An update for postgresql-jdbc is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: postgresql-jdbc security update Advisory ID: RHSA-2020:3285-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2020:3285 Issue date: 2020-08-03 CVE Names: CVE-2020-13692 ==================================================================== 1. Summary: An update for postgresql-jdbc is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Client (v. 7) - noarch Red Hat Enterprise Linux Client Optional (v. 7) - noarch Red Hat Enterprise Linux ComputeNode (v. 7) - noarch Red Hat Enterprise Linux ComputeNode Optional (v. 7) - noarch Red Hat Enterprise Linux Server (v. 7) - noarch Red Hat Enterprise Linux Server Optional (v. 7) - noarch Red Hat Enterprise Linux Workstation (v. 7) - noarch Red Hat Enterprise Linux Workstation Optional (v. 7) - noarch 3. Description: PostgreSQL is an advanced object-relational database management system. The postgresql-jdbc package includes the .jar files needed for Java programs to access a PostgreSQL database. Security Fix(es): * postgresql-jdbc: XML external entity (XXE) vulnerability in PgSQLXML (CVE-2020-13692) This update introduces a backwards incompatible change required to resolve this issue. Refer to the Red Hat Knowledgebase article 5266441 linked to in theReferences section for information on how to re-enable the old insecure behavior. For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1852985 - CVE-2020-13692 postgresql-jdbc: XML external entity (XXE) vulnerability in PgSQLXML 6. Package List: Red Hat Enterprise Linux Client (v. 7): Source: postgresql-jdbc-9.2.1002-8.el7_8.src.rpm noarch: postgresql-jdbc-9.2.1002-8.el7_8.noarch.rpm Red Hat Enterprise Linux Client Optional (v. 7): noarch: postgresql-jdbc-javadoc-9.2.1002-8.el7_8.noarch.rpm Red Hat Enterprise Linux ComputeNode (v. 7): Source: postgresql-jdbc-9.2.1002-8.el7_8.src.rpm noarch: postgresql-jdbc-9.2.1002-8.el7_8.noarch.rpm Red Hat Enterprise Linux ComputeNode Optional (v. 7): noarch: postgresql-jdbc-javadoc-9.2.1002-8.el7_8.noarch.rpm Red Hat Enterprise Linux Server (v. 7): Source: postgresql-jdbc-9.2.1002-8.el7_8.src.rpm noarch: postgresql-jdbc-9.2.1002-8.el7_8.noarch.rpm Red Hat Enterprise Linux Server Optional (v. 7): noarch: postgresql-jdbc-javadoc-9.2.1002-8.el7_8.noarch.rpm Red Hat Enterprise Linux Workstation (v. 7): Source: postgresql-jdbc-9.2.1002-8.el7_8.src.rpm noarch: postgresql-jdbc-9.2.1002-8.el7_8.noarch.rpm Red Hat Enterprise Linux Workstation Optional (v. 7): noarch: postgresql-jdbc-javadoc-9.2.1002-8.el7_8.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2020-13692 https://access.redhat.com/security/updates/classification/#important https://access.redhat.com/articles/5266441 8. Contact: The Red Hat security contact is . Morecontact details at https://access.redhat.com/security/team/contact/ Copyright 2020 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBXyhF79zjgjWX9erEAQizpQ/8DyPGzVKS7Jqppl2onyejfmSdea44xfwP AZxG9K9l1n3tzO3K8DiO/bgOck+CTPUWPpdowJdEsLw3FT6Q51Sc2pIcs3xymn/q 9r7k46EV8fSN0Ub48V8s5rsjY6LzXZO8K05vvYtEa6mfA2iMI9Ffu3N2cJYs1Oik lgPlGmRCqHrVmW5pk2m+6aDJiMliKxOGg4amvjGi8CjZjOHXB0Rf5t6l30reFNAv fYc/BKXB2IDX8AZZYr5d/QwMbsa7TuWZU0j6lyaLVD4PRecbIM1HcoZdXVuhJ7+m hhZRr5hz8NFeWXK1OAdpUPfAdS/ZKJahttqqnt0gLUw5m+04DY7ko3RYsfoaskNr /Qtel5gklf2/Xsguy8N+4i3GSGGg+Vm4hWwtYaZ5vUMzqj6D97T+qGP8+H4Gery3 DzONStDG+XfeaeKOtnHVS3LxL4vYpDsni4vwX1IjxJeCxRxK6duIGNS8bi8m5JKG qC44s8z3CAHgSukrOnRKEWgJ56d04otgB2G7WZ4VGDMQIsT0Tao3S4vhtKq+3HZ4 rOCsryWE8KXS4Gz/2MyETIsn7aI9ALxb+4uMLZ1GyF/iOCqiqTOJLT0GnbK7TQsv DLrtYhcSRke8S88t54m2nwW+jkFXWdKjBrg/JvJzJv8/P7OVM8pqZhqbHfT5vMXD ClAuLK4qExE=u73N -----END PGP SIGNATURE----- -- RHSA-announce mailing list
Updated sqlite3 packages fix security vulnerabilities: An out of bounds write flaw (CVE-2019-13734), insufficient data validation flaw (CVE-2019-13750), uninitialized use flaw (CVE-2019-13751), and out of bounds read flaws (CVE-2019-13752, CVE-2019-13753) in SQLite before 3.31.0. . MGASA-2020-0070 - Updated sqlite3 packages fix security vulnerabilities Publication date: 30 Jan 2020 URL: https://advisories.mageia.org/MGASA-2020-0070.html Type: security Affected Mageia releases: 7 CVE: CVE-2019-13734, CVE-2019-13750, CVE-2019-13751, CVE-2019-13752, CVE-2019-13753, CVE-2019-16168, CVE-2019-19242, CVE-2019-19244, CVE-2019-19880 Updated sqlite3 packages fix security vulnerabilities: An out of bounds write flaw (CVE-2019-13734), insufficient data validation flaw (CVE-2019-13750), uninitialized use flaw (CVE-2019-13751), and out of bounds read flaws (CVE-2019-13752, CVE-2019-13753) in SQLite before 3.31.0. It was discovered that SQLite incorrectly handled certain schemas. An attacker could possibly use this issue to cause a denial of service (CVE-2019-16168). It was discovered that SQLite incorrectly handled certain schemas. An attacker could possibly use this issue to mishandles some expressions (CVE-2019-19242). It was discovered that SQLite incorrectly handled certain queries. An attacker could possibly use this issue to execute arbitrary code (CVE-2019-19244). exprListAppendList in window.c in SQLite 3.30.1 allows attackers to trigger an invalid pointer dereference because constant integer values in ORDER BY clauses of window definitions are mishandled (CVE-2019-19880). For other changes in this update, see the referenced releaaselogs. References: - https://bugs.mageia.org/show_bug.cgi?id=26104 - https://www.sqlite.org/releaselog/3_29_0.html - https://www.sqlite.org/releaselog/3_30_0.html - https://www.sqlite.org/releaselog/3_30_1.html - https://www.sqlite.org/releaselog/3_31_0.html - https://www.sqlite.org/releaselog/3_31_1.html -https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html - https://ubuntu.com/security/notices/USN-4205-1 - https://www.cve.org/CVERecord?id=CVE-2019-13734 - https://www.cve.org/CVERecord?id=CVE-2019-13750 - https://www.cve.org/CVERecord?id=CVE-2019-13751 - https://www.cve.org/CVERecord?id=CVE-2019-13752 - https://www.cve.org/CVERecord?id=CVE-2019-13753 - https://www.cve.org/CVERecord?id=CVE-2019-16168 - https://www.cve.org/CVERecord?id=CVE-2019-19242 - https://www.cve.org/CVERecord?id=CVE-2019-19244 - https://www.cve.org/CVERecord?id=CVE-2019-19880 SRPMS: - 7/core/sqlite3-3.31.1-1.mga7 . Revised sqlite3 packages tackle security threats such as arbitrary code execution and service disruption vulnerabilities.. SQLite Security Issues,Mageia Vulnerability Update,Security Patches for SQLite,SQLite 3 Security. . LinuxSecurity.com Team
Rod Widdowson of Steading System Software LLP discovered a coding error in the "Dynamic" metadata plugin of the Shibboleth Service Provider, causing the plugin to fail configuring itself with the filters provided and omitting whatever checks they are intended to perform. . Hash: SHA512 Package : shibboleth-sp2 Version : 2.4.3+dfsg-5+deb7u2 CVE ID : CVE-2017-16852 Debian Bug : 881857 Rod Widdowson of Steading System Software LLP discovered a coding error in the "Dynamic" metadata plugin of the Shibboleth Service Provider, causing the plugin to fail configuring itself with the filters provided and omitting whatever checks they are intended to perform. For Debian 7 "Wheezy", these problems have been fixed in version 2.4.3+dfsg-5+deb7u2. We recommend that you upgrade your shibboleth-sp2 packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . An important security patch fixes a vulnerability in the Shibboleth Service Provider for Debian. Update to protect your system.. Debian LTS, Shibboleth SP2, Security Update, Plugin Fix, Critical Error. . Severity: Critical. LinuxSecurity.com Team
Rod Widdowson of Steading System Software LLP discovered a coding error in the OpenSAML library, causing the DynamicMetadataProvider class to fail configuring itself with the filters provided and omitting whatever checks they are intended to perform. . Hash: SHA512 Package : opensaml2 Version : 2.4.3-4+deb7u2 CVE ID : CVE-2017-16853 Debian Bug : 881856 Rod Widdowson of Steading System Software LLP discovered a coding error in the OpenSAML library, causing the DynamicMetadataProvider class to fail configuring itself with the filters provided and omitting whatever checks they are intended to perform. For Debian 7 "Wheezy", these problems have been fixed in version 2.4.3-4+deb7u2. We recommend that you upgrade your opensaml2 packages. Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . The opensaml2 package for Debian 7 has fixed an issue with the OpenSAML library. Upgrading is advised to boost security and avoid configuration issues. OpenSAML, Debian LTS, security update, software vulnerability, coding issue. . Severity: Important. LinuxSecurity.com Team
Rod Widdowson of Steading System Software LLP discovered a coding error in the OpenSAML library, causing the DynamicMetadataProvider class to fail configuring itself with the filters provided and omitting whatever checks they are intended to perform. . - ------------------------------------------------------------------------- Debian Security Advisory DSA-4039-1
Rod Widdowson of Steading System Software LLP discovered a coding error in the "Dynamic" metadata plugin of the Shibboleth Service Provider, causing the plugin to fail configuring itself with the filters provided and omitting whatever checks they are intended to perform. . - ------------------------------------------------------------------------- Debian Security Advisory DSA-4038-1
Updated php packages that fix one security issue are now available for Red Hat Enterprise Linux 5.3 Long Life, and Red Hat Enterprise Linux 5.6, 6.2 and 6.3 Extended Update Support. The Red Hat Security Response Team has rated this update as having critical. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ==================================================================== Red Hat Security Advisory Synopsis: Critical: php security update Advisory ID: RHSA-2013:1061-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2013:1061.html Issue date: 2013-07-15 CVE Names: CVE-2013-4113 ==================================================================== 1. Summary: Updated php packages that fix one security issue are now available for Red Hat Enterprise Linux 5.3 Long Life, and Red Hat Enterprise Linux 5.6, 6.2 and 6.3 Extended Update Support. The Red Hat Security Response Team has rated this update as having critical security impact. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available from the CVE link in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux EUS (v. 5.6 server) - i386, ia64, ppc, s390x, x86_64 Red Hat Enterprise Linux Long Life (v. 5.3 server) - i386, ia64, x86_64 Red Hat Enterprise Linux Server EUS (v. 6.2) - i386, ppc64, s390x, x86_64 Red Hat Enterprise Linux Server EUS (v. 6.3) - i386, ppc64, s390x, x86_64 Red Hat Enterprise Linux Server Optional EUS (v. 6.2) - i386, ppc64, s390x, x86_64 Red Hat Enterprise Linux Server Optional EUS (v. 6.3) - i386, ppc64, s390x, x86_64 3. Description: PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server. A buffer overflow flaw was found in the way PHP parsed deeply nested XML documents. If a PHP application used the xml_parse_into_struct() function to parse untrusted XML content, an attacker able to supply specially-crafted XML could usethis flaw to crash the application or, possibly, execute arbitrary code with the privileges of the user running the PHP interpreter. (CVE-2013-4113) All php users should upgrade to these updated packages, which contain a backported patch to resolve this issue. After installing the updated packages, the httpd daemon must be restarted for the update to take effect. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at https://access.redhat.com/site/articles/11258 5. Bugs fixed (http://bugzilla.redhat.com/): 983689 - CVE-2013-4113 php: xml_parse_into_struct buffer overflow when parsing deeply nested XML 6. Package List: Red Hat Enterprise Linux Long Life (v. 5.3server): Source: php-5.1.6-23.4.el5_3.src.rpm i386: php-5.1.6-23.4.el5_3.i386.rpm php-bcmath-5.1.6-23.4.el5_3.i386.rpm php-cli-5.1.6-23.4.el5_3.i386.rpm php-common-5.1.6-23.4.el5_3.i386.rpm php-dba-5.1.6-23.4.el5_3.i386.rpm php-debuginfo-5.1.6-23.4.el5_3.i386.rpm php-devel-5.1.6-23.4.el5_3.i386.rpm php-gd-5.1.6-23.4.el5_3.i386.rpm php-imap-5.1.6-23.4.el5_3.i386.rpm php-ldap-5.1.6-23.4.el5_3.i386.rpm php-mbstring-5.1.6-23.4.el5_3.i386.rpm php-mysql-5.1.6-23.4.el5_3.i386.rpm php-ncurses-5.1.6-23.4.el5_3.i386.rpm php-odbc-5.1.6-23.4.el5_3.i386.rpm php-pdo-5.1.6-23.4.el5_3.i386.rpm php-pgsql-5.1.6-23.4.el5_3.i386.rpm php-snmp-5.1.6-23.4.el5_3.i386.rpm php-soap-5.1.6-23.4.el5_3.i386.rpm php-xml-5.1.6-23.4.el5_3.i386.rpm php-xmlrpc-5.1.6-23.4.el5_3.i386.rpm ia64: php-5.1.6-23.4.el5_3.ia64.rpm php-bcmath-5.1.6-23.4.el5_3.ia64.rpm php-cli-5.1.6-23.4.el5_3.ia64.rpm php-common-5.1.6-23.4.el5_3.ia64.rpm php-dba-5.1.6-23.4.el5_3.ia64.rpm php-debuginfo-5.1.6-23.4.el5_3.ia64.rpm php-devel-5.1.6-23.4.el5_3.ia64.rpm php-gd-5.1.6-23.4.el5_3.ia64.rpm php-imap-5.1.6-23.4.el5_3.ia64.rpm php-ldap-5.1.6-23.4.el5_3.ia64.rpm php-mbstring-5.1.6-23.4.el5_3.ia64.rpm php-mysql-5.1.6-23.4.el5_3.ia64.rpm php-ncurses-5.1.6-23.4.el5_3.ia64.rpm php-odbc-5.1.6-23.4.el5_3.ia64.rpm php-pdo-5.1.6-23.4.el5_3.ia64.rpm php-pgsql-5.1.6-23.4.el5_3.ia64.rpm php-snmp-5.1.6-23.4.el5_3.ia64.rpm php-soap-5.1.6-23.4.el5_3.ia64.rpm php-xml-5.1.6-23.4.el5_3.ia64.rpm php-xmlrpc-5.1.6-23.4.el5_3.ia64.rpm x86_64: php-5.1.6-23.4.el5_3.x86_64.rpm php-bcmath-5.1.6-23.4.el5_3.x86_64.rpm php-cli-5.1.6-23.4.el5_3.x86_64.rpm php-common-5.1.6-23.4.el5_3.x86_64.rpm php-dba-5.1.6-23.4.el5_3.x86_64.rpm php-debuginfo-5.1.6-23.4.el5_3.x86_64.rpm php-devel-5.1.6-23.4.el5_3.x86_64.rpm php-gd-5.1.6-23.4.el5_3.x86_64.rpm php-imap-5.1.6-23.4.el5_3.x86_64.rpm php-ldap-5.1.6-23.4.el5_3.x86_64.rpm php-mbstring-5.1.6-23.4.el5_3.x86_64.rpm php-mysql-5.1.6-23.4.el5_3.x86_64.rpm php-ncurses-5.1.6-23.4.el5_3.x86_64.rpm php-odbc-5.1.6-23.4.el5_3.x86_64.rpm php-pdo-5.1.6-23.4.el5_3.x86_64.rpm php-pgsql-5.1.6-23.4.el5_3.x86_64.rpm php-snmp-5.1.6-23.4.el5_3.x86_64.rpm php-soap-5.1.6-23.4.el5_3.x86_64.rpm php-xml-5.1.6-23.4.el5_3.x86_64.rpm php-xmlrpc-5.1.6-23.4.el5_3.x86_64.rpm Red Hat Enterprise Linux EUS (v. 5.6server): Source: php-5.1.6-27.el5_6.5.src.rpm i386: php-5.1.6-27.el5_6.5.i386.rpm php-bcmath-5.1.6-27.el5_6.5.i386.rpm php-cli-5.1.6-27.el5_6.5.i386.rpm php-common-5.1.6-27.el5_6.5.i386.rpm php-dba-5.1.6-27.el5_6.5.i386.rpm php-debuginfo-5.1.6-27.el5_6.5.i386.rpm php-devel-5.1.6-27.el5_6.5.i386.rpm php-gd-5.1.6-27.el5_6.5.i386.rpm php-imap-5.1.6-27.el5_6.5.i386.rpm php-ldap-5.1.6-27.el5_6.5.i386.rpm php-mbstring-5.1.6-27.el5_6.5.i386.rpm php-mysql-5.1.6-27.el5_6.5.i386.rpm php-ncurses-5.1.6-27.el5_6.5.i386.rpm php-odbc-5.1.6-27.el5_6.5.i386.rpm php-pdo-5.1.6-27.el5_6.5.i386.rpm php-pgsql-5.1.6-27.el5_6.5.i386.rpm php-snmp-5.1.6-27.el5_6.5.i386.rpm php-soap-5.1.6-27.el5_6.5.i386.rpm php-xml-5.1.6-27.el5_6.5.i386.rpm php-xmlrpc-5.1.6-27.el5_6.5.i386.rpm ia64: php-5.1.6-27.el5_6.5.ia64.rpm php-bcmath-5.1.6-27.el5_6.5.ia64.rpm php-cli-5.1.6-27.el5_6.5.ia64.rpm php-common-5.1.6-27.el5_6.5.ia64.rpm php-dba-5.1.6-27.el5_6.5.ia64.rpm php-debuginfo-5.1.6-27.el5_6.5.ia64.rpm php-devel-5.1.6-27.el5_6.5.ia64.rpm php-gd-5.1.6-27.el5_6.5.ia64.rpm php-imap-5.1.6-27.el5_6.5.ia64.rpm php-ldap-5.1.6-27.el5_6.5.ia64.rpm php-mbstring-5.1.6-27.el5_6.5.ia64.rpm php-mysql-5.1.6-27.el5_6.5.ia64.rpm php-ncurses-5.1.6-27.el5_6.5.ia64.rpm php-odbc-5.1.6-27.el5_6.5.ia64.rpm php-pdo-5.1.6-27.el5_6.5.ia64.rpm php-pgsql-5.1.6-27.el5_6.5.ia64.rpm php-snmp-5.1.6-27.el5_6.5.ia64.rpm php-soap-5.1.6-27.el5_6.5.ia64.rpm php-xml-5.1.6-27.el5_6.5.ia64.rpm php-xmlrpc-5.1.6-27.el5_6.5.ia64.rpm ppc: php-5.1.6-27.el5_6.5.ppc.rpm php-bcmath-5.1.6-27.el5_6.5.ppc.rpm php-cli-5.1.6-27.el5_6.5.ppc.rpm php-common-5.1.6-27.el5_6.5.ppc.rpm php-dba-5.1.6-27.el5_6.5.ppc.rpm php-debuginfo-5.1.6-27.el5_6.5.ppc.rpm php-devel-5.1.6-27.el5_6.5.ppc.rpm php-gd-5.1.6-27.el5_6.5.ppc.rpm php-imap-5.1.6-27.el5_6.5.ppc.rpm php-ldap-5.1.6-27.el5_6.5.ppc.rpm php-mbstring-5.1.6-27.el5_6.5.ppc.rpm php-mysql-5.1.6-27.el5_6.5.ppc.rpm php-ncurses-5.1.6-27.el5_6.5.ppc.rpm php-odbc-5.1.6-27.el5_6.5.ppc.rpm php-pdo-5.1.6-27.el5_6.5.ppc.rpm php-pgsql-5.1.6-27.el5_6.5.ppc.rpm php-snmp-5.1.6-27.el5_6.5.ppc.rpm php-soap-5.1.6-27.el5_6.5.ppc.rpm php-xml-5.1.6-27.el5_6.5.ppc.rpm php-xmlrpc-5.1.6-27.el5_6.5.ppc.rpm s390x: php-5.1.6-27.el5_6.5.s390x.rpm php-bcmath-5.1.6-27.el5_6.5.s390x.rpm php-cli-5.1.6-27.el5_6.5.s390x.rpm php-common-5.1.6-27.el5_6.5.s390x.rpm php-dba-5.1.6-27.el5_6.5.s390x.rpm php-debuginfo-5.1.6-27.el5_6.5.s390x.rpm php-devel-5.1.6-27.el5_6.5.s390x.rpm php-gd-5.1.6-27.el5_6.5.s390x.rpm php-imap-5.1.6-27.el5_6.5.s390x.rpm php-ldap-5.1.6-27.el5_6.5.s390x.rpm php-mbstring-5.1.6-27.el5_6.5.s390x.rpm php-mysql-5.1.6-27.el5_6.5.s390x.rpm php-ncurses-5.1.6-27.el5_6.5.s390x.rpm php-odbc-5.1.6-27.el5_6.5.s390x.rpm php-pdo-5.1.6-27.el5_6.5.s390x.rpm php-pgsql-5.1.6-27.el5_6.5.s390x.rpm php-snmp-5.1.6-27.el5_6.5.s390x.rpm php-soap-5.1.6-27.el5_6.5.s390x.rpm php-xml-5.1.6-27.el5_6.5.s390x.rpm php-xmlrpc-5.1.6-27.el5_6.5.s390x.rpm x86_64: php-5.1.6-27.el5_6.5.x86_64.rpm php-bcmath-5.1.6-27.el5_6.5.x86_64.rpm php-cli-5.1.6-27.el5_6.5.x86_64.rpm php-common-5.1.6-27.el5_6.5.x86_64.rpm php-dba-5.1.6-27.el5_6.5.x86_64.rpm php-debuginfo-5.1.6-27.el5_6.5.x86_64.rpm php-devel-5.1.6-27.el5_6.5.x86_64.rpm php-gd-5.1.6-27.el5_6.5.x86_64.rpm php-imap-5.1.6-27.el5_6.5.x86_64.rpm php-ldap-5.1.6-27.el5_6.5.x86_64.rpm php-mbstring-5.1.6-27.el5_6.5.x86_64.rpm php-mysql-5.1.6-27.el5_6.5.x86_64.rpm php-ncurses-5.1.6-27.el5_6.5.x86_64.rpm php-odbc-5.1.6-27.el5_6.5.x86_64.rpm php-pdo-5.1.6-27.el5_6.5.x86_64.rpm php-pgsql-5.1.6-27.el5_6.5.x86_64.rpm php-snmp-5.1.6-27.el5_6.5.x86_64.rpm php-soap-5.1.6-27.el5_6.5.x86_64.rpm php-xml-5.1.6-27.el5_6.5.x86_64.rpm php-xmlrpc-5.1.6-27.el5_6.5.x86_64.rpm Red Hat Enterprise Linux Server EUS (v.6.2): Source: php-5.3.3-3.el6_2.10.src.rpm i386: php-5.3.3-3.el6_2.10.i686.rpm php-cli-5.3.3-3.el6_2.10.i686.rpm php-common-5.3.3-3.el6_2.10.i686.rpm php-debuginfo-5.3.3-3.el6_2.10.i686.rpm php-gd-5.3.3-3.el6_2.10.i686.rpm php-ldap-5.3.3-3.el6_2.10.i686.rpm php-mysql-5.3.3-3.el6_2.10.i686.rpm php-odbc-5.3.3-3.el6_2.10.i686.rpm php-pdo-5.3.3-3.el6_2.10.i686.rpm php-pgsql-5.3.3-3.el6_2.10.i686.rpm php-soap-5.3.3-3.el6_2.10.i686.rpm php-xml-5.3.3-3.el6_2.10.i686.rpm php-xmlrpc-5.3.3-3.el6_2.10.i686.rpm ppc64: php-5.3.3-3.el6_2.10.ppc64.rpm php-cli-5.3.3-3.el6_2.10.ppc64.rpm php-common-5.3.3-3.el6_2.10.ppc64.rpm php-debuginfo-5.3.3-3.el6_2.10.ppc64.rpm php-gd-5.3.3-3.el6_2.10.ppc64.rpm php-ldap-5.3.3-3.el6_2.10.ppc64.rpm php-mysql-5.3.3-3.el6_2.10.ppc64.rpm php-odbc-5.3.3-3.el6_2.10.ppc64.rpm php-pdo-5.3.3-3.el6_2.10.ppc64.rpm php-pgsql-5.3.3-3.el6_2.10.ppc64.rpm php-soap-5.3.3-3.el6_2.10.ppc64.rpm php-xml-5.3.3-3.el6_2.10.ppc64.rpm php-xmlrpc-5.3.3-3.el6_2.10.ppc64.rpm s390x: php-5.3.3-3.el6_2.10.s390x.rpm php-cli-5.3.3-3.el6_2.10.s390x.rpm php-common-5.3.3-3.el6_2.10.s390x.rpm php-debuginfo-5.3.3-3.el6_2.10.s390x.rpm php-gd-5.3.3-3.el6_2.10.s390x.rpm php-ldap-5.3.3-3.el6_2.10.s390x.rpm php-mysql-5.3.3-3.el6_2.10.s390x.rpm php-odbc-5.3.3-3.el6_2.10.s390x.rpm php-pdo-5.3.3-3.el6_2.10.s390x.rpm php-pgsql-5.3.3-3.el6_2.10.s390x.rpm php-soap-5.3.3-3.el6_2.10.s390x.rpm php-xml-5.3.3-3.el6_2.10.s390x.rpm php-xmlrpc-5.3.3-3.el6_2.10.s390x.rpm x86_64: php-5.3.3-3.el6_2.10.x86_64.rpm php-cli-5.3.3-3.el6_2.10.x86_64.rpm php-common-5.3.3-3.el6_2.10.x86_64.rpm php-debuginfo-5.3.3-3.el6_2.10.x86_64.rpm php-gd-5.3.3-3.el6_2.10.x86_64.rpm php-ldap-5.3.3-3.el6_2.10.x86_64.rpm php-mysql-5.3.3-3.el6_2.10.x86_64.rpm php-odbc-5.3.3-3.el6_2.10.x86_64.rpm php-pdo-5.3.3-3.el6_2.10.x86_64.rpm php-pgsql-5.3.3-3.el6_2.10.x86_64.rpm php-soap-5.3.3-3.el6_2.10.x86_64.rpm php-xml-5.3.3-3.el6_2.10.x86_64.rpm php-xmlrpc-5.3.3-3.el6_2.10.x86_64.rpm Red Hat Enterprise Linux Server EUS (v.6.3): Source: php-5.3.3-14.el6_3.1.src.rpm i386: php-5.3.3-14.el6_3.1.i686.rpm php-cli-5.3.3-14.el6_3.1.i686.rpm php-common-5.3.3-14.el6_3.1.i686.rpm php-debuginfo-5.3.3-14.el6_3.1.i686.rpm php-gd-5.3.3-14.el6_3.1.i686.rpm php-ldap-5.3.3-14.el6_3.1.i686.rpm php-mysql-5.3.3-14.el6_3.1.i686.rpm php-odbc-5.3.3-14.el6_3.1.i686.rpm php-pdo-5.3.3-14.el6_3.1.i686.rpm php-pgsql-5.3.3-14.el6_3.1.i686.rpm php-soap-5.3.3-14.el6_3.1.i686.rpm php-xml-5.3.3-14.el6_3.1.i686.rpm php-xmlrpc-5.3.3-14.el6_3.1.i686.rpm ppc64: php-5.3.3-14.el6_3.1.ppc64.rpm php-cli-5.3.3-14.el6_3.1.ppc64.rpm php-common-5.3.3-14.el6_3.1.ppc64.rpm php-debuginfo-5.3.3-14.el6_3.1.ppc64.rpm php-gd-5.3.3-14.el6_3.1.ppc64.rpm php-ldap-5.3.3-14.el6_3.1.ppc64.rpm php-mysql-5.3.3-14.el6_3.1.ppc64.rpm php-odbc-5.3.3-14.el6_3.1.ppc64.rpm php-pdo-5.3.3-14.el6_3.1.ppc64.rpm php-pgsql-5.3.3-14.el6_3.1.ppc64.rpm php-soap-5.3.3-14.el6_3.1.ppc64.rpm php-xml-5.3.3-14.el6_3.1.ppc64.rpm php-xmlrpc-5.3.3-14.el6_3.1.ppc64.rpm s390x: php-5.3.3-14.el6_3.1.s390x.rpm php-cli-5.3.3-14.el6_3.1.s390x.rpm php-common-5.3.3-14.el6_3.1.s390x.rpm php-debuginfo-5.3.3-14.el6_3.1.s390x.rpm php-gd-5.3.3-14.el6_3.1.s390x.rpm php-ldap-5.3.3-14.el6_3.1.s390x.rpm php-mysql-5.3.3-14.el6_3.1.s390x.rpm php-odbc-5.3.3-14.el6_3.1.s390x.rpm php-pdo-5.3.3-14.el6_3.1.s390x.rpm php-pgsql-5.3.3-14.el6_3.1.s390x.rpm php-soap-5.3.3-14.el6_3.1.s390x.rpm php-xml-5.3.3-14.el6_3.1.s390x.rpm php-xmlrpc-5.3.3-14.el6_3.1.s390x.rpm x86_64: php-5.3.3-14.el6_3.1.x86_64.rpm php-cli-5.3.3-14.el6_3.1.x86_64.rpm php-common-5.3.3-14.el6_3.1.x86_64.rpm php-debuginfo-5.3.3-14.el6_3.1.x86_64.rpm php-gd-5.3.3-14.el6_3.1.x86_64.rpm php-ldap-5.3.3-14.el6_3.1.x86_64.rpm php-mysql-5.3.3-14.el6_3.1.x86_64.rpm php-odbc-5.3.3-14.el6_3.1.x86_64.rpm php-pdo-5.3.3-14.el6_3.1.x86_64.rpm php-pgsql-5.3.3-14.el6_3.1.x86_64.rpm php-soap-5.3.3-14.el6_3.1.x86_64.rpm php-xml-5.3.3-14.el6_3.1.x86_64.rpm php-xmlrpc-5.3.3-14.el6_3.1.x86_64.rpm Red Hat Enterprise Linux Server Optional EUS (v.6.2): Source: php-5.3.3-3.el6_2.10.src.rpm i386: php-bcmath-5.3.3-3.el6_2.10.i686.rpm php-dba-5.3.3-3.el6_2.10.i686.rpm php-debuginfo-5.3.3-3.el6_2.10.i686.rpm php-devel-5.3.3-3.el6_2.10.i686.rpm php-embedded-5.3.3-3.el6_2.10.i686.rpm php-enchant-5.3.3-3.el6_2.10.i686.rpm php-imap-5.3.3-3.el6_2.10.i686.rpm php-intl-5.3.3-3.el6_2.10.i686.rpm php-mbstring-5.3.3-3.el6_2.10.i686.rpm php-process-5.3.3-3.el6_2.10.i686.rpm php-pspell-5.3.3-3.el6_2.10.i686.rpm php-recode-5.3.3-3.el6_2.10.i686.rpm php-snmp-5.3.3-3.el6_2.10.i686.rpm php-tidy-5.3.3-3.el6_2.10.i686.rpm php-zts-5.3.3-3.el6_2.10.i686.rpm ppc64: php-bcmath-5.3.3-3.el6_2.10.ppc64.rpm php-dba-5.3.3-3.el6_2.10.ppc64.rpm php-debuginfo-5.3.3-3.el6_2.10.ppc64.rpm php-devel-5.3.3-3.el6_2.10.ppc64.rpm php-embedded-5.3.3-3.el6_2.10.ppc64.rpm php-enchant-5.3.3-3.el6_2.10.ppc64.rpm php-imap-5.3.3-3.el6_2.10.ppc64.rpm php-intl-5.3.3-3.el6_2.10.ppc64.rpm php-mbstring-5.3.3-3.el6_2.10.ppc64.rpm php-process-5.3.3-3.el6_2.10.ppc64.rpm php-pspell-5.3.3-3.el6_2.10.ppc64.rpm php-recode-5.3.3-3.el6_2.10.ppc64.rpm php-snmp-5.3.3-3.el6_2.10.ppc64.rpm php-tidy-5.3.3-3.el6_2.10.ppc64.rpm php-zts-5.3.3-3.el6_2.10.ppc64.rpm s390x: php-bcmath-5.3.3-3.el6_2.10.s390x.rpm php-dba-5.3.3-3.el6_2.10.s390x.rpm php-debuginfo-5.3.3-3.el6_2.10.s390x.rpm php-devel-5.3.3-3.el6_2.10.s390x.rpm php-embedded-5.3.3-3.el6_2.10.s390x.rpm php-enchant-5.3.3-3.el6_2.10.s390x.rpm php-imap-5.3.3-3.el6_2.10.s390x.rpm php-intl-5.3.3-3.el6_2.10.s390x.rpm php-mbstring-5.3.3-3.el6_2.10.s390x.rpm php-process-5.3.3-3.el6_2.10.s390x.rpm php-pspell-5.3.3-3.el6_2.10.s390x.rpm php-recode-5.3.3-3.el6_2.10.s390x.rpm php-snmp-5.3.3-3.el6_2.10.s390x.rpm php-tidy-5.3.3-3.el6_2.10.s390x.rpm php-zts-5.3.3-3.el6_2.10.s390x.rpm x86_64: php-bcmath-5.3.3-3.el6_2.10.x86_64.rpm php-dba-5.3.3-3.el6_2.10.x86_64.rpm php-debuginfo-5.3.3-3.el6_2.10.x86_64.rpm php-devel-5.3.3-3.el6_2.10.x86_64.rpm php-embedded-5.3.3-3.el6_2.10.x86_64.rpm php-enchant-5.3.3-3.el6_2.10.x86_64.rpm php-imap-5.3.3-3.el6_2.10.x86_64.rpm php-intl-5.3.3-3.el6_2.10.x86_64.rpm php-mbstring-5.3.3-3.el6_2.10.x86_64.rpm php-process-5.3.3-3.el6_2.10.x86_64.rpm php-pspell-5.3.3-3.el6_2.10.x86_64.rpm php-recode-5.3.3-3.el6_2.10.x86_64.rpm php-snmp-5.3.3-3.el6_2.10.x86_64.rpm php-tidy-5.3.3-3.el6_2.10.x86_64.rpm php-zts-5.3.3-3.el6_2.10.x86_64.rpm Red Hat Enterprise Linux Server Optional EUS (v.6.3): Source: php-5.3.3-14.el6_3.1.src.rpm i386: php-bcmath-5.3.3-14.el6_3.1.i686.rpm php-dba-5.3.3-14.el6_3.1.i686.rpm php-debuginfo-5.3.3-14.el6_3.1.i686.rpm php-devel-5.3.3-14.el6_3.1.i686.rpm php-embedded-5.3.3-14.el6_3.1.i686.rpm php-enchant-5.3.3-14.el6_3.1.i686.rpm php-imap-5.3.3-14.el6_3.1.i686.rpm php-intl-5.3.3-14.el6_3.1.i686.rpm php-mbstring-5.3.3-14.el6_3.1.i686.rpm php-process-5.3.3-14.el6_3.1.i686.rpm php-pspell-5.3.3-14.el6_3.1.i686.rpm php-recode-5.3.3-14.el6_3.1.i686.rpm php-snmp-5.3.3-14.el6_3.1.i686.rpm php-tidy-5.3.3-14.el6_3.1.i686.rpm php-zts-5.3.3-14.el6_3.1.i686.rpm ppc64: php-bcmath-5.3.3-14.el6_3.1.ppc64.rpm php-dba-5.3.3-14.el6_3.1.ppc64.rpm php-debuginfo-5.3.3-14.el6_3.1.ppc64.rpm php-devel-5.3.3-14.el6_3.1.ppc64.rpm php-embedded-5.3.3-14.el6_3.1.ppc64.rpm php-enchant-5.3.3-14.el6_3.1.ppc64.rpm php-imap-5.3.3-14.el6_3.1.ppc64.rpm php-intl-5.3.3-14.el6_3.1.ppc64.rpm php-mbstring-5.3.3-14.el6_3.1.ppc64.rpm php-process-5.3.3-14.el6_3.1.ppc64.rpm php-pspell-5.3.3-14.el6_3.1.ppc64.rpm php-recode-5.3.3-14.el6_3.1.ppc64.rpm php-snmp-5.3.3-14.el6_3.1.ppc64.rpm php-tidy-5.3.3-14.el6_3.1.ppc64.rpm php-zts-5.3.3-14.el6_3.1.ppc64.rpm s390x: php-bcmath-5.3.3-14.el6_3.1.s390x.rpm php-dba-5.3.3-14.el6_3.1.s390x.rpm php-debuginfo-5.3.3-14.el6_3.1.s390x.rpm php-devel-5.3.3-14.el6_3.1.s390x.rpm php-embedded-5.3.3-14.el6_3.1.s390x.rpm php-enchant-5.3.3-14.el6_3.1.s390x.rpm php-imap-5.3.3-14.el6_3.1.s390x.rpm php-intl-5.3.3-14.el6_3.1.s390x.rpm php-mbstring-5.3.3-14.el6_3.1.s390x.rpm php-process-5.3.3-14.el6_3.1.s390x.rpm php-pspell-5.3.3-14.el6_3.1.s390x.rpm php-recode-5.3.3-14.el6_3.1.s390x.rpm php-snmp-5.3.3-14.el6_3.1.s390x.rpm php-tidy-5.3.3-14.el6_3.1.s390x.rpm php-zts-5.3.3-14.el6_3.1.s390x.rpm x86_64: php-bcmath-5.3.3-14.el6_3.1.x86_64.rpm php-dba-5.3.3-14.el6_3.1.x86_64.rpm php-debuginfo-5.3.3-14.el6_3.1.x86_64.rpm php-devel-5.3.3-14.el6_3.1.x86_64.rpm php-embedded-5.3.3-14.el6_3.1.x86_64.rpm php-enchant-5.3.3-14.el6_3.1.x86_64.rpm php-imap-5.3.3-14.el6_3.1.x86_64.rpm php-intl-5.3.3-14.el6_3.1.x86_64.rpm php-mbstring-5.3.3-14.el6_3.1.x86_64.rpm php-process-5.3.3-14.el6_3.1.x86_64.rpm php-pspell-5.3.3-14.el6_3.1.x86_64.rpm php-recode-5.3.3-14.el6_3.1.x86_64.rpm php-snmp-5.3.3-14.el6_3.1.x86_64.rpm php-tidy-5.3.3-14.el6_3.1.x86_64.rpm php-zts-5.3.3-14.el6_3.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/#package 7. References: https://access.redhat.com/security/cve/CVE-2013-4113 https://access.redhat.com/security/updates/classification/#critical 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2013 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.4 (GNU/Linux) iD8DBQFR5F8zXlSAg2UNWIIRAtJHAKCv++ycTaLuL6vfgSQ0TmhGUCvGqQCeO8aI dqDaCVC0arj3YDXQ4iBdzok=jVI3 -----END PGP SIGNATURE----- -- Enterprise-watch-list mailing list
Several vulnerabilities have been discovered in MySQL, a popular SQL database. The Common Vulnerabilities and Exposures Project identifies the following problems: CVE-2006-0903, CVE-2006-1516, CVE-2006-1517, CVE-2006-1518 . - --------------------------------------------------------------------------Debian Security Advisory DSA 1073-1
Get the latest Linux and open source security news straight to your inbox.