Several security issues were fixed in atftp.. ========================================================================== Ubuntu Security Notice USN-6334-1 September 04, 2023 atftp vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS (Available with Ubuntu Pro) - Ubuntu 16.04 LTS (Available with Ubuntu Pro) Summary: Several security issues were fixed in atftp. Software Description: - atftp: Advanced TFTP Server and Client Details: Peter Wang discovered that atftp did not properly manage certain inputs. A remote attacker could send a specially crafted tftp request to the server to cause a crash. (CVE-2020-6097) Andreas B. Mundt discovered that atftp did not properly manage certain inputs. A remote attacker could send a specially crafted tftp request to the server to cause a crash. (CVE-2021-41054) Johannes Krupp discovered that atftp did not properly manage certain inputs. A remote attacker could send a specially crafted tftp request to the server and make the server to disclose /etc/group data. (CVE-2021-46671) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS: atftpd 0.7.git20120829-3.1ubuntu0.1 Ubuntu 18.04 LTS (Available with Ubuntu Pro): atftpd 0.7.git20120829-3.1~0.18.04.1+esm1 Ubuntu 16.04 LTS (Available with Ubuntu Pro): atftpd 0.7.git20120829-3.1~0.16.04.1+esm1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6334-1 CVE-2020-6097, CVE-2021-41054, CVE-2021-46671 Package Information: https://launchpad.net/ubuntu/+source/atftp/0.7.git20120829-3.1ubuntu0.1 . A number of security flaws in atftp have been identified, impacting various Ubuntu LTS versions, along withdetailed remediation steps provided.. atftp Vulnerabilities, Ubuntu Update, Remote Exploit. . Severity: Critical. LinuxSecurity.com Team
xfce4-settings could be made to run programs with arbitrary arguments if it received specially crafted input.. =========================================================================Ubuntu Security Notice USN-6141-1 June 06, 2023 xfce4-settings vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 22.10 - Ubuntu 22.04 LTS Summary: xfce4-settings could be made to run programs with arbitrary arguments if it received specially crafted input. Software Description: - xfce4-settings: graphical application for managing Xfce settings Details: Robin Peraglie and Johannes Moritz discovered that xfce4-settings incorrectly parsed quoted input when processed through xdg-open. A remote attacker could possibly use this issue to inject arbitrary arguments into the default browser or file manager. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 22.10: xfce4-settings 4.16.2-1ubuntu2.22.10.1 Ubuntu 22.04 LTS: xfce4-settings 4.16.2-1ubuntu2.22.04.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-6141-1 CVE-2022-45062 Package Information: https://launchpad.net/ubuntu/+source/xfce4-settings/4.16.2-1ubuntu2.22.10.1 https://launchpad.net/ubuntu/+source/xfce4-settings/4.16.2-1ubuntu2.22.04.1 . Revise your Ubuntu installation to mitigate the severe xfce4-settings flaw that permits unrestricted command execution.. xfce4-settings vulnerability, Ubuntu security update, remote execution issues. . Severity: Critical. LinuxSecurity.com Team
The X.Org X server could be made to crash or run programs as an administrator if it received specially crafted input.. =========================================================================Ubuntu Security Notice USN-1990-1 October 17, 2013 xorg-server, xorg-server-lts-quantal, xorg-server-lts-raring vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 13.04 - Ubuntu 12.10 - Ubuntu 12.04 LTS Summary: The X.Org X server could be made to crash or run programs as an administrator if it received specially crafted input. Software Description: - xorg-server: X.Org X11 server - xorg-server-lts-quantal: X.Org X11 server - xorg-server-lts-raring: X.Org X11 server Details: Pedro Ribeiro discovered that the X.Org X server incorrectly handled memory operations when handling ImageText requests. An attacker could use this issue to cause X.Org to crash, or to possibly execute arbitrary code. (CVE-2013-4396) It was discovered that non-root X.Org X servers such as Xephyr incorrectly used cached xkb files. A local attacker could use this flaw to cause a xkb cache file to be loaded by another user, resulting in a denial of service. (CVE-2013-1056) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 13.04: xserver-xorg-core 2:1.13.3-0ubuntu6.2 Ubuntu 12.10: xserver-xorg-core 2:1.13.0-0ubuntu6.4 Ubuntu 12.04 LTS: xserver-xorg-core 2:1.11.4-0ubuntu10.14 xserver-xorg-core-lts-quantal 2:1.13.0-0ubuntu6.1~precise4 xserver-xorg-core-lts-raring 2:1.13.3-0ubuntu6~precise3 After a standard system update you need to reboot your computer to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-1990-1 CVE-2013-1056, CVE-2013-4396 Package Information: https://launchpad.net/ubuntu/+source/xorg-server/2:1.13.3-0ubuntu6.2 https://launchpad.net/ubuntu/+source/xorg-server/2:1.13.0-0ubuntu6.4 https://launchpad.net/ubuntu/+source/xorg-server/2:1.11.4-0ubuntu10.14 https://launchpad.net/ubuntu/+source/xorg-server-lts-quantal/2:1.13.0-0ubuntu6.1~precise4 https://launchpad.net/ubuntu/+source/xorg-server-lts-raring/2:1.13.3-0ubuntu6~precise3 . The latest update for the X.Org server resolves critical vulnerabilities that could cause system crashes and enable unauthorized admin access via crafted inputs. X.Org Server Flaw, Ubuntu Update, Next Security Fix, X Server Issues. . Severity: Important. LinuxSecurity.com Team
Updated xorg-x11 packages that fix multiple security issues are now available for Red Hat Enterprise Linux 4. The Red Hat Security Response Team has rated this update as having moderate security impact. Common Vulnerability Scoring System (CVSS) base scores,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: xorg-x11 security update Advisory ID: RHSA-2011:1360-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2011:1360.html Issue date: 2011-10-06 CVE Names: CVE-2010-4818 CVE-2010-4819 ==================================================================== 1. Summary: Updated xorg-x11 packages that fix multiple security issues are now available for Red Hat Enterprise Linux 4. The Red Hat Security Response Team has rated this update as having moderate security impact. Common Vulnerability Scoring System (CVSS) base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64 Red Hat Enterprise Linux Desktop version 4 - i386, x86_64 Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64 Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64 3. Description: X.Org is an open source implementation of the X Window System. It provides the basic low-level functionality that full-fledged graphical user interfaces are designed upon. Multiple input sanitization flaws were found in the X.Org GLX (OpenGL extension to the X Window System) extension. A malicious, authorized client could use these flaws to crash the X.Org server or, potentially, execute arbitrary code with root privileges. (CVE-2010-4818) An input sanitization flaw was found in the X.Org Render extension. A malicious, authorized client could use this flaw toleak arbitrary memory from the X.Org server process, or possibly crash the X.Org server. (CVE-2010-4819) Users of xorg-x11 should upgrade to these updated packages, which contain a backported patch to resolve these issues. All running X.Org server instances must be restarted for this update to take effect. 4. Solution: Before applying this update, make sure all previously-released errata relevant to your system have been applied. This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at https://access.redhat.com/kb/docs/DOC-11259 5. Bugs fixed (http://bugzilla.redhat.com/): 740954 - CVE-2010-4818 X.org: multiple GLX input sanitization flaws 740961 - CVE-2010-4819 X.org: ProcRenderAddGlyphs input sanitization flaw 6. Package List: Red Hat Enterprise Linux AS version4: Source: i386: xorg-x11-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.i386.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.i386.rpm xorg-x11-Xnest-6.8.2-1.EL.70.i386.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-doc-6.8.2-1.EL.70.i386.rpm xorg-x11-font-utils-6.8.2-1.EL.70.i386.rpm xorg-x11-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-sdk-6.8.2-1.EL.70.i386.rpm xorg-x11-tools-6.8.2-1.EL.70.i386.rpm xorg-x11-twm-6.8.2-1.EL.70.i386.rpm xorg-x11-xauth-6.8.2-1.EL.70.i386.rpm xorg-x11-xdm-6.8.2-1.EL.70.i386.rpm xorg-x11-xfs-6.8.2-1.EL.70.i386.rpm ia64: xorg-x11-6.8.2-1.EL.70.ia64.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.ia64.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.ia64.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.ia64.rpm xorg-x11-Xnest-6.8.2-1.EL.70.ia64.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.ia64.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.ia64.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.ia64.rpm xorg-x11-devel-6.8.2-1.EL.70.ia64.rpm xorg-x11-doc-6.8.2-1.EL.70.ia64.rpm xorg-x11-font-utils-6.8.2-1.EL.70.ia64.rpm xorg-x11-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-libs-6.8.2-1.EL.70.ia64.rpm xorg-x11-sdk-6.8.2-1.EL.70.ia64.rpm xorg-x11-tools-6.8.2-1.EL.70.ia64.rpm xorg-x11-twm-6.8.2-1.EL.70.ia64.rpm xorg-x11-xauth-6.8.2-1.EL.70.ia64.rpm xorg-x11-xdm-6.8.2-1.EL.70.ia64.rpm xorg-x11-xfs-6.8.2-1.EL.70.ia64.rpm ppc: xorg-x11-6.8.2-1.EL.70.ppc.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.ppc.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.ppc64.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.ppc.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.ppc64.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.ppc.rpm xorg-x11-Xnest-6.8.2-1.EL.70.ppc.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.ppc.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.ppc.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.ppc64.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.ppc.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.ppc64.rpm xorg-x11-devel-6.8.2-1.EL.70.ppc.rpm xorg-x11-devel-6.8.2-1.EL.70.ppc64.rpm xorg-x11-doc-6.8.2-1.EL.70.ppc.rpm xorg-x11-font-utils-6.8.2-1.EL.70.ppc.rpm xorg-x11-libs-6.8.2-1.EL.70.ppc.rpm xorg-x11-libs-6.8.2-1.EL.70.ppc64.rpm xorg-x11-sdk-6.8.2-1.EL.70.ppc.rpm xorg-x11-tools-6.8.2-1.EL.70.ppc.rpm xorg-x11-twm-6.8.2-1.EL.70.ppc.rpm xorg-x11-xauth-6.8.2-1.EL.70.ppc.rpm xorg-x11-xdm-6.8.2-1.EL.70.ppc.rpm xorg-x11-xfs-6.8.2-1.EL.70.ppc.rpm s390: xorg-x11-6.8.2-1.EL.70.s390.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.s390.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.s390.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.s390.rpm xorg-x11-Xnest-6.8.2-1.EL.70.s390.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.s390.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.s390.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.s390.rpm xorg-x11-devel-6.8.2-1.EL.70.s390.rpm xorg-x11-font-utils-6.8.2-1.EL.70.s390.rpm xorg-x11-libs-6.8.2-1.EL.70.s390.rpm xorg-x11-tools-6.8.2-1.EL.70.s390.rpm xorg-x11-twm-6.8.2-1.EL.70.s390.rpm xorg-x11-xauth-6.8.2-1.EL.70.s390.rpm xorg-x11-xdm-6.8.2-1.EL.70.s390.rpm xorg-x11-xfs-6.8.2-1.EL.70.s390.rpm s390x: xorg-x11-6.8.2-1.EL.70.s390x.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.s390.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.s390x.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.s390.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.s390x.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.s390x.rpm xorg-x11-Xnest-6.8.2-1.EL.70.s390x.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.s390x.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.s390.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.s390x.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.s390.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.s390x.rpm xorg-x11-devel-6.8.2-1.EL.70.s390.rpm xorg-x11-devel-6.8.2-1.EL.70.s390x.rpm xorg-x11-font-utils-6.8.2-1.EL.70.s390x.rpm xorg-x11-libs-6.8.2-1.EL.70.s390.rpm xorg-x11-libs-6.8.2-1.EL.70.s390x.rpm xorg-x11-tools-6.8.2-1.EL.70.s390x.rpm xorg-x11-twm-6.8.2-1.EL.70.s390x.rpm xorg-x11-xauth-6.8.2-1.EL.70.s390x.rpm xorg-x11-xdm-6.8.2-1.EL.70.s390x.rpm xorg-x11-xfs-6.8.2-1.EL.70.s390x.rpm x86_64: xorg-x11-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xnest-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.x86_64.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.x86_64.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.x86_64.rpm xorg-x11-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-devel-6.8.2-1.EL.70.x86_64.rpm xorg-x11-doc-6.8.2-1.EL.70.x86_64.rpm xorg-x11-font-utils-6.8.2-1.EL.70.x86_64.rpm xorg-x11-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-libs-6.8.2-1.EL.70.x86_64.rpm xorg-x11-sdk-6.8.2-1.EL.70.x86_64.rpm xorg-x11-tools-6.8.2-1.EL.70.x86_64.rpm xorg-x11-twm-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xauth-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xdm-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xfs-6.8.2-1.EL.70.x86_64.rpm Red Hat Enterprise Linux Desktop version4: Source: i386: xorg-x11-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.i386.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.i386.rpm xorg-x11-Xnest-6.8.2-1.EL.70.i386.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-doc-6.8.2-1.EL.70.i386.rpm xorg-x11-font-utils-6.8.2-1.EL.70.i386.rpm xorg-x11-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-sdk-6.8.2-1.EL.70.i386.rpm xorg-x11-tools-6.8.2-1.EL.70.i386.rpm xorg-x11-twm-6.8.2-1.EL.70.i386.rpm xorg-x11-xauth-6.8.2-1.EL.70.i386.rpm xorg-x11-xdm-6.8.2-1.EL.70.i386.rpm xorg-x11-xfs-6.8.2-1.EL.70.i386.rpm x86_64: xorg-x11-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xnest-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.x86_64.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.x86_64.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.x86_64.rpm xorg-x11-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-devel-6.8.2-1.EL.70.x86_64.rpm xorg-x11-doc-6.8.2-1.EL.70.x86_64.rpm xorg-x11-font-utils-6.8.2-1.EL.70.x86_64.rpm xorg-x11-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-libs-6.8.2-1.EL.70.x86_64.rpm xorg-x11-sdk-6.8.2-1.EL.70.x86_64.rpm xorg-x11-tools-6.8.2-1.EL.70.x86_64.rpm xorg-x11-twm-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xauth-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xdm-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xfs-6.8.2-1.EL.70.x86_64.rpm Red Hat Enterprise Linux ES version4: Source: i386: xorg-x11-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.i386.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.i386.rpm xorg-x11-Xnest-6.8.2-1.EL.70.i386.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-doc-6.8.2-1.EL.70.i386.rpm xorg-x11-font-utils-6.8.2-1.EL.70.i386.rpm xorg-x11-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-sdk-6.8.2-1.EL.70.i386.rpm xorg-x11-tools-6.8.2-1.EL.70.i386.rpm xorg-x11-twm-6.8.2-1.EL.70.i386.rpm xorg-x11-xauth-6.8.2-1.EL.70.i386.rpm xorg-x11-xdm-6.8.2-1.EL.70.i386.rpm xorg-x11-xfs-6.8.2-1.EL.70.i386.rpm ia64: xorg-x11-6.8.2-1.EL.70.ia64.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.ia64.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.ia64.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.ia64.rpm xorg-x11-Xnest-6.8.2-1.EL.70.ia64.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.ia64.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.ia64.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.ia64.rpm xorg-x11-devel-6.8.2-1.EL.70.ia64.rpm xorg-x11-doc-6.8.2-1.EL.70.ia64.rpm xorg-x11-font-utils-6.8.2-1.EL.70.ia64.rpm xorg-x11-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-libs-6.8.2-1.EL.70.ia64.rpm xorg-x11-sdk-6.8.2-1.EL.70.ia64.rpm xorg-x11-tools-6.8.2-1.EL.70.ia64.rpm xorg-x11-twm-6.8.2-1.EL.70.ia64.rpm xorg-x11-xauth-6.8.2-1.EL.70.ia64.rpm xorg-x11-xdm-6.8.2-1.EL.70.ia64.rpm xorg-x11-xfs-6.8.2-1.EL.70.ia64.rpm x86_64: xorg-x11-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xnest-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.x86_64.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.x86_64.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.x86_64.rpm xorg-x11-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-devel-6.8.2-1.EL.70.x86_64.rpm xorg-x11-doc-6.8.2-1.EL.70.x86_64.rpm xorg-x11-font-utils-6.8.2-1.EL.70.x86_64.rpm xorg-x11-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-libs-6.8.2-1.EL.70.x86_64.rpm xorg-x11-sdk-6.8.2-1.EL.70.x86_64.rpm xorg-x11-tools-6.8.2-1.EL.70.x86_64.rpm xorg-x11-twm-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xauth-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xdm-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xfs-6.8.2-1.EL.70.x86_64.rpm Red Hat Enterprise Linux WS version4: Source: i386: xorg-x11-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.i386.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.i386.rpm xorg-x11-Xnest-6.8.2-1.EL.70.i386.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-doc-6.8.2-1.EL.70.i386.rpm xorg-x11-font-utils-6.8.2-1.EL.70.i386.rpm xorg-x11-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-sdk-6.8.2-1.EL.70.i386.rpm xorg-x11-tools-6.8.2-1.EL.70.i386.rpm xorg-x11-twm-6.8.2-1.EL.70.i386.rpm xorg-x11-xauth-6.8.2-1.EL.70.i386.rpm xorg-x11-xdm-6.8.2-1.EL.70.i386.rpm xorg-x11-xfs-6.8.2-1.EL.70.i386.rpm ia64: xorg-x11-6.8.2-1.EL.70.ia64.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.ia64.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.ia64.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.ia64.rpm xorg-x11-Xnest-6.8.2-1.EL.70.ia64.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.ia64.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.ia64.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.ia64.rpm xorg-x11-devel-6.8.2-1.EL.70.ia64.rpm xorg-x11-doc-6.8.2-1.EL.70.ia64.rpm xorg-x11-font-utils-6.8.2-1.EL.70.ia64.rpm xorg-x11-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-libs-6.8.2-1.EL.70.ia64.rpm xorg-x11-sdk-6.8.2-1.EL.70.ia64.rpm xorg-x11-tools-6.8.2-1.EL.70.ia64.rpm xorg-x11-twm-6.8.2-1.EL.70.ia64.rpm xorg-x11-xauth-6.8.2-1.EL.70.ia64.rpm xorg-x11-xdm-6.8.2-1.EL.70.ia64.rpm xorg-x11-xfs-6.8.2-1.EL.70.ia64.rpm x86_64: xorg-x11-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGL-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.i386.rpm xorg-x11-Mesa-libGLU-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xdmx-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xnest-6.8.2-1.EL.70.x86_64.rpm xorg-x11-Xvfb-6.8.2-1.EL.70.x86_64.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-6.8.2-1.EL.70.x86_64.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-deprecated-libs-devel-6.8.2-1.EL.70.x86_64.rpm xorg-x11-devel-6.8.2-1.EL.70.i386.rpm xorg-x11-devel-6.8.2-1.EL.70.x86_64.rpm xorg-x11-doc-6.8.2-1.EL.70.x86_64.rpm xorg-x11-font-utils-6.8.2-1.EL.70.x86_64.rpm xorg-x11-libs-6.8.2-1.EL.70.i386.rpm xorg-x11-libs-6.8.2-1.EL.70.x86_64.rpm xorg-x11-sdk-6.8.2-1.EL.70.x86_64.rpm xorg-x11-tools-6.8.2-1.EL.70.x86_64.rpm xorg-x11-twm-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xauth-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xdm-6.8.2-1.EL.70.x86_64.rpm xorg-x11-xfs-6.8.2-1.EL.70.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key/#package 7. References: https://access.redhat.com/security/cve/CVE-2010-4818 https://access.redhat.com/security/cve/CVE-2010-4819 https://access.redhat.com/security/updates/classification/#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2011 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.4 (GNU/Linux) iD8DBQFOje7sXlSAg2UNWIIRAl+aAKDA78G4AxS3PKYoOYelYm7UUi4RSACgwx9z rqzl6PR5DN+wpy/lLhgVtjQ=LxkM -----END PGP SIGNATURE----- -- Enterprise-watch-list mailing list
Updated php packages that fix multiple security issues are now available for Red Hat Enterprise Linux 4 and 5. The Red Hat Security Response Team has rated this update as having moderate security impact. Common Vulnerability Scoring System (CVSS) base scores,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: php security update Advisory ID: RHSA-2010:0919-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2010:0919.html Issue date: 2010-11-29 CVE Names: CVE-2009-5016 CVE-2010-0397 CVE-2010-1128 CVE-2010-1917 CVE-2010-2531 CVE-2010-3065 CVE-2010-3870 ==================================================================== 1. Summary: Updated php packages that fix multiple security issues are now available for Red Hat Enterprise Linux 4 and 5. The Red Hat Security Response Team has rated this update as having moderate security impact. Common Vulnerability Scoring System (CVSS) base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section. 2. Relevant releases/architectures: RHEL Desktop Workstation (v. 5 client) - i386, x86_64 Red Hat Enterprise Linux (v. 5 server) - i386, ia64, ppc, s390x, x86_64 Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64 Red Hat Enterprise Linux Desktop version 4 - i386, x86_64 Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64 Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64 3. Description: PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server. An input validation flaw was discovered in the PHP session serializer. If a PHP script generated session variable names from untrusted user input, a remote attacker could use this flaw to inject an arbitrary variable into the PHP session.(CVE-2010-3065) An information leak flaw was discovered in the PHP var_export() function implementation. If some fatal error occurred during the execution of this function (such as the exhaustion of memory or script execution time limit), part of the function's output was sent to the user as script output, possibly leading to the disclosure of sensitive information. (CVE-2010-2531) A numeric truncation error and an input validation flaw were found in the way the PHP utf8_decode() function decoded partial multi-byte sequences for some multi-byte encodings, sending them to output without them being escaped. An attacker could use these flaws to perform a cross-site scripting attack. (CVE-2009-5016, CVE-2010-3870) It was discovered that the PHP lcg_value() function used insufficient entropy to seed the pseudo-random number generator. A remote attacker could possibly use this flaw to predict values returned by the function, which are used to generate session identifiers by default. This update changes the function's implementation to use more entropy during seeding. (CVE-2010-1128) It was discovered that the PHP fnmatch() function did not restrict the length of the pattern argument. A remote attacker could use this flaw to crash the PHP interpreter where a script used fnmatch() on untrusted matching patterns. (CVE-2010-1917) A NULL pointer dereference flaw was discovered in the PHP XML-RPC extension. A malicious XML-RPC client or server could use this flaw to crash the PHP interpreter via a specially-crafted XML-RPC request. (CVE-2010-0397) All php users should upgrade to these updated packages, which contain backported patches to resolve these issues. After installing the updated packages, the httpd daemon must be restarted for the update to take effect. 4. Solution: Before applying this update, make sure all previously-released errata relevant to your system have been applied. This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are availableat 5. Bugs fixed (http://bugzilla.redhat.com/): 573779 - CVE-2010-0397 php: NULL pointer dereference in XML-RPC extension 577582 - CVE-2010-1128 php: LCG entropy weakness 617232 - CVE-2010-1917 php: fnmatch long pattern stack memory exhaustion (MOPS-2010-021) 617673 - CVE-2010-2531 php: information leak vulnerability in var_export() 619030 - CVE-2010-3065 php: session serializer session data injection vulnerability (MOPS-2010-060) 649056 - CVE-2010-3870 php: XSS mitigation bypass via utf8_decode() 652836 - CVE-2009-5016 php: XSS and SQL injection bypass via crafted overlong UTF-8 encoded string 6. Package List: Red Hat Enterprise Linux AS version4: Source: i386: php-4.3.9-3.31.i386.rpm php-debuginfo-4.3.9-3.31.i386.rpm php-devel-4.3.9-3.31.i386.rpm php-domxml-4.3.9-3.31.i386.rpm php-gd-4.3.9-3.31.i386.rpm php-imap-4.3.9-3.31.i386.rpm php-ldap-4.3.9-3.31.i386.rpm php-mbstring-4.3.9-3.31.i386.rpm php-mysql-4.3.9-3.31.i386.rpm php-ncurses-4.3.9-3.31.i386.rpm php-odbc-4.3.9-3.31.i386.rpm php-pear-4.3.9-3.31.i386.rpm php-pgsql-4.3.9-3.31.i386.rpm php-snmp-4.3.9-3.31.i386.rpm php-xmlrpc-4.3.9-3.31.i386.rpm ia64: php-4.3.9-3.31.ia64.rpm php-debuginfo-4.3.9-3.31.ia64.rpm php-devel-4.3.9-3.31.ia64.rpm php-domxml-4.3.9-3.31.ia64.rpm php-gd-4.3.9-3.31.ia64.rpm php-imap-4.3.9-3.31.ia64.rpm php-ldap-4.3.9-3.31.ia64.rpm php-mbstring-4.3.9-3.31.ia64.rpm php-mysql-4.3.9-3.31.ia64.rpm php-ncurses-4.3.9-3.31.ia64.rpm php-odbc-4.3.9-3.31.ia64.rpm php-pear-4.3.9-3.31.ia64.rpm php-pgsql-4.3.9-3.31.ia64.rpm php-snmp-4.3.9-3.31.ia64.rpm php-xmlrpc-4.3.9-3.31.ia64.rpm ppc: php-4.3.9-3.31.ppc.rpm php-debuginfo-4.3.9-3.31.ppc.rpm php-devel-4.3.9-3.31.ppc.rpm php-domxml-4.3.9-3.31.ppc.rpm php-gd-4.3.9-3.31.ppc.rpm php-imap-4.3.9-3.31.ppc.rpm php-ldap-4.3.9-3.31.ppc.rpm php-mbstring-4.3.9-3.31.ppc.rpm php-mysql-4.3.9-3.31.ppc.rpm php-ncurses-4.3.9-3.31.ppc.rpm php-odbc-4.3.9-3.31.ppc.rpm php-pear-4.3.9-3.31.ppc.rpm php-pgsql-4.3.9-3.31.ppc.rpm php-snmp-4.3.9-3.31.ppc.rpm php-xmlrpc-4.3.9-3.31.ppc.rpm s390: php-4.3.9-3.31.s390.rpm php-debuginfo-4.3.9-3.31.s390.rpm php-devel-4.3.9-3.31.s390.rpm php-domxml-4.3.9-3.31.s390.rpm php-gd-4.3.9-3.31.s390.rpm php-imap-4.3.9-3.31.s390.rpm php-ldap-4.3.9-3.31.s390.rpm php-mbstring-4.3.9-3.31.s390.rpm php-mysql-4.3.9-3.31.s390.rpm php-ncurses-4.3.9-3.31.s390.rpm php-odbc-4.3.9-3.31.s390.rpm php-pear-4.3.9-3.31.s390.rpm php-pgsql-4.3.9-3.31.s390.rpm php-snmp-4.3.9-3.31.s390.rpm php-xmlrpc-4.3.9-3.31.s390.rpm s390x: php-4.3.9-3.31.s390x.rpm php-debuginfo-4.3.9-3.31.s390x.rpm php-devel-4.3.9-3.31.s390x.rpm php-domxml-4.3.9-3.31.s390x.rpm php-gd-4.3.9-3.31.s390x.rpm php-imap-4.3.9-3.31.s390x.rpm php-ldap-4.3.9-3.31.s390x.rpm php-mbstring-4.3.9-3.31.s390x.rpm php-mysql-4.3.9-3.31.s390x.rpm php-ncurses-4.3.9-3.31.s390x.rpm php-odbc-4.3.9-3.31.s390x.rpm php-pear-4.3.9-3.31.s390x.rpm php-pgsql-4.3.9-3.31.s390x.rpm php-snmp-4.3.9-3.31.s390x.rpm php-xmlrpc-4.3.9-3.31.s390x.rpm x86_64: php-4.3.9-3.31.x86_64.rpm php-debuginfo-4.3.9-3.31.x86_64.rpm php-devel-4.3.9-3.31.x86_64.rpm php-domxml-4.3.9-3.31.x86_64.rpm php-gd-4.3.9-3.31.x86_64.rpm php-imap-4.3.9-3.31.x86_64.rpm php-ldap-4.3.9-3.31.x86_64.rpm php-mbstring-4.3.9-3.31.x86_64.rpm php-mysql-4.3.9-3.31.x86_64.rpm php-ncurses-4.3.9-3.31.x86_64.rpm php-odbc-4.3.9-3.31.x86_64.rpm php-pear-4.3.9-3.31.x86_64.rpm php-pgsql-4.3.9-3.31.x86_64.rpm php-snmp-4.3.9-3.31.x86_64.rpm php-xmlrpc-4.3.9-3.31.x86_64.rpm Red Hat Enterprise Linux Desktop version 4: Source: i386: php-4.3.9-3.31.i386.rpm php-debuginfo-4.3.9-3.31.i386.rpm php-devel-4.3.9-3.31.i386.rpm php-domxml-4.3.9-3.31.i386.rpm php-gd-4.3.9-3.31.i386.rpm php-imap-4.3.9-3.31.i386.rpm php-ldap-4.3.9-3.31.i386.rpm php-mbstring-4.3.9-3.31.i386.rpm php-mysql-4.3.9-3.31.i386.rpm php-ncurses-4.3.9-3.31.i386.rpm php-odbc-4.3.9-3.31.i386.rpm php-pear-4.3.9-3.31.i386.rpm php-pgsql-4.3.9-3.31.i386.rpm php-snmp-4.3.9-3.31.i386.rpm php-xmlrpc-4.3.9-3.31.i386.rpm x86_64: php-4.3.9-3.31.x86_64.rpm php-debuginfo-4.3.9-3.31.x86_64.rpm php-devel-4.3.9-3.31.x86_64.rpm php-domxml-4.3.9-3.31.x86_64.rpm php-gd-4.3.9-3.31.x86_64.rpm php-imap-4.3.9-3.31.x86_64.rpm php-ldap-4.3.9-3.31.x86_64.rpm php-mbstring-4.3.9-3.31.x86_64.rpm php-mysql-4.3.9-3.31.x86_64.rpm php-ncurses-4.3.9-3.31.x86_64.rpm php-odbc-4.3.9-3.31.x86_64.rpm php-pear-4.3.9-3.31.x86_64.rpm php-pgsql-4.3.9-3.31.x86_64.rpm php-snmp-4.3.9-3.31.x86_64.rpm php-xmlrpc-4.3.9-3.31.x86_64.rpm Red Hat Enterprise Linux ES version4: Source: i386: php-4.3.9-3.31.i386.rpm php-debuginfo-4.3.9-3.31.i386.rpm php-devel-4.3.9-3.31.i386.rpm php-domxml-4.3.9-3.31.i386.rpm php-gd-4.3.9-3.31.i386.rpm php-imap-4.3.9-3.31.i386.rpm php-ldap-4.3.9-3.31.i386.rpm php-mbstring-4.3.9-3.31.i386.rpm php-mysql-4.3.9-3.31.i386.rpm php-ncurses-4.3.9-3.31.i386.rpm php-odbc-4.3.9-3.31.i386.rpm php-pear-4.3.9-3.31.i386.rpm php-pgsql-4.3.9-3.31.i386.rpm php-snmp-4.3.9-3.31.i386.rpm php-xmlrpc-4.3.9-3.31.i386.rpm ia64: php-4.3.9-3.31.ia64.rpm php-debuginfo-4.3.9-3.31.ia64.rpm php-devel-4.3.9-3.31.ia64.rpm php-domxml-4.3.9-3.31.ia64.rpm php-gd-4.3.9-3.31.ia64.rpm php-imap-4.3.9-3.31.ia64.rpm php-ldap-4.3.9-3.31.ia64.rpm php-mbstring-4.3.9-3.31.ia64.rpm php-mysql-4.3.9-3.31.ia64.rpm php-ncurses-4.3.9-3.31.ia64.rpm php-odbc-4.3.9-3.31.ia64.rpm php-pear-4.3.9-3.31.ia64.rpm php-pgsql-4.3.9-3.31.ia64.rpm php-snmp-4.3.9-3.31.ia64.rpm php-xmlrpc-4.3.9-3.31.ia64.rpm x86_64: php-4.3.9-3.31.x86_64.rpm php-debuginfo-4.3.9-3.31.x86_64.rpm php-devel-4.3.9-3.31.x86_64.rpm php-domxml-4.3.9-3.31.x86_64.rpm php-gd-4.3.9-3.31.x86_64.rpm php-imap-4.3.9-3.31.x86_64.rpm php-ldap-4.3.9-3.31.x86_64.rpm php-mbstring-4.3.9-3.31.x86_64.rpm php-mysql-4.3.9-3.31.x86_64.rpm php-ncurses-4.3.9-3.31.x86_64.rpm php-odbc-4.3.9-3.31.x86_64.rpm php-pear-4.3.9-3.31.x86_64.rpm php-pgsql-4.3.9-3.31.x86_64.rpm php-snmp-4.3.9-3.31.x86_64.rpm php-xmlrpc-4.3.9-3.31.x86_64.rpm Red Hat Enterprise Linux WS version4: Source: i386: php-4.3.9-3.31.i386.rpm php-debuginfo-4.3.9-3.31.i386.rpm php-devel-4.3.9-3.31.i386.rpm php-domxml-4.3.9-3.31.i386.rpm php-gd-4.3.9-3.31.i386.rpm php-imap-4.3.9-3.31.i386.rpm php-ldap-4.3.9-3.31.i386.rpm php-mbstring-4.3.9-3.31.i386.rpm php-mysql-4.3.9-3.31.i386.rpm php-ncurses-4.3.9-3.31.i386.rpm php-odbc-4.3.9-3.31.i386.rpm php-pear-4.3.9-3.31.i386.rpm php-pgsql-4.3.9-3.31.i386.rpm php-snmp-4.3.9-3.31.i386.rpm php-xmlrpc-4.3.9-3.31.i386.rpm ia64: php-4.3.9-3.31.ia64.rpm php-debuginfo-4.3.9-3.31.ia64.rpm php-devel-4.3.9-3.31.ia64.rpm php-domxml-4.3.9-3.31.ia64.rpm php-gd-4.3.9-3.31.ia64.rpm php-imap-4.3.9-3.31.ia64.rpm php-ldap-4.3.9-3.31.ia64.rpm php-mbstring-4.3.9-3.31.ia64.rpm php-mysql-4.3.9-3.31.ia64.rpm php-ncurses-4.3.9-3.31.ia64.rpm php-odbc-4.3.9-3.31.ia64.rpm php-pear-4.3.9-3.31.ia64.rpm php-pgsql-4.3.9-3.31.ia64.rpm php-snmp-4.3.9-3.31.ia64.rpm php-xmlrpc-4.3.9-3.31.ia64.rpm x86_64: php-4.3.9-3.31.x86_64.rpm php-debuginfo-4.3.9-3.31.x86_64.rpm php-devel-4.3.9-3.31.x86_64.rpm php-domxml-4.3.9-3.31.x86_64.rpm php-gd-4.3.9-3.31.x86_64.rpm php-imap-4.3.9-3.31.x86_64.rpm php-ldap-4.3.9-3.31.x86_64.rpm php-mbstring-4.3.9-3.31.x86_64.rpm php-mysql-4.3.9-3.31.x86_64.rpm php-ncurses-4.3.9-3.31.x86_64.rpm php-odbc-4.3.9-3.31.x86_64.rpm php-pear-4.3.9-3.31.x86_64.rpm php-pgsql-4.3.9-3.31.x86_64.rpm php-snmp-4.3.9-3.31.x86_64.rpm php-xmlrpc-4.3.9-3.31.x86_64.rpm RHEL Desktop Workstation (v. 5client): Source: i386: php-5.1.6-27.el5_5.3.i386.rpm php-bcmath-5.1.6-27.el5_5.3.i386.rpm php-cli-5.1.6-27.el5_5.3.i386.rpm php-common-5.1.6-27.el5_5.3.i386.rpm php-dba-5.1.6-27.el5_5.3.i386.rpm php-debuginfo-5.1.6-27.el5_5.3.i386.rpm php-devel-5.1.6-27.el5_5.3.i386.rpm php-gd-5.1.6-27.el5_5.3.i386.rpm php-imap-5.1.6-27.el5_5.3.i386.rpm php-ldap-5.1.6-27.el5_5.3.i386.rpm php-mbstring-5.1.6-27.el5_5.3.i386.rpm php-mysql-5.1.6-27.el5_5.3.i386.rpm php-ncurses-5.1.6-27.el5_5.3.i386.rpm php-odbc-5.1.6-27.el5_5.3.i386.rpm php-pdo-5.1.6-27.el5_5.3.i386.rpm php-pgsql-5.1.6-27.el5_5.3.i386.rpm php-snmp-5.1.6-27.el5_5.3.i386.rpm php-soap-5.1.6-27.el5_5.3.i386.rpm php-xml-5.1.6-27.el5_5.3.i386.rpm php-xmlrpc-5.1.6-27.el5_5.3.i386.rpm x86_64: php-5.1.6-27.el5_5.3.x86_64.rpm php-bcmath-5.1.6-27.el5_5.3.x86_64.rpm php-cli-5.1.6-27.el5_5.3.x86_64.rpm php-common-5.1.6-27.el5_5.3.x86_64.rpm php-dba-5.1.6-27.el5_5.3.x86_64.rpm php-debuginfo-5.1.6-27.el5_5.3.x86_64.rpm php-devel-5.1.6-27.el5_5.3.x86_64.rpm php-gd-5.1.6-27.el5_5.3.x86_64.rpm php-imap-5.1.6-27.el5_5.3.x86_64.rpm php-ldap-5.1.6-27.el5_5.3.x86_64.rpm php-mbstring-5.1.6-27.el5_5.3.x86_64.rpm php-mysql-5.1.6-27.el5_5.3.x86_64.rpm php-ncurses-5.1.6-27.el5_5.3.x86_64.rpm php-odbc-5.1.6-27.el5_5.3.x86_64.rpm php-pdo-5.1.6-27.el5_5.3.x86_64.rpm php-pgsql-5.1.6-27.el5_5.3.x86_64.rpm php-snmp-5.1.6-27.el5_5.3.x86_64.rpm php-soap-5.1.6-27.el5_5.3.x86_64.rpm php-xml-5.1.6-27.el5_5.3.x86_64.rpm php-xmlrpc-5.1.6-27.el5_5.3.x86_64.rpm Red Hat Enterprise Linux (v. 5server): Source: i386: php-5.1.6-27.el5_5.3.i386.rpm php-bcmath-5.1.6-27.el5_5.3.i386.rpm php-cli-5.1.6-27.el5_5.3.i386.rpm php-common-5.1.6-27.el5_5.3.i386.rpm php-dba-5.1.6-27.el5_5.3.i386.rpm php-debuginfo-5.1.6-27.el5_5.3.i386.rpm php-devel-5.1.6-27.el5_5.3.i386.rpm php-gd-5.1.6-27.el5_5.3.i386.rpm php-imap-5.1.6-27.el5_5.3.i386.rpm php-ldap-5.1.6-27.el5_5.3.i386.rpm php-mbstring-5.1.6-27.el5_5.3.i386.rpm php-mysql-5.1.6-27.el5_5.3.i386.rpm php-ncurses-5.1.6-27.el5_5.3.i386.rpm php-odbc-5.1.6-27.el5_5.3.i386.rpm php-pdo-5.1.6-27.el5_5.3.i386.rpm php-pgsql-5.1.6-27.el5_5.3.i386.rpm php-snmp-5.1.6-27.el5_5.3.i386.rpm php-soap-5.1.6-27.el5_5.3.i386.rpm php-xml-5.1.6-27.el5_5.3.i386.rpm php-xmlrpc-5.1.6-27.el5_5.3.i386.rpm ia64: php-5.1.6-27.el5_5.3.ia64.rpm php-bcmath-5.1.6-27.el5_5.3.ia64.rpm php-cli-5.1.6-27.el5_5.3.ia64.rpm php-common-5.1.6-27.el5_5.3.ia64.rpm php-dba-5.1.6-27.el5_5.3.ia64.rpm php-debuginfo-5.1.6-27.el5_5.3.ia64.rpm php-devel-5.1.6-27.el5_5.3.ia64.rpm php-gd-5.1.6-27.el5_5.3.ia64.rpm php-imap-5.1.6-27.el5_5.3.ia64.rpm php-ldap-5.1.6-27.el5_5.3.ia64.rpm php-mbstring-5.1.6-27.el5_5.3.ia64.rpm php-mysql-5.1.6-27.el5_5.3.ia64.rpm php-ncurses-5.1.6-27.el5_5.3.ia64.rpm php-odbc-5.1.6-27.el5_5.3.ia64.rpm php-pdo-5.1.6-27.el5_5.3.ia64.rpm php-pgsql-5.1.6-27.el5_5.3.ia64.rpm php-snmp-5.1.6-27.el5_5.3.ia64.rpm php-soap-5.1.6-27.el5_5.3.ia64.rpm php-xml-5.1.6-27.el5_5.3.ia64.rpm php-xmlrpc-5.1.6-27.el5_5.3.ia64.rpm ppc: php-5.1.6-27.el5_5.3.ppc.rpm php-bcmath-5.1.6-27.el5_5.3.ppc.rpm php-cli-5.1.6-27.el5_5.3.ppc.rpm php-common-5.1.6-27.el5_5.3.ppc.rpm php-dba-5.1.6-27.el5_5.3.ppc.rpm php-debuginfo-5.1.6-27.el5_5.3.ppc.rpm php-devel-5.1.6-27.el5_5.3.ppc.rpm php-gd-5.1.6-27.el5_5.3.ppc.rpm php-imap-5.1.6-27.el5_5.3.ppc.rpm php-ldap-5.1.6-27.el5_5.3.ppc.rpm php-mbstring-5.1.6-27.el5_5.3.ppc.rpm php-mysql-5.1.6-27.el5_5.3.ppc.rpm php-ncurses-5.1.6-27.el5_5.3.ppc.rpm php-odbc-5.1.6-27.el5_5.3.ppc.rpm php-pdo-5.1.6-27.el5_5.3.ppc.rpm php-pgsql-5.1.6-27.el5_5.3.ppc.rpm php-snmp-5.1.6-27.el5_5.3.ppc.rpm php-soap-5.1.6-27.el5_5.3.ppc.rpm php-xml-5.1.6-27.el5_5.3.ppc.rpm php-xmlrpc-5.1.6-27.el5_5.3.ppc.rpm s390x: php-5.1.6-27.el5_5.3.s390x.rpm php-bcmath-5.1.6-27.el5_5.3.s390x.rpm php-cli-5.1.6-27.el5_5.3.s390x.rpm php-common-5.1.6-27.el5_5.3.s390x.rpm php-dba-5.1.6-27.el5_5.3.s390x.rpm php-debuginfo-5.1.6-27.el5_5.3.s390x.rpm php-devel-5.1.6-27.el5_5.3.s390x.rpm php-gd-5.1.6-27.el5_5.3.s390x.rpm php-imap-5.1.6-27.el5_5.3.s390x.rpm php-ldap-5.1.6-27.el5_5.3.s390x.rpm php-mbstring-5.1.6-27.el5_5.3.s390x.rpm php-mysql-5.1.6-27.el5_5.3.s390x.rpm php-ncurses-5.1.6-27.el5_5.3.s390x.rpm php-odbc-5.1.6-27.el5_5.3.s390x.rpm php-pdo-5.1.6-27.el5_5.3.s390x.rpm php-pgsql-5.1.6-27.el5_5.3.s390x.rpm php-snmp-5.1.6-27.el5_5.3.s390x.rpm php-soap-5.1.6-27.el5_5.3.s390x.rpm php-xml-5.1.6-27.el5_5.3.s390x.rpm php-xmlrpc-5.1.6-27.el5_5.3.s390x.rpm x86_64: php-5.1.6-27.el5_5.3.x86_64.rpm php-bcmath-5.1.6-27.el5_5.3.x86_64.rpm php-cli-5.1.6-27.el5_5.3.x86_64.rpm php-common-5.1.6-27.el5_5.3.x86_64.rpm php-dba-5.1.6-27.el5_5.3.x86_64.rpm php-debuginfo-5.1.6-27.el5_5.3.x86_64.rpm php-devel-5.1.6-27.el5_5.3.x86_64.rpm php-gd-5.1.6-27.el5_5.3.x86_64.rpm php-imap-5.1.6-27.el5_5.3.x86_64.rpm php-ldap-5.1.6-27.el5_5.3.x86_64.rpm php-mbstring-5.1.6-27.el5_5.3.x86_64.rpm php-mysql-5.1.6-27.el5_5.3.x86_64.rpm php-ncurses-5.1.6-27.el5_5.3.x86_64.rpm php-odbc-5.1.6-27.el5_5.3.x86_64.rpm php-pdo-5.1.6-27.el5_5.3.x86_64.rpm php-pgsql-5.1.6-27.el5_5.3.x86_64.rpm php-snmp-5.1.6-27.el5_5.3.x86_64.rpm php-soap-5.1.6-27.el5_5.3.x86_64.rpm php-xml-5.1.6-27.el5_5.3.x86_64.rpm php-xmlrpc-5.1.6-27.el5_5.3.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key#package 7.References: https://access.redhat.com/security/cve/CVE-2009-5016 https://access.redhat.com/security/cve/CVE-2010-0397 https://access.redhat.com/security/cve/CVE-2010-1128 https://access.redhat.com/security/cve/CVE-2010-1917 https://access.redhat.com/security/cve/CVE-2010-2531 https://access.redhat.com/security/cve/CVE-2010-3065 https://access.redhat.com/security/cve/CVE-2010-3870 https://access.redhat.com/security/updates/classification#moderate 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2010 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.4 (GNU/Linux) iD8DBQFM9B4uXlSAg2UNWIIRAtgBAJwONIvgqNaAhnt5o6xZL6NEfRINjwCbBOqb pl5q85Dktazh8MJSGYxiOS0=1XjU -----END PGP SIGNATURE----- -- Enterprise-watch-list mailing list
Get the latest Linux and open source security news straight to your inbox.