Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -4 articles for you...
98

Red Hat: RHSA-2021-4729:02 Moderate: devtoolset-11-annobin Security Fix

An update for devtoolset-11-annobin is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: devtoolset-11-annobin security update Advisory ID: RHSA-2021:4729-01 Product: Red Hat Software Collections Advisory URL: https://access.redhat.com/errata/RHSA-2021:4729 Issue date: 2021-11-18 CVE Names: CVE-2021-42574 ==================================================================== 1. Summary: An update for devtoolset-11-annobin is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Software Collections for Red Hat Enterprise Linux Server (v. 7) - noarch, ppc64, ppc64le, s390x, x86_64 Red Hat Software Collections for Red Hat Enterprise Linux Server EUS (v. 7.7) - noarch, ppc64, ppc64le, s390x, x86_64 Red Hat Software Collections for Red Hat Enterprise Linux Workstation (v. 7) - noarch, x86_64 3. Description: Annobin provides a compiler plugin to annotate and tools to examine compiled binary files. Security Fix(es): * Developer environment: Unicode's bidirectional (BiDi) override characterscan cause trojan source attacks (CVE-2021-42574) The following changes were introduced in annobin in order to facilitate detection of BiDi Unicode characters: This update of annobin adds a new annocheck test to detect the presence of multibyte characters in symbol names. For more details about the security issue(s), including the impact, aCVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 2005819 - CVE-2021-42574 Developer environment: Unicode's bidirectional (BiDi) override characters can cause trojan source attacks 6. Package List: Red Hat Software Collections for Red Hat Enterprise Linux Server (v. 7): Source: devtoolset-11-annobin-9.82-1.el7.1.src.rpm noarch: devtoolset-11-annobin-docs-9.82-1.el7.1.noarch.rpm ppc64: devtoolset-11-annobin-annocheck-9.82-1.el7.1.ppc64.rpm devtoolset-11-annobin-debuginfo-9.82-1.el7.1.ppc64.rpm devtoolset-11-annobin-plugin-gcc-9.82-1.el7.1.ppc64.rpm ppc64le: devtoolset-11-annobin-annocheck-9.82-1.el7.1.ppc64le.rpm devtoolset-11-annobin-debuginfo-9.82-1.el7.1.ppc64le.rpm devtoolset-11-annobin-plugin-gcc-9.82-1.el7.1.ppc64le.rpm s390x: devtoolset-11-annobin-annocheck-9.82-1.el7.1.s390x.rpm devtoolset-11-annobin-debuginfo-9.82-1.el7.1.s390x.rpm devtoolset-11-annobin-plugin-gcc-9.82-1.el7.1.s390x.rpm x86_64: devtoolset-11-annobin-annocheck-9.82-1.el7.1.x86_64.rpm devtoolset-11-annobin-debuginfo-9.82-1.el7.1.x86_64.rpm devtoolset-11-annobin-plugin-gcc-9.82-1.el7.1.x86_64.rpm Red Hat Software Collections for Red Hat Enterprise Linux Server EUS (v.7.7): Source: devtoolset-11-annobin-9.82-1.el7.1.src.rpm noarch: devtoolset-11-annobin-docs-9.82-1.el7.1.noarch.rpm ppc64: devtoolset-11-annobin-annocheck-9.82-1.el7.1.ppc64.rpm devtoolset-11-annobin-debuginfo-9.82-1.el7.1.ppc64.rpm devtoolset-11-annobin-plugin-gcc-9.82-1.el7.1.ppc64.rpm ppc64le: devtoolset-11-annobin-annocheck-9.82-1.el7.1.ppc64le.rpm devtoolset-11-annobin-debuginfo-9.82-1.el7.1.ppc64le.rpm devtoolset-11-annobin-plugin-gcc-9.82-1.el7.1.ppc64le.rpm s390x: devtoolset-11-annobin-annocheck-9.82-1.el7.1.s390x.rpm devtoolset-11-annobin-debuginfo-9.82-1.el7.1.s390x.rpm devtoolset-11-annobin-plugin-gcc-9.82-1.el7.1.s390x.rpm x86_64: devtoolset-11-annobin-annocheck-9.82-1.el7.1.x86_64.rpm devtoolset-11-annobin-debuginfo-9.82-1.el7.1.x86_64.rpm devtoolset-11-annobin-plugin-gcc-9.82-1.el7.1.x86_64.rpm Red Hat Software Collections for Red Hat Enterprise Linux Workstation (v. 7): Source: devtoolset-11-annobin-9.82-1.el7.1.src.rpm noarch: devtoolset-11-annobin-docs-9.82-1.el7.1.noarch.rpm x86_64: devtoolset-11-annobin-annocheck-9.82-1.el7.1.x86_64.rpm devtoolset-11-annobin-debuginfo-9.82-1.el7.1.x86_64.rpm devtoolset-11-annobin-plugin-gcc-9.82-1.el7.1.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2021-42574 https://access.redhat.com/security/updates/classification#moderate https://access.redhat.com/security/vulnerabilities/RHSB-2021-007 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2021 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBYZZmBNzjgjWX9erEAQh70A/9HG8OIuhA3BL1C+bG6+lX2bsIke99PApB lXL2fyRtB+/F+L0ak77WNxK8tImb9F6QFLFa241EiwBKeQ4sGy4es/tZ8b5L3ad8 9Tb34+W2OZ3qjyZG9ni5vNEopu4t/6URZ9EUwp4B4EEH55nhwibCS0XBPWXSn/mi YKdorAiWUjWh6emNbSuiTMfbXd2QMThIMisG/ZPmAZDR2+PsjErgWItHg1YmLbmU N0gTKqoYPQbHKqF5p4SgzMV8LJlfllR4y6do3vT7392QBlyqtBw1I+MvoRrot247 LADC3W8kHwuxzdYvFW/05QrTPbkFWIvQV5MOKHL4+vbS3/eDFvX1NqWXRTVouj1Z /StR8Obq1kagwV3K5bsFzPmBzc53Oejl7lp7KHJ+cVNgeabdYtVYWS5rAP+wFlrV kXRXwIdPSbxlLY5OU4LpVNZ+ZpGGZ82oL7+hV0WLp7CGNaHuRVlToMyEFo7sYIqK K0INIfN+bz5RO93VofbEBUP6AZO/NZLsEKeDiQNyq0WdFYOeI3o8JSC3Vhv38+vh Z13G0VCT0hQn96Yd0Fgv4vKUZYI3hDlb6mEupFTUVK+KAKyCrG5BBx7i7jTBXt4H tVTzHPuf2bMiPUeKEMyFLeMQkEPYDujoxMwaxIQhohPCO/i6xWpDP16EQn5H+UcD x5ZpMEpNVEE=LJM+ -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A patch has been released for devtoolset-11-annobin in Red Hat Software Collections to mitigate potential security vulnerabilities.. Devtoolset Annobin Update, Red Hat Security Advisory, Moderate Risk Issues. . LinuxSecurity.com Team

Calendar 2 Nov 18, 2021 Red Hat
98

Red Hat 7 Moderate: RHSA-2021-4039-01 Vulnerability in devtoolset-10-gcc

An update for devtoolset-10-gcc is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: devtoolset-10-gcc security update Advisory ID: RHSA-2021:4039-01 Product: Red Hat Software Collections Advisory URL: https://access.redhat.com/errata/RHSA-2021:4039 Issue date: 2021-11-01 CVE Names: CVE-2021-42574 ==================================================================== 1. Summary: An update for devtoolset-10-gcc is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Software Collections for Red Hat Enterprise Linux Server (v. 7) - ppc64, ppc64le, s390x, x86_64 Red Hat Software Collections for Red Hat Enterprise Linux Server EUS (v. 7.7) - ppc64, ppc64le, s390x, x86_64 Red Hat Software Collections for Red Hat Enterprise Linux Workstation (v. 7) - x86_64 3. Description: The GNU Compiler Collection (GCC) is a portable compiler suite with support for various programming languages, including C, C++, and Fortran. The devtoolset-10-gcc packages provide the Red Hat Developer Toolset 10 version of GCC, as well as related libraries. Security Fix(es): * Developer environment: Unicode's bidirectional (BiDi) override characterscan cause trojan source attacks (CVE-2021-42574) The following changes were introduced in binutils in order to facilitate detection of BiDi Unicode characters: This gcc update implements-Wbidirectional=[none|unpaired|any] to warn about possibly dangerous bidirectional characters. There are three levels of warning supported by GCC: "-Wbidirectional=unpaired", which warns about improperly terminated bidi contexts. (This is the default) "-Wbidirectional=none", turns the warning off. "-Wbidirectional=any" warns about any use of bidirectional characters. For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 2005819 - CVE-2021-42574 Developer environment: Unicode's bidirectional (BiDi) override characters can cause trojan source attacks 6. Package List: Red Hat Software Collections for Red Hat Enterprise Linux Server (v.7): Source: devtoolset-10-gcc-10.2.1-11.2.el7.src.rpm ppc64: devtoolset-10-gcc-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-gcc-c++-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-gcc-gdb-plugin-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-gcc-gfortran-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-gcc-plugin-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libgccjit-docs-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-liblsan-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libquadmath-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libstdc++-docs-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libtsan-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.ppc64.rpm libasan6-10.2.1-11.2.el7.ppc64.rpm liblsan-10.2.1-11.2.el7.ppc64.rpm libtsan-10.2.1-11.2.el7.ppc64.rpm libubsan1-10.2.1-11.2.el7.ppc64.rpm ppc64le: devtoolset-10-gcc-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-gcc-c++-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-gcc-gdb-plugin-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-gcc-gfortran-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-gcc-plugin-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libgccjit-docs-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-liblsan-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libquadmath-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libstdc++-docs-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libtsan-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.ppc64le.rpm libasan6-10.2.1-11.2.el7.ppc64le.rpm liblsan-10.2.1-11.2.el7.ppc64le.rpm libtsan-10.2.1-11.2.el7.ppc64le.rpm libubsan1-10.2.1-11.2.el7.ppc64le.rpm s390x: devtoolset-10-gcc-10.2.1-11.2.el7.s390x.rpm devtoolset-10-gcc-c++-10.2.1-11.2.el7.s390x.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.s390x.rpm devtoolset-10-gcc-gdb-plugin-10.2.1-11.2.el7.s390x.rpm devtoolset-10-gcc-gfortran-10.2.1-11.2.el7.s390x.rpm devtoolset-10-gcc-plugin-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libgccjit-docs-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libstdc++-docs-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.s390x.rpm libasan6-10.2.1-11.2.el7.s390x.rpm libubsan1-10.2.1-11.2.el7.s390x.rpm x86_64: devtoolset-10-gcc-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-c++-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.i686.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-gdb-plugin-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-gfortran-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-plugin-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.i686.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libgccjit-docs-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-liblsan-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libquadmath-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libquadmath-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libstdc++-docs-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libtsan-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.x86_64.rpm libasan6-10.2.1-11.2.el7.i686.rpm libasan6-10.2.1-11.2.el7.x86_64.rpm liblsan-10.2.1-11.2.el7.x86_64.rpm libtsan-10.2.1-11.2.el7.x86_64.rpm libubsan1-10.2.1-11.2.el7.i686.rpm libubsan1-10.2.1-11.2.el7.x86_64.rpm Red Hat Software Collections for Red Hat Enterprise Linux Server EUS (v.7.7): Source: devtoolset-10-gcc-10.2.1-11.2.el7.src.rpm ppc64: devtoolset-10-gcc-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-gcc-c++-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-gcc-gdb-plugin-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-gcc-gfortran-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-gcc-plugin-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libgccjit-docs-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-liblsan-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libquadmath-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libstdc++-docs-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libtsan-devel-10.2.1-11.2.el7.ppc64.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.ppc64.rpm libasan6-10.2.1-11.2.el7.ppc64.rpm liblsan-10.2.1-11.2.el7.ppc64.rpm libtsan-10.2.1-11.2.el7.ppc64.rpm libubsan1-10.2.1-11.2.el7.ppc64.rpm ppc64le: devtoolset-10-gcc-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-gcc-c++-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-gcc-gdb-plugin-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-gcc-gfortran-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-gcc-plugin-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libgccjit-docs-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-liblsan-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libquadmath-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libstdc++-docs-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libtsan-devel-10.2.1-11.2.el7.ppc64le.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.ppc64le.rpm libasan6-10.2.1-11.2.el7.ppc64le.rpm liblsan-10.2.1-11.2.el7.ppc64le.rpm libtsan-10.2.1-11.2.el7.ppc64le.rpm libubsan1-10.2.1-11.2.el7.ppc64le.rpm s390x: devtoolset-10-gcc-10.2.1-11.2.el7.s390x.rpm devtoolset-10-gcc-c++-10.2.1-11.2.el7.s390x.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.s390x.rpm devtoolset-10-gcc-gdb-plugin-10.2.1-11.2.el7.s390x.rpm devtoolset-10-gcc-gfortran-10.2.1-11.2.el7.s390x.rpm devtoolset-10-gcc-plugin-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libgccjit-docs-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libstdc++-docs-10.2.1-11.2.el7.s390x.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.s390x.rpm libasan6-10.2.1-11.2.el7.s390x.rpm libubsan1-10.2.1-11.2.el7.s390x.rpm x86_64: devtoolset-10-gcc-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-c++-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.i686.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-gdb-plugin-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-gfortran-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-plugin-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.i686.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libgccjit-docs-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-liblsan-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libquadmath-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libquadmath-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libstdc++-docs-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libtsan-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.x86_64.rpm libasan6-10.2.1-11.2.el7.i686.rpm libasan6-10.2.1-11.2.el7.x86_64.rpm liblsan-10.2.1-11.2.el7.x86_64.rpm libtsan-10.2.1-11.2.el7.x86_64.rpm libubsan1-10.2.1-11.2.el7.i686.rpm libubsan1-10.2.1-11.2.el7.x86_64.rpm Red Hat Software Collections for Red Hat Enterprise Linux Workstation (v.7): Source: devtoolset-10-gcc-10.2.1-11.2.el7.src.rpm x86_64: devtoolset-10-gcc-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-c++-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.i686.rpm devtoolset-10-gcc-debuginfo-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-gdb-plugin-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-gfortran-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-gcc-plugin-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libasan-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libatomic-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.i686.rpm devtoolset-10-libgccjit-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libgccjit-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libgccjit-docs-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libitm-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-liblsan-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libquadmath-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libquadmath-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libstdc++-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libstdc++-docs-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libtsan-devel-10.2.1-11.2.el7.x86_64.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.i686.rpm devtoolset-10-libubsan-devel-10.2.1-11.2.el7.x86_64.rpm libasan6-10.2.1-11.2.el7.i686.rpm libasan6-10.2.1-11.2.el7.x86_64.rpm liblsan-10.2.1-11.2.el7.x86_64.rpm libtsan-10.2.1-11.2.el7.x86_64.rpm libubsan1-10.2.1-11.2.el7.i686.rpm libubsan1-10.2.1-11.2.el7.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7.References: https://access.redhat.com/security/cve/CVE-2021-42574 https://access.redhat.com/security/updates/classification#moderate https://access.redhat.com/security/vulnerabilities/RHSB-2021-007 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2021 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBYX+dgNzjgjWX9erEAQh1ng/+KfHZZVGBNpHlFb8SXUezGupFvsWm6JXL fw94jqsWnRWpK97aV/7PJVR0+/o2xDzI8zDZJmukQNyYhoG94Mhy0QuHM9Jt9pWf 0Xj7JLYhIi+rP0PqbzoeKJ+XZWSlfm+h2DZVf9nFwpKZnbrRpersKYu51wWVcMNI agB26pbmKL/5VR8/Y1UI4dzehZ5dkgAZWYiroL7Ec9HbkKFTSk6umvqWrbzQLb6I wnbn17ot0G1hAOoXjDGTruMSBXZqHw6U9QZLFzLy6XRoDxkiLDTqqAOO6mcDjKRC j58mH8ULeKtfd8NzuC1ldOWzXhJAkno2Kd+c/JwZ1PhMcGKJQrg/nWY+sqyCMoXn YoMO6SvlcHLe4Fr0lp428uf1lDpD9q4NgAxKLaIRdlhJKSrbqDUDRycwuCVu21dk 5gqaM6lRxvtA77yTOZi1RYu9eoIIOc7qib+bTvcoEnMjxs1hS4jAWS5+TLdvzXfu HbibKadGtfHveWcYt6b4y9Wu9TJPiFbMUu80ytSooP1BY9mnZ79JzEP+wmDCb8/+ IVvQuN1a/hq4/FbPwHDtAO/mBr2ndDlqy2qd74N2dlRpYTJeG8yHh9PDhx2NU7AR lMjPc9aynS/gHAMkvDQzGA0o2bZTfu/5lCkSHz7HlBgjPYuI6oWhqgn8voLjtPq6 sRRx46jlqlE=Zfa/ -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . A significant patch for devtoolset-10-gcc resolves BiDi Unicode flaws and improves development resources.. Red Hat, Devtoolset-10-GCC, Unicode Attack, Security Fix, Security Update. . LinuxSecurity.com Team

Calendar 2 Nov 01, 2021 Red Hat
98

Red Hat: RHSA-2020-2274 Moderate: Devtoolset-9-GCC Bug Fix

An update for devtoolset-9-gcc is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: devtoolset-9-gcc security and bug fix update Advisory ID: RHSA-2020:2274-01 Product: Red Hat Software Collections Advisory URL: https://access.redhat.com/errata/RHSA-2020:2274 Issue date: 2020-05-26 CVE Names: CVE-2019-15847 ==================================================================== 1. Summary: An update for devtoolset-9-gcc is now available for Red Hat Software Collections. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Software Collections for Red Hat Enterprise Linux Server (v. 7) - aarch64, ppc64, ppc64le, s390x, x86_64 Red Hat Software Collections for Red Hat Enterprise Linux Server EUS (v. 7.6) - ppc64, ppc64le, s390x, x86_64 Red Hat Software Collections for Red Hat Enterprise Linux Server EUS (v. 7.7) - ppc64, ppc64le, s390x, x86_64 Red Hat Software Collections for Red Hat Enterprise Linux Workstation (v. 7) - x86_64 3. Description: The GNU Compiler Collection (GCC) is a portable compiler suite with support for various programming languages, including C, C++, and Fortran. The devtoolset-9-gcc packages provide the Red Hat Developer Toolset version of GCC, as well as related libraries. The following packages have been upgraded to a later upstream version: devtoolset-9-gcc (9.3.1). Security Fix(es): * gcc: POWER9 "DARN" RNG intrinsic produces repeatedoutput (CVE-2019-15847) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Bug Fix(es): * Compiler vectorizes the loop incorrectly when the loop is inlined (BZ#1769410) * Update gcc for DTS 9.1 RHEL 7 (BZ#1783475) * g++ rejects a valid code (BZ#1802608) * Update gcc for DTS 9.1 from upstream GCC 9.3 (BZ#1812147) Additional Changes: For detailed changes in this release, see the Red Hat Developer Toolset 9.1 User Guide linked from the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1755523 - CVE-2019-15847 gcc: POWER9 "DARN" RNG intrinsic produces repeated output 1769410 - Compiler vectorizes the loop incorrectly when the loop is inlined 1783475 - Update gcc for DTS 9.1 RHEL 7 1802608 - g++ rejects a valid code 1812147 - Update gcc for DTS 9.1 from upstream GCC 9.3 6. Package List: Red Hat Software Collections for Red Hat Enterprise Linux Server (v.7): Source: devtoolset-9-gcc-9.3.1-2.el7.src.rpm aarch64: devtoolset-9-gcc-9.3.1-2.el7.aarch64.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.aarch64.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.aarch64.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.aarch64.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.aarch64.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libgccjit-9.3.1-2.el7.aarch64.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.aarch64.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.aarch64.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.aarch64.rpm libasan5-9.3.1-2.el7.aarch64.rpm liblsan-9.3.1-2.el7.aarch64.rpm libtsan-9.3.1-2.el7.aarch64.rpm libubsan1-9.3.1-2.el7.aarch64.rpm ppc64le: devtoolset-9-gcc-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.ppc64le.rpm libasan5-9.3.1-2.el7.ppc64le.rpm liblsan-9.3.1-2.el7.ppc64le.rpm libtsan-9.3.1-2.el7.ppc64le.rpm libubsan1-9.3.1-2.el7.ppc64le.rpm s390x: devtoolset-9-gcc-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.s390x.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.s390x.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.s390x.rpm libasan5-9.3.1-2.el7.s390x.rpm libubsan1-9.3.1-2.el7.s390x.rpm Red Hat Software Collections for Red Hat Enterprise Linux Server (v.7): Source: devtoolset-9-gcc-9.3.1-2.el7.src.rpm aarch64: devtoolset-9-gcc-9.3.1-2.el7.aarch64.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.aarch64.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.aarch64.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.aarch64.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.aarch64.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libgccjit-9.3.1-2.el7.aarch64.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.aarch64.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.aarch64.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.aarch64.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.aarch64.rpm libasan5-9.3.1-2.el7.aarch64.rpm liblsan-9.3.1-2.el7.aarch64.rpm libtsan-9.3.1-2.el7.aarch64.rpm libubsan1-9.3.1-2.el7.aarch64.rpm ppc64: devtoolset-9-gcc-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libgccjit-9.3.1-2.el7.ppc64.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.ppc64.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.ppc64.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.ppc64.rpm libasan5-9.3.1-2.el7.ppc64.rpm liblsan-9.3.1-2.el7.ppc64.rpm libtsan-9.3.1-2.el7.ppc64.rpm libubsan1-9.3.1-2.el7.ppc64.rpm ppc64le: devtoolset-9-gcc-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.ppc64le.rpm libasan5-9.3.1-2.el7.ppc64le.rpm liblsan-9.3.1-2.el7.ppc64le.rpm libtsan-9.3.1-2.el7.ppc64le.rpm libubsan1-9.3.1-2.el7.ppc64le.rpm s390x: devtoolset-9-gcc-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.s390x.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.s390x.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.s390x.rpm libasan5-9.3.1-2.el7.s390x.rpm libubsan1-9.3.1-2.el7.s390x.rpm x86_64: devtoolset-9-gcc-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.i686.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-9.3.1-2.el7.i686.rpm devtoolset-9-libgccjit-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.x86_64.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.x86_64.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.x86_64.rpm libasan5-9.3.1-2.el7.i686.rpm libasan5-9.3.1-2.el7.x86_64.rpm liblsan-9.3.1-2.el7.x86_64.rpm libtsan-9.3.1-2.el7.x86_64.rpm libubsan1-9.3.1-2.el7.i686.rpm libubsan1-9.3.1-2.el7.x86_64.rpm Red Hat Software Collections for Red Hat Enterprise Linux Server EUS (v.7.6): Source: devtoolset-9-gcc-9.3.1-2.el7.src.rpm ppc64: devtoolset-9-gcc-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libgccjit-9.3.1-2.el7.ppc64.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.ppc64.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.ppc64.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.ppc64.rpm libasan5-9.3.1-2.el7.ppc64.rpm liblsan-9.3.1-2.el7.ppc64.rpm libtsan-9.3.1-2.el7.ppc64.rpm libubsan1-9.3.1-2.el7.ppc64.rpm ppc64le: devtoolset-9-gcc-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.ppc64le.rpm libasan5-9.3.1-2.el7.ppc64le.rpm liblsan-9.3.1-2.el7.ppc64le.rpm libtsan-9.3.1-2.el7.ppc64le.rpm libubsan1-9.3.1-2.el7.ppc64le.rpm s390x: devtoolset-9-gcc-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.s390x.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.s390x.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.s390x.rpm libasan5-9.3.1-2.el7.s390x.rpm libubsan1-9.3.1-2.el7.s390x.rpm x86_64: devtoolset-9-gcc-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.i686.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-9.3.1-2.el7.i686.rpm devtoolset-9-libgccjit-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.x86_64.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.x86_64.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.x86_64.rpm libasan5-9.3.1-2.el7.i686.rpm libasan5-9.3.1-2.el7.x86_64.rpm liblsan-9.3.1-2.el7.x86_64.rpm libtsan-9.3.1-2.el7.x86_64.rpm libubsan1-9.3.1-2.el7.i686.rpm libubsan1-9.3.1-2.el7.x86_64.rpm Red Hat Software Collections for Red Hat Enterprise Linux Server EUS (v.7.7): Source: devtoolset-9-gcc-9.3.1-2.el7.src.rpm ppc64: devtoolset-9-gcc-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.ppc64.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libgccjit-9.3.1-2.el7.ppc64.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.ppc64.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.ppc64.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.ppc64.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.ppc64.rpm libasan5-9.3.1-2.el7.ppc64.rpm liblsan-9.3.1-2.el7.ppc64.rpm libtsan-9.3.1-2.el7.ppc64.rpm libubsan1-9.3.1-2.el7.ppc64.rpm ppc64le: devtoolset-9-gcc-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.ppc64le.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.ppc64le.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.ppc64le.rpm libasan5-9.3.1-2.el7.ppc64le.rpm liblsan-9.3.1-2.el7.ppc64le.rpm libtsan-9.3.1-2.el7.ppc64le.rpm libubsan1-9.3.1-2.el7.ppc64le.rpm s390x: devtoolset-9-gcc-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.s390x.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.s390x.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.s390x.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.s390x.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.s390x.rpm libasan5-9.3.1-2.el7.s390x.rpm libubsan1-9.3.1-2.el7.s390x.rpm x86_64: devtoolset-9-gcc-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.i686.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-9.3.1-2.el7.i686.rpm devtoolset-9-libgccjit-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.x86_64.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.x86_64.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.x86_64.rpm libasan5-9.3.1-2.el7.i686.rpm libasan5-9.3.1-2.el7.x86_64.rpm liblsan-9.3.1-2.el7.x86_64.rpm libtsan-9.3.1-2.el7.x86_64.rpm libubsan1-9.3.1-2.el7.i686.rpm libubsan1-9.3.1-2.el7.x86_64.rpm Red Hat Software Collections for Red Hat Enterprise Linux Workstation (v. 7): Source: devtoolset-9-gcc-9.3.1-2.el7.src.rpm x86_64: devtoolset-9-gcc-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-c++-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.i686.rpm devtoolset-9-gcc-debuginfo-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-gdb-plugin-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-gfortran-9.3.1-2.el7.x86_64.rpm devtoolset-9-gcc-plugin-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libasan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libatomic-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-9.3.1-2.el7.i686.rpm devtoolset-9-libgccjit-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libgccjit-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libgccjit-docs-9.3.1-2.el7.x86_64.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libitm-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-liblsan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libquadmath-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libstdc++-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libstdc++-docs-9.3.1-2.el7.x86_64.rpm devtoolset-9-libtsan-devel-9.3.1-2.el7.x86_64.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.i686.rpm devtoolset-9-libubsan-devel-9.3.1-2.el7.x86_64.rpm libasan5-9.3.1-2.el7.i686.rpm libasan5-9.3.1-2.el7.x86_64.rpm liblsan-9.3.1-2.el7.x86_64.rpm libtsan-9.3.1-2.el7.x86_64.rpm libubsan1-9.3.1-2.el7.i686.rpm libubsan1-9.3.1-2.el7.x86_64.rpm These packages are GPG signed by Red Hat forsecurity. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2019-15847 https://access.redhat.com/security/updates/classification/#moderate https://access.redhat.com/documentation/en-us/red_hat_developer_toolset/9/html/user_guide/appe-changes_in_version_9.1 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2020 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBXsyyQ9zjgjWX9erEAQj65Q//SGaWuXw/GGMEc3jV/7S44iw6zfVD20iG YK7anqeGFEpyqSdji5IfnCacK0/r2cyrzenHjxP4pZcLg0o59scxH1eR4f4ywMeQ 6QJpi6G959XPRNSxLHC+mqlbWLDVF4jSaFpDops3jaOmx95rpCwO9lf6mZlVh/Wf fvUKBKMxLPThjznj4hFVc4HzeYnSZyyCyujveeFKD85GHTfa8jZ/oiQajAP5LQ7e pLDoxEkw+3bmr80QLU6/39StdwEyWJLKw67Jy+8moSgSR53ioSU0VrSFy1qxbNUM 1q2uaPiGchqhmR/It2EPBry7MwjKGhSgv70c1AJylCec/7e3rX9WyCcDHCOUURUi IhhNW8V65YwsjCjfLdwMkMHwF1H+hVunUtPrp51gPhGDh6xTLCiz86twjlSJpRp/ fmuN2jxbquvQCaRde+iiPhUcRxh346wD+H4DMc2/zobOrz13Zh2WJONgmn5y3t5M YxqMuh9Wp5gXgNPawV1uu+yk8N+qFo3mIqR/eOi+ZgwwzhKPnOyJVYwIzO1ZofLJ NILiT20ClKepoqXkp1dw31GEZLPYqwG/Umtpdvq31FmL85kaOcdRB5496eRVD4ey fpVpBhnrLdRImXYhlPP7UOEUuE7EatwW/eSZkKnSk++hn9T87l1x/SSi/w7dMjm8 X6SCvCAWyvM=SFIK -----END PGP SIGNATURE----- -- RHSA-announce mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . Attention users: A new update for devtoolset-9-gcc has been released for Red Hat Software Collections, addressing moderate risk security vulnerabilities.. Devtoolset, Red Hat, Compiler Update. . LinuxSecurity.com Team

Calendar 2 May 26, 2020 Red Hat
98

Red Hat 6 Moderate: RHSA-2014:1123-01 Axis Certificate Spoofing

An updated devtoolset-2-axis package that fixes one security issue is now available for Red Hat Developer Toolset 2. Red Hat Product Security has rated this update as having Moderate security impact. A Common Vulnerability Scoring System (CVSS) base score, which. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: devtoolset-2-axis security update Advisory ID: RHSA-2014:1123-01 Product: Red Hat Developer Toolset Advisory URL: https://access.redhat.com/errata/RHSA-2014:1123.html Issue date: 2014-09-02 CVE Names: CVE-2012-5784 ==================================================================== 1. Summary: An updated devtoolset-2-axis package that fixes one security issue is now available for Red Hat Developer Toolset 2. Red Hat Product Security has rated this update as having Moderate security impact. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available from the CVE link in the References section. 2. Relevant releases/architectures: Red Hat Developer Toolset 2 for Red Hat Enterprise Linux 6 Server - noarch Red Hat Developer Toolset 2 for Red Hat Enterprise Linux 6 Workstation - noarch 3. Description: Apache Axis is an implementation of SOAP (Simple Object Access Protocol). It can be used to build both web service clients and servers. Apache Axis did not verify that the server host name matched the domain name in the subject's Common Name (CN) or subjectAltName field in X.509 certificates. This could allow a man-in-the-middle attacker to spoof an SSL server if they had a certificate that was valid for any domain name. (CVE-2012-5784) All devtoolset-2-axis users are advised to upgrade to this updated package, which contains a backported patch to correct this issue. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system havebeen applied. This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 873252 - CVE-2012-5784 axis: missing connection hostname check against X.509 certificate name 6. Package List: Red Hat Developer Toolset 2 for Red Hat Enterprise Linux 6 Server: Source: devtoolset-2-axis-1.4-23.el6.src.rpm noarch: devtoolset-2-axis-1.4-23.el6.noarch.rpm Red Hat Developer Toolset 2 for Red Hat Enterprise Linux 6 Workstation: Source: devtoolset-2-axis-1.4-23.el6.src.rpm noarch: devtoolset-2-axis-1.4-23.el6.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/#package 7. References: https://access.redhat.com/security/cve/CVE-2012-5784 https://access.redhat.com/security/updates/classification/#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2014 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iD8DBQFUBg01XlSAg2UNWIIRAl+7AJ4sjQKlo7nTf4AOUOme9Yp8JsoGEQCfe4XB +efYiK56ySRceKbo6lkVfOw=An2l -----END PGP SIGNATURE----- -- Enterprise-watch-list mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. . The new version of devtoolset-2-axis addresses a significant security flaw for users on the Red Hat platform, boosting overall system safety.. devtoolset security, Red Hat advisory, Apache Axis patch. . LinuxSecurity.com Team

Calendar 2 Sep 02, 2014 Red Hat
98

Red Hat Developer Toolset: RHSA-2014:1123-01 Moderate: SSL Threat

An updated devtoolset-2-axis package that fixes one security issue is now available for Red Hat Developer Toolset 2. Red Hat Product Security has rated this update as having Moderate security [More...]. ==================================================================== Red Hat Security Advisory Synopsis: Moderate: devtoolset-2-axis security update Advisory ID: RHSA-2014:1123-01 Product: Red Hat Developer Toolset Advisory URL: https://access.redhat.com/errata/RHSA-2014:1123.html Issue date: 2014-09-02 CVE Names: CVE-2012-5784 ==================================================================== 1. Summary: An updated devtoolset-2-axis package that fixes one security issue is now available for Red Hat Developer Toolset 2. Red Hat Product Security has rated this update as having Moderate security impact. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available from the CVE link in the References section. 2. Relevant releases/architectures: Red Hat Developer Toolset 2 for Red Hat Enterprise Linux 6 Server - noarch Red Hat Developer Toolset 2 for Red Hat Enterprise Linux 6 Workstation - noarch 3. Description: Apache Axis is an implementation of SOAP (Simple Object Access Protocol). It can be used to build both web service clients and servers. Apache Axis did not verify that the server host name matched the domain name in the subject's Common Name (CN) or subjectAltName field in X.509 certificates. This could allow a man-in-the-middle attacker to spoof an SSL server if they had a certificate that was valid for any domain name. (CVE-2012-5784) All devtoolset-2-axis users are advised to upgrade to this updated package, which contains a backported patch to correct this issue. 4. Solution: Before applying this update, make sure all previously released errata relevant to your system have been applied. This update is available via the Red Hat Network. Details on how to use the Red Hat Networkto apply this update are available at https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 873252 - CVE-2012-5784 axis: missing connection hostname check against X.509 certificate name 6. Package List: Red Hat Developer Toolset 2 for Red Hat Enterprise Linux 6 Server: Source: devtoolset-2-axis-1.4-23.el6.src.rpm noarch: devtoolset-2-axis-1.4-23.el6.noarch.rpm Red Hat Developer Toolset 2 for Red Hat Enterprise Linux 6 Workstation: Source: devtoolset-2-axis-1.4-23.el6.src.rpm noarch: devtoolset-2-axis-1.4-23.el6.noarch.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7. References: https://access.redhat.com/security/cve/CVE-2012-5784 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2014 Red Hat, Inc. . Debian releases a Critical security patch for sysadmin-tool-3-mark addressing a spoofing vulnerability. Immediate action advised.. Red Hat Security, Apache Axis Patch, SSL Risk Mitigation, Developer Toolset Update. . LinuxSecurity.com Team

Calendar 2 Sep 02, 2014 Red Hat
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here