: mod_auth_digest: access control bypass due to race condition (CVE-2019-0217) * httpd: URL normalization inconsistency (CVE-2019-0220) SL7 x86_64 httpd-tools-2.4.6-90.el7.x86_64.rpm mod_ssl-2.4.6-90.el7.x86_64.rpm httpd-devel-2.4.6-90.el7.x86_64.rpm httpd-manual-2.4.6-90.el7.noarch.rpm httpd-2.4.6-90.el7.x86_64.rpm mod_session-2.4.6-90.el7.x86_64.rpm mod_p [More...]. Synopsis: Moderate: httpd security and bug fix update Advisory ID: SLSA-2019:2343-1 Issue Date: 2019-08-06 CVE Numbers: CVE-2019-0220 CVE-2019-0217 -- Security Fix(es): * httpd: mod_auth_digest: access control bypass due to race condition (CVE-2019-0217) * httpd: URL normalization inconsistency (CVE-2019-0220) -- SL7 x86_64 httpd-tools-2.4.6-90.el7.x86_64.rpm mod_ssl-2.4.6-90.el7.x86_64.rpm httpd-devel-2.4.6-90.el7.x86_64.rpm httpd-manual-2.4.6-90.el7.noarch.rpm httpd-2.4.6-90.el7.x86_64.rpm mod_session-2.4.6-90.el7.x86_64.rpm mod_proxy_html-2.4.6-90.el7.x86_64.rpm mod_ldap-2.4.6-90.el7.x86_64.rpm httpd-debuginfo-2.4.6-90.el7.x86_64.rpm noarch httpd-manual-2.4.6-90.el7.noarch.rpm - Scientific Linux Development Team . Essential httpd security patch and bug fix release for Scientific Linux SL7 tackling access permissions vulnerabilities. Click to learn more.. httpd Update, Security Advisory, Mod_Auth_Digest, SL7, Bug Fix. . LinuxSecurity.com Team
Updated tomcat6 packages that fix one security issue and one bug are now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having Moderate security impact. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: tomcat6 security and bug fix update Advisory ID: RHSA-2015:0991-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2015:0991.html Issue date: 2015-05-12 CVE Names: CVE-2014-0227 ==================================================================== 1. Summary: Updated tomcat6 packages that fix one security issue and one bug are now available for Red Hat Enterprise Linux 6. Red Hat Product Security has rated this update as having Moderate security impact. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available from the CVE link in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Desktop (v. 6) - i386, x86_64 Red Hat Enterprise Linux Desktop Optional (v. 6) - i386, x86_64 Red Hat Enterprise Linux HPC Node (v. 6) - x86_64 Red Hat Enterprise Linux HPC Node Optional (v. 6) - x86_64 Red Hat Enterprise Linux Server (v. 6) - i386, ppc64, s390x, x86_64 Red Hat Enterprise Linux Server Optional (v. 6) - i386, ppc64, s390x, x86_64 Red Hat Enterprise Linux Workstation (v. 6) - i386, x86_64 Red Hat Enterprise Linux Workstation Optional (v. 6) - i386, x86_64 3. Description: Apache Tomcat is a servlet container for the Java Servlet and JavaServer Pages (JSP) technologies. It was discovered that the ChunkedInputFilter in Tomcat did not fail subsequent attempts to read input after malformed chunked encoding was detected. A remote attacker could possibly use this flaw to make Tomcat process part of the request body asnew request, or cause a denial of service. (CVE-2014-0227) This update also fixes the following bug: * Before this update, the tomcat6 init script did not try to kill the tomcat process if an attempt to stop it was unsuccessful, which would prevent tomcat from restarting properly. The init script was modified to correct this issue. (BZ#1207048) All Tomcat 6 users are advised to upgrade to these updated packages, which correct these issues. Tomcat must be restarted for this update to take effect. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1109196 - CVE-2014-0227 Tomcat/JBossWeb: request smuggling andl imited DoS in ChunkedInputFilter 6. Package List: Red Hat Enterprise Linux Desktop (v. 6): Source: tomcat6-6.0.24-83.el6_6.src.rpm i386: tomcat6-6.0.24-83.el6_6.i686.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-lib-6.0.24-83.el6_6.i686.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux Desktop Optional (v.6): Source: tomcat6-6.0.24-83.el6_6.src.rpm i386: tomcat6-6.0.24-83.el6_6.i686.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-lib-6.0.24-83.el6_6.i686.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux HPC Node (v. 6): Source: tomcat6-6.0.24-83.el6_6.src.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux HPC Node Optional (v. 6): Source: tomcat6-6.0.24-83.el6_6.src.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise LinuxServer (v. 6): Source: tomcat6-6.0.24-83.el6_6.src.rpm i386: tomcat6-6.0.24-83.el6_6.i686.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-lib-6.0.24-83.el6_6.i686.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm ppc64: tomcat6-6.0.24-83.el6_6.ppc64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.ppc64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.ppc64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.ppc64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.ppc64.rpm tomcat6-javadoc-6.0.24-83.el6_6.ppc64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.ppc64.rpm tomcat6-lib-6.0.24-83.el6_6.ppc64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.ppc64.rpm tomcat6-webapps-6.0.24-83.el6_6.ppc64.rpm s390x: tomcat6-6.0.24-83.el6_6.s390x.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.s390x.rpm tomcat6-debuginfo-6.0.24-83.el6_6.s390x.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.s390x.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.s390x.rpm tomcat6-javadoc-6.0.24-83.el6_6.s390x.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.s390x.rpm tomcat6-lib-6.0.24-83.el6_6.s390x.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.s390x.rpm tomcat6-webapps-6.0.24-83.el6_6.s390x.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux Server Optional (v.6): i386: tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm ppc64: tomcat6-admin-webapps-6.0.24-83.el6_6.ppc64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.ppc64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.ppc64.rpm tomcat6-javadoc-6.0.24-83.el6_6.ppc64.rpm tomcat6-webapps-6.0.24-83.el6_6.ppc64.rpm s390x: tomcat6-admin-webapps-6.0.24-83.el6_6.s390x.rpm tomcat6-debuginfo-6.0.24-83.el6_6.s390x.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.s390x.rpm tomcat6-javadoc-6.0.24-83.el6_6.s390x.rpm tomcat6-webapps-6.0.24-83.el6_6.s390x.rpm x86_64: tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux Workstation (v. 6): Source: tomcat6-6.0.24-83.el6_6.src.rpm i386: tomcat6-6.0.24-83.el6_6.i686.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.i686.rpm tomcat6-lib-6.0.24-83.el6_6.i686.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm x86_64: tomcat6-6.0.24-83.el6_6.x86_64.rpm tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-el-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-jsp-2.1-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-lib-6.0.24-83.el6_6.x86_64.rpm tomcat6-servlet-2.5-api-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm Red Hat Enterprise Linux Workstation Optional (v.6): i386: tomcat6-admin-webapps-6.0.24-83.el6_6.i686.rpm tomcat6-debuginfo-6.0.24-83.el6_6.i686.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.i686.rpm tomcat6-javadoc-6.0.24-83.el6_6.i686.rpm tomcat6-webapps-6.0.24-83.el6_6.i686.rpm x86_64: tomcat6-admin-webapps-6.0.24-83.el6_6.x86_64.rpm tomcat6-debuginfo-6.0.24-83.el6_6.x86_64.rpm tomcat6-docs-webapp-6.0.24-83.el6_6.x86_64.rpm tomcat6-javadoc-6.0.24-83.el6_6.x86_64.rpm tomcat6-webapps-6.0.24-83.el6_6.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2014-0227 https://access.redhat.com/security/updates/classification/#moderate https://tomcat.apache.org/security-6.html#Fixed_in_Apache_Tomcat_6.0.43 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2015 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iD8DBQFVUmLIXlSAg2UNWIIRAt88AJwJq6Ag5AspNli+CUC0yZwWGPbvdACeMsrA C4/RY1qgnY7waDuBnQ2BEuM=/G33 -----END PGP SIGNATURE----- -- Enterprise-watch-list mailing list
Updated kernel packages that fix one security issue and one bug are now available for Red Hat Enterprise Linux 4.7 Extended Update Support. The Red Hat Security Response Team has rated this update as having [More...]. ==================================================================== Red Hat Security Advisory Synopsis: Important: kernel security and bug fix update Advisory ID: RHSA-2010:0342-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2010:0342.html Issue date: 2010-04-06 CVE Names: CVE-2010-0008 ==================================================================== 1. Summary: Updated kernel packages that fix one security issue and one bug are now available for Red Hat Enterprise Linux 4.7 Extended Update Support. The Red Hat Security Response Team has rated this update as having important security impact. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available from the CVE link in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AS version 4.7.z - i386, ia64, noarch, ppc, s390, s390x, x86_64 Red Hat Enterprise Linux ES version 4.7.z - i386, ia64, noarch, x86_64 3. Description: The kernel packages contain the Linux kernel, the core of any Linux operating system. This update fixes the following security issue: * a flaw was found in the sctp_rcv_ootb() function in the Linux kernel Stream Control Transmission Protocol (SCTP) implementation. A remote attacker could send a specially-crafted SCTP packet to a target system, resulting in a denial of service. (CVE-2010-0008, Important) This update also fixes the following bug: * the fix for CVE-2009-4538 provided by RHSA-2010:0111 introduced a regression, preventing Wake on LAN (WoL) working for network devices using the Intel PRO/1000 Linux driver, e1000e. Attempting to configure WoL for such devices resulted in the following error, even when configuringvalid options: "Cannot set new wake-on-lan settings: Operation not supported not setting wol" This update resolves this regression, and WoL now works as expected for network devices using the e1000e driver. (BZ#565495) Users should upgrade to these updated packages, which contain backported patches to correct these issues. The system must be rebooted for this update to take effect. 4. Solution: Before applying this update, make sure all previously-released errata relevant to your system have been applied. This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at 5. Bugs fixed (http://bugzilla.redhat.com/): 555658 - CVE-2010-0008 kernel: sctp remote denial of service 565495 - e1000e: wol is broken in kernel 2.6.9-89.19 [rhel-4.7.z] 6. Package List: Red Hat Enterprise Linux AS version4.7.z: Source: kernel-2.6.9-78.0.30.EL.src.rpm kernel-2.6.9-78.0.30.EL.src.rpm i386: kernel-2.6.9-78.0.30.EL.i686.rpm kernel-2.6.9-78.0.30.EL.i686.rpm kernel-debuginfo-2.6.9-78.0.30.EL.i686.rpm kernel-debuginfo-2.6.9-78.0.30.EL.i686.rpm kernel-devel-2.6.9-78.0.30.EL.i686.rpm kernel-devel-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-devel-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-devel-2.6.9-78.0.30.EL.i686.rpm kernel-smp-2.6.9-78.0.30.EL.i686.rpm kernel-smp-2.6.9-78.0.30.EL.i686.rpm kernel-smp-devel-2.6.9-78.0.30.EL.i686.rpm kernel-smp-devel-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.i686.rpm ia64: kernel-2.6.9-78.0.30.EL.ia64.rpm kernel-2.6.9-78.0.30.EL.ia64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ia64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ia64.rpm kernel-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ia64.rpm noarch: kernel-doc-2.6.9-78.0.30.EL.noarch.rpm kernel-doc-2.6.9-78.0.30.EL.noarch.rpm ppc: kernel-2.6.9-78.0.30.EL.ppc64.rpm kernel-2.6.9-78.0.30.EL.ppc64.rpm kernel-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ppc64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ppc64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-devel-2.6.9-78.0.30.EL.ppc64.rpm kernel-devel-2.6.9-78.0.30.EL.ppc64.rpm kernel-devel-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-devel-2.6.9-78.0.30.EL.ppc64iseries.rpm kernel-largesmp-2.6.9-78.0.30.EL.ppc64.rpm kernel-largesmp-2.6.9-78.0.30.EL.ppc64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ppc64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ppc64.rpm s390: kernel-2.6.9-78.0.30.EL.s390.rpm kernel-2.6.9-78.0.30.EL.s390.rpm kernel-debuginfo-2.6.9-78.0.30.EL.s390.rpm kernel-debuginfo-2.6.9-78.0.30.EL.s390.rpm kernel-devel-2.6.9-78.0.30.EL.s390.rpm kernel-devel-2.6.9-78.0.30.EL.s390.rpm s390x: kernel-2.6.9-78.0.30.EL.s390x.rpm kernel-2.6.9-78.0.30.EL.s390x.rpm kernel-debuginfo-2.6.9-78.0.30.EL.s390x.rpm kernel-debuginfo-2.6.9-78.0.30.EL.s390x.rpm kernel-devel-2.6.9-78.0.30.EL.s390x.rpm kernel-devel-2.6.9-78.0.30.EL.s390x.rpm x86_64: kernel-2.6.9-78.0.30.EL.x86_64.rpm kernel-2.6.9-78.0.30.EL.x86_64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.x86_64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.x86_64.rpm kernel-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.x86_64.rpm Red Hat Enterprise Linux ES version4.7.z: Source: kernel-2.6.9-78.0.30.EL.src.rpm kernel-2.6.9-78.0.30.EL.src.rpm i386: kernel-2.6.9-78.0.30.EL.i686.rpm kernel-2.6.9-78.0.30.EL.i686.rpm kernel-debuginfo-2.6.9-78.0.30.EL.i686.rpm kernel-debuginfo-2.6.9-78.0.30.EL.i686.rpm kernel-devel-2.6.9-78.0.30.EL.i686.rpm kernel-devel-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-devel-2.6.9-78.0.30.EL.i686.rpm kernel-hugemem-devel-2.6.9-78.0.30.EL.i686.rpm kernel-smp-2.6.9-78.0.30.EL.i686.rpm kernel-smp-2.6.9-78.0.30.EL.i686.rpm kernel-smp-devel-2.6.9-78.0.30.EL.i686.rpm kernel-smp-devel-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.i686.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.i686.rpm ia64: kernel-2.6.9-78.0.30.EL.ia64.rpm kernel-2.6.9-78.0.30.EL.ia64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ia64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.ia64.rpm kernel-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ia64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.ia64.rpm noarch: kernel-doc-2.6.9-78.0.30.EL.noarch.rpm kernel-doc-2.6.9-78.0.30.EL.noarch.rpm x86_64: kernel-2.6.9-78.0.30.EL.x86_64.rpm kernel-2.6.9-78.0.30.EL.x86_64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.x86_64.rpm kernel-debuginfo-2.6.9-78.0.30.EL.x86_64.rpm kernel-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-largesmp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-smp-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.x86_64.rpm kernel-xenU-devel-2.6.9-78.0.30.EL.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: https://access.redhat.com/security/cve/CVE-2010-0008 https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2010 Red Hat, Inc. . The latest kernel security update for CentOS enhances system reliability and protects against denial-of-service vulnerabilities.. Red Hat Linux Security, Kernel Update Advisory, DoS Fix, Important Patch. . Severity: Important. LinuxSecurity.com Team
Important: kernel security and bug fix update. Date: Wed, 25 Jun 2008 17:03:26 -0500 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for kernel on SL4.x i386/x86_64 Comments: To: "
Moderate: xen/libvirt security & bug update. Date: Thu, 6 Dec 2007 10:35:35 -0600 Reply-To: Troy Dawson Sender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for xen/libvirt on SL5.0 i386/x86_64 Comments: To: "
Low: w3c-libwww security and bug fix update. Date: Wed, 9 May 2007 15:15:09 -0500 Reply-To: Connie Sieh Sender: Security Errata for Scientific Linux From: Connie Sieh Subject: Security ERRATA for SL4 w3c-libwww i386/x86_64 Comments: To: scientific Synopsis: Low: w3c-libwww security and bug fix update Issue date: 2007-05-01 CVE Names: CVE-2005-3183 Several buffer overflow flaws in w3c-libwww were found. If a client application that uses w3c-libwww connected to a malicious HTTP server, it could trigger an out of bounds memory access, causing the client application to crash (CVE-2005-3183). SRPMS: w3c-libwww-5.4.0-10.1.RHEL4.2.src.rpm i386: w3c-libwww-5.4.0-10.1.RHEL4.2.i386.rpm w3c-libwww-apps-5.4.0-10.1.RHEL4.2.i386.rpm w3c-libwww-devel-5.4.0-10.1.RHEL4.2.i386.rpm x86_64: w3c-libwww-5.4.0-10.1.RHEL4.2.i386.rpm w3c-libwww-5.4.0-10.1.RHEL4.2.x86_64.rpm w3c-libwww-apps-5.4.0-10.1.RHEL4.2.x86_64.rpm w3c-libwww-devel-5.4.0-10.1.RHEL4.2.x86_64.rpm -Connie Sieh -Troy Dawson . The recent update for w3c-libwww on Scientific Linux fixes low-severity security issues and minor bugs, enhancing user data integrity and stability. w3c-libwww, Security Advisory, Scientific Linux, Bug Fix, Buffer Overflow. . Severity: Low. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.