Moderate: sos security and bug fix update. Date: Tue, 9 Feb 2016 09:17:58 -0600 Reply-To: Pat Riehecky Sender: Security Errata for Scientific Linux From: Pat Riehecky Subject: FASTBUGS for SL 6x i386, x86_64 now available MIME-Version: 1.0 Message-ID: The following FASTBUGS have been uploadedto i386: 389-ds-base-1.2.11.15-69.el6_7.i686.rpm 389-ds-base-devel-1.2.11.15-69.el6_7.i686.rpm 389-ds-base-libs-1.2.11.15-69.el6_7.i686.rpm chkconfig-1.3.49.3-5.el6_7.2.i686.rpm clusterlib-3.0.12.1-73.el6_7.2.i686.rpm clusterlib-devel-3.0.12.1-73.el6_7.2.i686.rpm cman-3.0.12.1-73.el6_7.2.i686.rpm cups-pk-helper-0.0.4-13.el6.i686.rpm debugmode-9.03.49-1.el6_7.4.i686.rpm dnsmasq-2.48-16.el6_7.i686.rpm dnsmasq-utils-2.48-16.el6_7.i686.rpm firefox-38.6.0-2.el6_7.i686.rpm gedit-2.28.4-4.el6.i686.rpm gedit-devel-2.28.4-4.el6.i686.rpm gfs2-utils-3.0.12.1-73.el6_7.2.i686.rpm httpd-2.2.15-47.sl6.2.i686.rpm httpd-2.2.15-47.sl6.3.i686.rpm httpd-devel-2.2.15-47.sl6.2.i686.rpm httpd-devel-2.2.15-47.sl6.3.i686.rpm httpd-manual-2.2.15-47.sl6.2.noarch.rpm httpd-manual-2.2.15-47.sl6.3.noarch.rpm httpd-tools-2.2.15-47.sl6.2.i686.rpm httpd-tools-2.2.15-47.sl6.3.i686.rpm initscripts-9.03.49-1.el6_7.4.i686.rpm kdelibs-4.3.4-24.el6_7.i686.rpm kdelibs-apidocs-4.3.4-24.el6_7.noarch.rpm kdelibs-common-4.3.4-24.el6_7.i686.rpm kdelibs-devel-4.3.4-24.el6_7.i686.rpm kernel-2.6.32-573.18.1.el6.i686.rpm kernel-abi-whitelists-2.6.32-573.18.1.el6.noarch.rpm kernel-debug-2.6.32-573.18.1.el6.i686.rpm kernel-debug-devel-2.6.32-573.18.1.el6.i686.rpm kernel-devel-2.6.32-573.18.1.el6.i686.rpm kernel-doc-2.6.32-573.18.1.el6.noarch.rpm kernel-firmware-2.6.32-573.18.1.el6.noarch.rpm kernel-headers-2.6.32-573.18.1.el6.i686.rpm kexec-tools-2.0.0-286.el6_7.1.i686.rpm kexec-tools-eppic-2.0.0-286.el6_7.1.i686.rpm libgovirt-0.3.2-1.el6_7.2.i686.rpm libgovirt-devel-0.3.2-1.el6_7.2.i686.rpm libipa_hbac-1.12.4-47.el6_7.7.i686.rpm libipa_hbac-devel-1.12.4-47.el6_7.7.i686.rpm libipa_hbac-python-1.12.4-47.el6_7.7.i686.rpm librdmacm-1.0.19.1-1.1.el6_7.i686.rpm librdmacm-devel-1.0.19.1-1.1.el6_7.i686.rpm librdmacm-static-1.0.19.1-1.1.el6_7.i686.rpm librdmacm-utils-1.0.19.1-1.1.el6_7.i686.rpm libsss_idmap-1.12.4-47.el6_7.7.i686.rpm libsss_idmap-devel-1.12.4-47.el6_7.7.i686.rpm libsss_nss_idmap-1.12.4-47.el6_7.7.i686.rpm libsss_nss_idmap-devel-1.12.4-47.el6_7.7.i686.rpm libsss_nss_idmap-python-1.12.4-47.el6_7.7.i686.rpm libsss_simpleifp-1.12.4-47.el6_7.7.i686.rpm libsss_simpleifp-devel-1.12.4-47.el6_7.7.i686.rpm mod_ssl-2.2.15-47.sl6.2.i686.rpm mod_ssl-2.2.15-47.sl6.3.i686.rpm ntsysv-1.3.49.3-5.el6_7.2.i686.rpm pango-1.28.1-11.el6.i686.rpm pango-devel-1.28.1-11.el6.i686.rpm paps-0.6.8-13.el6.3.i686.rpm paps-devel-0.6.8-13.el6.3.i686.rpm paps-libs-0.6.8-13.el6.3.i686.rpm perf-2.6.32-573.18.1.el6.i686.rpm php-5.3.3-46.el6_7.1.i686.rpm php-bcmath-5.3.3-46.el6_7.1.i686.rpm php-cli-5.3.3-46.el6_7.1.i686.rpm php-common-5.3.3-46.el6_7.1.i686.rpm php-dba-5.3.3-46.el6_7.1.i686.rpm php-devel-5.3.3-46.el6_7.1.i686.rpm php-embedded-5.3.3-46.el6_7.1.i686.rpm php-enchant-5.3.3-46.el6_7.1.i686.rpm php-fpm-5.3.3-46.el6_7.1.i686.rpm php-gd-5.3.3-46.el6_7.1.i686.rpm php-imap-5.3.3-46.el6_7.1.i686.rpm php-intl-5.3.3-46.el6_7.1.i686.rpm php-ldap-5.3.3-46.el6_7.1.i686.rpm php-mbstring-5.3.3-46.el6_7.1.i686.rpm php-mysql-5.3.3-46.el6_7.1.i686.rpm php-odbc-5.3.3-46.el6_7.1.i686.rpm php-pdo-5.3.3-46.el6_7.1.i686.rpm php-pgsql-5.3.3-46.el6_7.1.i686.rpm php-process-5.3.3-46.el6_7.1.i686.rpm php-pspell-5.3.3-46.el6_7.1.i686.rpm php-recode-5.3.3-46.el6_7.1.i686.rpm php-snmp-5.3.3-46.el6_7.1.i686.rpm php-soap-5.3.3-46.el6_7.1.i686.rpm php-tidy-5.3.3-46.el6_7.1.i686.rpm php-xml-5.3.3-46.el6_7.1.i686.rpm php-xmlrpc-5.3.3-46.el6_7.1.i686.rpm php-zts-5.3.3-46.el6_7.1.i686.rpm pki-ca-9.0.3-45.el6_7.noarch.rpm pki-common-9.0.3-45.el6_7.noarch.rpm pki-common-javadoc-9.0.3-45.el6_7.noarch.rpm pki-java-tools-9.0.3-45.el6_7.noarch.rpm pki-java-tools-javadoc-9.0.3-45.el6_7.noarch.rpm pki-native-tools-9.0.3-45.el6_7.i686.rpm pki-selinux-9.0.3-45.el6_7.noarch.rpm pki-setup-9.0.3-45.el6_7.noarch.rpm pki-silent-9.0.3-45.el6_7.noarch.rpm pki-symkey-9.0.3-45.el6_7.i686.rpm pki-util-9.0.3-45.el6_7.noarch.rpm pki-util-javadoc-9.0.3-45.el6_7.noarch.rpm poppler-0.12.4-5.el6_7.1.i686.rpm poppler-devel-0.12.4-5.el6_7.1.i686.rpm poppler-glib-0.12.4-5.el6_7.1.i686.rpm poppler-glib-devel-0.12.4-5.el6_7.1.i686.rpm poppler-qt-0.12.4-5.el6_7.1.i686.rpm poppler-qt4-0.12.4-5.el6_7.1.i686.rpm poppler-qt4-devel-0.12.4-5.el6_7.1.i686.rpm poppler-qt-devel-0.12.4-5.el6_7.1.i686.rpm poppler-utils-0.12.4-5.el6_7.1.i686.rpm pulseaudio-0.9.21-24.el6.i686.rpm pulseaudio-esound-compat-0.9.21-24.el6.i686.rpm pulseaudio-gdm-hooks-0.9.21-24.el6.i686.rpm pulseaudio-libs-0.9.21-24.el6.i686.rpm pulseaudio-libs-devel-0.9.21-24.el6.i686.rpm pulseaudio-libs-glib2-0.9.21-24.el6.i686.rpm pulseaudio-libs-zeroconf-0.9.21-24.el6.i686.rpm pulseaudio-module-bluetooth-0.9.21-24.el6.i686.rpm pulseaudio-module-gconf-0.9.21-24.el6.i686.rpm pulseaudio-module-x11-0.9.21-24.el6.i686.rpm pulseaudio-module-zeroconf-0.9.21-24.el6.i686.rpm pulseaudio-utils-0.9.21-24.el6.i686.rpm python-perf-2.6.32-573.18.1.el6.i686.rpm python-sssdconfig-1.12.4-47.el6_7.7.noarch.rpm sg3_utils-1.28-9.el6_7.i686.rpm sg3_utils-devel-1.28-9.el6_7.i686.rpm sg3_utils-libs-1.28-9.el6_7.i686.rpm sssd-1.12.4-47.el6_7.7.i686.rpm sssd-ad-1.12.4-47.el6_7.7.i686.rpm sssd-client-1.12.4-47.el6_7.7.i686.rpm sssd-common-1.12.4-47.el6_7.7.i686.rpm sssd-common-pac-1.12.4-47.el6_7.7.i686.rpm sssd-dbus-1.12.4-47.el6_7.7.i686.rpm sssd-ipa-1.12.4-47.el6_7.7.i686.rpm sssd-krb5-1.12.4-47.el6_7.7.i686.rpm sssd-krb5-common-1.12.4-47.el6_7.7.i686.rpm sssd-ldap-1.12.4-47.el6_7.7.i686.rpm sssd-proxy-1.12.4-47.el6_7.7.i686.rpm sssd-tools-1.12.4-47.el6_7.7.i686.rpm urw-fonts-2.4-11.el6.noarch.rpm virt-manager-0.9.0-29.el6_7.1.i686.rpm x86_64: 389-ds-base-1.2.11.15-69.el6_7.x86_64.rpm 389-ds-base-devel-1.2.11.15-69.el6_7.i686.rpm 389-ds-base-devel-1.2.11.15-69.el6_7.x86_64.rpm 389-ds-base-libs-1.2.11.15-69.el6_7.i686.rpm 389-ds-base-libs-1.2.11.15-69.el6_7.x86_64.rpm chkconfig-1.3.49.3-5.el6_7.2.x86_64.rpm clusterlib-3.0.12.1-73.el6_7.2.i686.rpm clusterlib-3.0.12.1-73.el6_7.2.x86_64.rpm clusterlib-devel-3.0.12.1-73.el6_7.2.i686.rpm clusterlib-devel-3.0.12.1-73.el6_7.2.x86_64.rpm cman-3.0.12.1-73.el6_7.2.x86_64.rpm cups-pk-helper-0.0.4-13.el6.x86_64.rpm debugmode-9.03.49-1.el6_7.4.x86_64.rpm dnsmasq-2.48-16.el6_7.x86_64.rpm dnsmasq-utils-2.48-16.el6_7.x86_64.rpm firefox-38.6.0-2.el6_7.i686.rpm firefox-38.6.0-2.el6_7.x86_64.rpm gedit-2.28.4-4.el6.x86_64.rpm gedit-devel-2.28.4-4.el6.i686.rpm gedit-devel-2.28.4-4.el6.x86_64.rpm gfs2-utils-3.0.12.1-73.el6_7.2.x86_64.rpm httpd-2.2.15-47.sl6.2.x86_64.rpm httpd-2.2.15-47.sl6.3.x86_64.rpm httpd-devel-2.2.15-47.sl6.2.i686.rpm httpd-devel-2.2.15-47.sl6.2.x86_64.rpm httpd-devel-2.2.15-47.sl6.3.i686.rpm httpd-devel-2.2.15-47.sl6.3.x86_64.rpm httpd-manual-2.2.15-47.sl6.2.noarch.rpm httpd-manual-2.2.15-47.sl6.3.noarch.rpm httpd-tools-2.2.15-47.sl6.2.x86_64.rpm httpd-tools-2.2.15-47.sl6.3.x86_64.rpm initscripts-9.03.49-1.el6_7.4.x86_64.rpm kdelibs-4.3.4-24.el6_7.i686.rpm kdelibs-4.3.4-24.el6_7.x86_64.rpm kdelibs-apidocs-4.3.4-24.el6_7.noarch.rpm kdelibs-common-4.3.4-24.el6_7.x86_64.rpm kdelibs-devel-4.3.4-24.el6_7.i686.rpm kdelibs-devel-4.3.4-24.el6_7.x86_64.rpm kernel-2.6.32-573.18.1.el6.x86_64.rpm kernel-abi-whitelists-2.6.32-573.18.1.el6.noarch.rpm kernel-debug-2.6.32-573.18.1.el6.x86_64.rpm kernel-debug-devel-2.6.32-573.18.1.el6.x86_64.rpm kernel-devel-2.6.32-573.18.1.el6.x86_64.rpm kernel-doc-2.6.32-573.18.1.el6.noarch.rpm kernel-firmware-2.6.32-573.18.1.el6.noarch.rpm kernel-headers-2.6.32-573.18.1.el6.x86_64.rpm kexec-tools-2.0.0-286.el6_7.1.x86_64.rpm kexec-tools-eppic-2.0.0-286.el6_7.1.x86_64.rpm libgovirt-0.3.2-1.el6_7.2.i686.rpm libgovirt-0.3.2-1.el6_7.2.x86_64.rpm libgovirt-devel-0.3.2-1.el6_7.2.i686.rpm libgovirt-devel-0.3.2-1.el6_7.2.x86_64.rpm libipa_hbac-1.12.4-47.el6_7.7.i686.rpm libipa_hbac-1.12.4-47.el6_7.7.x86_64.rpm libipa_hbac-devel-1.12.4-47.el6_7.7.i686.rpm libipa_hbac-devel-1.12.4-47.el6_7.7.x86_64.rpm libipa_hbac-python-1.12.4-47.el6_7.7.x86_64.rpm librdmacm-1.0.19.1-1.1.el6_7.i686.rpm librdmacm-1.0.19.1-1.1.el6_7.x86_64.rpm librdmacm-devel-1.0.19.1-1.1.el6_7.i686.rpm librdmacm-devel-1.0.19.1-1.1.el6_7.x86_64.rpm librdmacm-static-1.0.19.1-1.1.el6_7.x86_64.rpm librdmacm-utils-1.0.19.1-1.1.el6_7.x86_64.rpm libsss_idmap-1.12.4-47.el6_7.7.i686.rpm libsss_idmap-1.12.4-47.el6_7.7.x86_64.rpm libsss_idmap-devel-1.12.4-47.el6_7.7.i686.rpm libsss_idmap-devel-1.12.4-47.el6_7.7.x86_64.rpm libsss_nss_idmap-1.12.4-47.el6_7.7.i686.rpm libsss_nss_idmap-1.12.4-47.el6_7.7.x86_64.rpm libsss_nss_idmap-devel-1.12.4-47.el6_7.7.i686.rpm libsss_nss_idmap-devel-1.12.4-47.el6_7.7.x86_64.rpm libsss_nss_idmap-python-1.12.4-47.el6_7.7.x86_64.rpm libsss_simpleifp-1.12.4-47.el6_7.7.i686.rpm libsss_simpleifp-1.12.4-47.el6_7.7.x86_64.rpm libsss_simpleifp-devel-1.12.4-47.el6_7.7.i686.rpm libsss_simpleifp-devel-1.12.4-47.el6_7.7.x86_64.rpm mod_ssl-2.2.15-47.sl6.2.x86_64.rpm mod_ssl-2.2.15-47.sl6.3.x86_64.rpm ntsysv-1.3.49.3-5.el6_7.2.x86_64.rpm pango-1.28.1-11.el6.i686.rpm pango-1.28.1-11.el6.x86_64.rpm pango-devel-1.28.1-11.el6.i686.rpm pango-devel-1.28.1-11.el6.x86_64.rpm paps-0.6.8-13.el6.3.x86_64.rpm paps-devel-0.6.8-13.el6.3.i686.rpm paps-devel-0.6.8-13.el6.3.x86_64.rpm paps-libs-0.6.8-13.el6.3.i686.rpm paps-libs-0.6.8-13.el6.3.x86_64.rpm perf-2.6.32-573.18.1.el6.x86_64.rpm php-5.3.3-46.el6_7.1.x86_64.rpm php-bcmath-5.3.3-46.el6_7.1.x86_64.rpm php-cli-5.3.3-46.el6_7.1.x86_64.rpm php-common-5.3.3-46.el6_7.1.x86_64.rpm php-dba-5.3.3-46.el6_7.1.x86_64.rpm php-devel-5.3.3-46.el6_7.1.x86_64.rpm php-embedded-5.3.3-46.el6_7.1.x86_64.rpm php-enchant-5.3.3-46.el6_7.1.x86_64.rpm php-fpm-5.3.3-46.el6_7.1.x86_64.rpm php-gd-5.3.3-46.el6_7.1.x86_64.rpm php-imap-5.3.3-46.el6_7.1.x86_64.rpm php-intl-5.3.3-46.el6_7.1.x86_64.rpm php-ldap-5.3.3-46.el6_7.1.x86_64.rpm php-mbstring-5.3.3-46.el6_7.1.x86_64.rpm php-mysql-5.3.3-46.el6_7.1.x86_64.rpm php-odbc-5.3.3-46.el6_7.1.x86_64.rpm php-pdo-5.3.3-46.el6_7.1.x86_64.rpm php-pgsql-5.3.3-46.el6_7.1.x86_64.rpm php-process-5.3.3-46.el6_7.1.x86_64.rpm php-pspell-5.3.3-46.el6_7.1.x86_64.rpm php-recode-5.3.3-46.el6_7.1.x86_64.rpm php-snmp-5.3.3-46.el6_7.1.x86_64.rpm php-soap-5.3.3-46.el6_7.1.x86_64.rpm php-tidy-5.3.3-46.el6_7.1.x86_64.rpm php-xml-5.3.3-46.el6_7.1.x86_64.rpm php-xmlrpc-5.3.3-46.el6_7.1.x86_64.rpm php-zts-5.3.3-46.el6_7.1.x86_64.rpm pki-ca-9.0.3-45.el6_7.noarch.rpm pki-common-9.0.3-45.el6_7.noarch.rpm pki-common-javadoc-9.0.3-45.el6_7.noarch.rpm pki-java-tools-9.0.3-45.el6_7.noarch.rpm pki-java-tools-javadoc-9.0.3-45.el6_7.noarch.rpm pki-native-tools-9.0.3-45.el6_7.x86_64.rpm pki-selinux-9.0.3-45.el6_7.noarch.rpm pki-setup-9.0.3-45.el6_7.noarch.rpm pki-silent-9.0.3-45.el6_7.noarch.rpm pki-symkey-9.0.3-45.el6_7.x86_64.rpm pki-util-9.0.3-45.el6_7.noarch.rpm pki-util-javadoc-9.0.3-45.el6_7.noarch.rpm poppler-0.12.4-5.el6_7.1.i686.rpm poppler-0.12.4-5.el6_7.1.x86_64.rpm poppler-devel-0.12.4-5.el6_7.1.i686.rpm poppler-devel-0.12.4-5.el6_7.1.x86_64.rpm poppler-glib-0.12.4-5.el6_7.1.i686.rpm poppler-glib-0.12.4-5.el6_7.1.x86_64.rpm poppler-glib-devel-0.12.4-5.el6_7.1.i686.rpm poppler-glib-devel-0.12.4-5.el6_7.1.x86_64.rpm poppler-qt-0.12.4-5.el6_7.1.i686.rpm poppler-qt-0.12.4-5.el6_7.1.x86_64.rpm poppler-qt4-0.12.4-5.el6_7.1.i686.rpm poppler-qt4-0.12.4-5.el6_7.1.x86_64.rpm poppler-qt4-devel-0.12.4-5.el6_7.1.i686.rpm poppler-qt4-devel-0.12.4-5.el6_7.1.x86_64.rpm poppler-qt-devel-0.12.4-5.el6_7.1.i686.rpm poppler-qt-devel-0.12.4-5.el6_7.1.x86_64.rpm poppler-utils-0.12.4-5.el6_7.1.x86_64.rpm pulseaudio-0.9.21-24.el6.x86_64.rpm pulseaudio-esound-compat-0.9.21-24.el6.x86_64.rpm pulseaudio-gdm-hooks-0.9.21-24.el6.x86_64.rpm pulseaudio-libs-0.9.21-24.el6.i686.rpm pulseaudio-libs-0.9.21-24.el6.x86_64.rpm pulseaudio-libs-devel-0.9.21-24.el6.i686.rpm pulseaudio-libs-devel-0.9.21-24.el6.x86_64.rpm pulseaudio-libs-glib2-0.9.21-24.el6.i686.rpm pulseaudio-libs-glib2-0.9.21-24.el6.x86_64.rpm pulseaudio-libs-zeroconf-0.9.21-24.el6.i686.rpm pulseaudio-libs-zeroconf-0.9.21-24.el6.x86_64.rpm pulseaudio-module-bluetooth-0.9.21-24.el6.x86_64.rpm pulseaudio-module-gconf-0.9.21-24.el6.x86_64.rpm pulseaudio-module-x11-0.9.21-24.el6.x86_64.rpm pulseaudio-module-zeroconf-0.9.21-24.el6.x86_64.rpm pulseaudio-utils-0.9.21-24.el6.i686.rpm pulseaudio-utils-0.9.21-24.el6.x86_64.rpm python-perf-2.6.32-573.18.1.el6.x86_64.rpm python-sssdconfig-1.12.4-47.el6_7.7.noarch.rpm sg3_utils-1.28-9.el6_7.x86_64.rpm sg3_utils-devel-1.28-9.el6_7.i686.rpm sg3_utils-devel-1.28-9.el6_7.x86_64.rpm sg3_utils-libs-1.28-9.el6_7.i686.rpm sg3_utils-libs-1.28-9.el6_7.x86_64.rpm sssd-1.12.4-47.el6_7.7.x86_64.rpm sssd-ad-1.12.4-47.el6_7.7.x86_64.rpm sssd-client-1.12.4-47.el6_7.7.i686.rpm sssd-client-1.12.4-47.el6_7.7.x86_64.rpm sssd-common-1.12.4-47.el6_7.7.x86_64.rpm sssd-common-pac-1.12.4-47.el6_7.7.x86_64.rpm sssd-dbus-1.12.4-47.el6_7.7.x86_64.rpm sssd-ipa-1.12.4-47.el6_7.7.x86_64.rpm sssd-krb5-1.12.4-47.el6_7.7.x86_64.rpm sssd-krb5-common-1.12.4-47.el6_7.7.x86_64.rpm sssd-ldap-1.12.4-47.el6_7.7.x86_64.rpm sssd-proxy-1.12.4-47.el6_7.7.x86_64.rpm sssd-tools-1.12.4-47.el6_7.7.x86_64.rpm urw-fonts-2.4-11.el6.noarch.rpm virt-manager-0.9.0-29.el6_7.1.x86_64.rpm Date: Tue, 9 Feb 2016 17:04:10 +0000 Reply-To: scientific-linux-users@ Sender: Security Errata for Scientific Linux From: Pat Riehecky Subject: Security ERRATA Moderate: sos on SL6.x (noarch) MIME-Version: 1.0 Message-ID: Synopsis: Moderate: sos security and bug fix update Advisory ID: SLSA-2016:0152-1 Issue Date: 2016-02-09 CVE Numbers: CVE-2015-7529 -- An insecure temporary file use flaw was found in the way sos created certain sosreport files. A local attacker could possibly use this flaw to perform a symbolic link attack to reveal the contents of sosreport files, or in some cases modify arbitrary files and escalate their privileges on the system. (CVE-2015-7529) This update also fixes the following bug: * Previously, when the hpasm plug-in ran the "hpasmcli" command in a Python Popen constructor or a system pipeline, the command would hang and eventually time out after 300 seconds. Sos was forced to wait for the time out to finish, unnecessarily prolonging its run time. With this update, the timeout of the "hpasmcli" command has been set to 0, eliminating the delay and speeding up sos completion time. -- SL6 noarch sos-3.2-28.el6_7.2.noarch.rpm - Scientific Linux Development Team . A recent security patch in Scientific Linux addresses a symbolic link vulnerability and enhancesthe efficiency of command execution times.. Scientific Linux Update,sos security issue,symbolic link flaw,bug fix advisory. . Severity: Important. LinuxSecurity.com Team
Low: sos security, bug fix, and enhancement update. Date: Mon, 9 Jul 2012 09:59:19 -0500 Reply-To:
Get the latest Linux and open source security news straight to your inbox.