Red Hat 9313 Published by Philipp Esselbach 0

Updated php packages are available for Red Hat Linux 7.3, 9, and Fedora Core 1

---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated php packages fix security issues
Advisory ID: FLSA:2344
Issue date: 2005-03-07
Product: Red Hat Linux, Fedora Core
Keywords: Bugfix
Cross references: https://bugzilla.fedora.us/show_bug.cgi?id=2344
CVE Names: CAN-2004-0958 CAN-2004-0959 CAN-2004-1018
CAN-2004-1019 CAN-2004-1065 CAN-2004-1392
---------------------------------------------------------------------


---------------------------------------------------------------------
1. Topic:

Updated php packages that fix various security issues are now available.

PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Web server.

2. Relevant releases/architectures:

Red Hat Linux 7.3 - i386
Red Hat Linux 9 - i386
Fedora Core 1 - i386

Red Hat 9313 Published by Philipp Esselbach 0

Updated subversion packages are available for Red Hat Linux 9

---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated subversion packages fix security issues
Advisory ID: FLSA:1748
Issue date: 2005-03-07
Product: Red Hat Linux
Keywords: Bugfix
Cross references: https://bugzilla.fedora.us/show_bug.cgi?id=1748
CVE Names: CAN-2004-0397 CAN-2004-0413
---------------------------------------------------------------------


---------------------------------------------------------------------
1. Topic:

Updated subversion packages that fix several security issues are now available.

Subversion is a concurrent version control system.

2. Relevant releases/architectures:

Red Hat Linux 9 - i386

Red Hat 9313 Published by Philipp Esselbach 0

A Mozilla security update is available for Red Hat Enterprise Linux 4

----------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Critical: mozilla security update
Advisory ID: RHSA-2005:277-01
Advisory URL: https://rhn.redhat.com/errata/RHSA-2005-277.html
Issue date: 2005-03-04
Updated on: 2005-03-04
Product: Red Hat Enterprise Linux
CVE Names: CAN-2005-0255
----------------------------------------------------------------------

1. Summary:

Updated mozilla packages that fix a buffer overflow issue are now available.

This update has been rated as having critical security impact by the Red Hat Security Response Team.

2. Relevant releases/architectures:

Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Enterprise Linux Desktop version 4 - i386, x86_64
Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64

Red Hat 9313 Published by Philipp Esselbach 0

A mc update is available for Red Hat Enterprise Linux 2.1

----------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Moderate: mc security update
Advisory ID: RHSA-2005:217-01
Advisory URL: https://rhn.redhat.com/errata/RHSA-2005-217.html
Issue date: 2005-03-04
Updated on: 2005-03-04
Product: Red Hat Enterprise Linux
CVE Names: CAN-2004-1004 CAN-2004-1005 CAN-2004-1176
----------------------------------------------------------------------

1. Summary:

Updated mc packages that fix multiple security issues are now available.

This update has been rated as having moderate security impact by the Red Hat Security Response Team.

2. Relevant releases/architectures:

Red Hat Enterprise Linux AS (Advanced Server) version 2.1 - i386, ia64
Red Hat Linux Advanced Workstation 2.1 - ia64
Red Hat Enterprise Linux WS version 2.1 - i386

Red Hat 9313 Published by Philipp Esselbach 0

Updated xpdf packages are available for Red Hat Enterprise Linux 2.1 and 3

----------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Important: xpdf security update
Advisory ID: RHSA-2005:213-01
Advisory URL: https://rhn.redhat.com/errata/RHSA-2005-213.html
Issue date: 2005-03-04
Updated on: 2005-03-04
Product: Red Hat Enterprise Linux
CVE Names: CAN-2005-0206
----------------------------------------------------------------------

1. Summary:

An updated xpdf package that correctly fixes several integer overflows is now available.

This update has been rated as having important security impact by the Red Hat Security Response Team.

2. Relevant releases/architectures:

Red Hat Enterprise Linux AS (Advanced Server) version 2.1 - i386, ia64
Red Hat Linux Advanced Workstation 2.1 - ia64
Red Hat Enterprise Linux ES version 2.1 - i386
Red Hat Enterprise Linux WS version 2.1 - i386
Red Hat Enterprise Linux AS version 3 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Desktop version 3 - i386, x86_64
Red Hat Enterprise Linux ES version 3 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 3 - i386, ia64, x86_64

Red Hat 9313 Published by Philipp Esselbach 0

A HelixPlayer security update is available for Red Hat Enterprise Linux 4

----------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Critical: HelixPlayer security update
Advisory ID: RHSA-2005:271-01
Advisory URL: https://rhn.redhat.com/errata/RHSA-2005-271.html
Issue date: 2005-03-03
Updated on: 2005-03-03
Product: Red Hat Enterprise Linux
CVE Names: CAN-2005-0455 CAN-2005-0611
----------------------------------------------------------------------

1. Summary:

An updated HelixPlayer package that fixes two buffer overflow issues is now available.

This update has been rated as having critical security impact by the Red Hat Security Response Team.

2. Relevant releases/architectures:

Red Hat Enterprise Linux AS version 4 - i386, ppc, x86_64
Red Hat Enterprise Linux Desktop version 4 - i386, x86_64
Red Hat Enterprise Linux ES version 4 - i386, x86_64
Red Hat Enterprise Linux WS version 4 - i386, x86_64

Red Hat 9313 Published by Philipp Esselbach 0

A RealPlayer security update is available for Red Hat Enterprise Linux 4

----------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Critical: RealPlayer security update
Advisory ID: RHSA-2005:265-01
Advisory URL: https://rhn.redhat.com/errata/RHSA-2005-265.html
Issue date: 2005-03-03
Updated on: 2005-03-03
Product: Red Hat Enterprise Linux LACD
CVE Names: CAN-2005-0455 CAN-2005-0611
----------------------------------------------------------------------

1. Summary:

An updated RealPlayer package that fixes two buffer overflow issues is now available.

This update has been rated as having critical security impact by the Red Hat Security Response Team.

2. Relevant releases/architectures:

Red Hat Enterprise Linux LACD 4AS - i386
Red Hat Enterprise Linux LACD 4Desktop - i386
Red Hat Enterprise Linux LACD 4ES - i386
Red Hat Enterprise Linux LACD 4WS - i386

Red Hat 9313 Published by Philipp Esselbach 0

A kdenetwork security update is available for Red Hat Enterprise Linux 2.1 and 3

----------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Low: kdenetwork security update
Advisory ID: RHSA-2005:175-01
Advisory URL: https://rhn.redhat.com/errata/RHSA-2005-175.html
Issue date: 2005-03-03
Updated on: 2005-03-03
Product: Red Hat Enterprise Linux
CVE Names: CAN-2005-0205
----------------------------------------------------------------------

1. Summary:

Updated kdenetwork packages that fix a file descriptor leak are now available.

This update has been rated as having low security impact by the Red Hat Security Response Team

2. Relevant releases/architectures:

Red Hat Enterprise Linux AS (Advanced Server) version 2.1 - i386, ia64
Red Hat Linux Advanced Workstation 2.1 - ia64
Red Hat Enterprise Linux ES version 2.1 - i386
Red Hat Enterprise Linux WS version 2.1 - i386
Red Hat Enterprise Linux AS version 3 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Desktop version 3 - i386, x86_64
Red Hat Enterprise Linux ES version 3 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 3 - i386, ia64, x86_64

Red Hat 9313 Published by Philipp Esselbach 0

A squid security update is available for Red Hat enterprise Linux 2.1 and 3

----------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Moderate: squid security update
Advisory ID: RHSA-2005:173-01
Advisory URL: https://rhn.redhat.com/errata/RHSA-2005-173.html
Issue date: 2005-03-03
Updated on: 2005-03-03
Product: Red Hat Enterprise Linux
CVE Names: CAN-2005-0446
----------------------------------------------------------------------

1. Summary:

Updated squid packages that fix a denial of service issue are now available.

This update has been rated as having important security impact by the Red Hat Security Response Team

2. Relevant releases/architectures:

Red Hat Enterprise Linux AS (Advanced Server) version 2.1 - i386, ia64
Red Hat Linux Advanced Workstation 2.1 - ia64
Red Hat Enterprise Linux ES version 2.1 - i386
Red Hat Enterprise Linux AS version 3 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Desktop version 3 - i386, x86_64
Red Hat Enterprise Linux ES version 3 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 3 - i386, ia64, x86_64

Red Hat 9313 Published by Philipp Esselbach 0

Updated CUPS packages are available for Red Hat Linux 7.3, 9, and Fedora Core 1

-----------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated CUPS packages fix security vulnerabilities
Advisory ID: FLSA:2127
Issue date: 2005-03-02
Product: Red Hat Linux, Fedora Core
Keywords: Bugfix
Cross references: https://bugzilla.fedora.us/show_bug.cgi?id=2127
CVE Names: CAN-2004-0888 CAN-2004-0923 CAN-2004-1125
CAN-2004-1267 CAN-2004-1268 CAN-2004-1269
CAN-2004-1270 CAN-2005-0064
-----------------------------------------------------------------------


-----------------------------------------------------------------------
1. Topic:

Updated CUPS packages that fix several security issues are now available.

The Common UNIX Printing System provides a portable printing layer for UNIX(R) operating systems.

2. Relevant releases/architectures:

Red Hat Linux 7.3 - i386
Red Hat Linux 9 - i386
Fedora Core 1 - i386

Red Hat 9313 Published by Philipp Esselbach 0

Updated XFree86 packages are available for Red Hat Linux 7.3, 9, and Fedora Core 1

-----------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated XFree86 resolves security vulnerabilities
Advisory ID: FLSA:2314
Issue date: 2005-03-01
Product: Red Hat Linux
Product: Fedora Core
Keywords: Security
Cross references: https://bugzilla.fedora.us/show_bug.cgi?id=2314
CVE Names: CAN-2004-0083, CAN-2004-0084, CAN-2004-0106,
CAN-2004-0419, CAN-2004-0687, CAN-2004-0688,
CAN-2004-0692, CAN-2004-0914
-----------------------------------------------------------------------


-----------------------------------------------------------------------
1. Topic:

Updated XFree86 packages that fix multiple security flaws are now available.

XFree86 is an open source implementation of the X Window System. It provides the basic low level functionality which full fledged graphical user interfaces (GUIs) such as GNOME and KDE are designed upon.

2. Relevant releases/architectures:

Red Hat Linux 7.3 - i386
Red Hat Linux 9 - i386
Fedora Core 1 - i386

Red Hat 9313 Published by Philipp Esselbach 0

A firefox security update is available for Red Hat Enterprise Linux 4

----------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Critical: firefox security update
Advisory ID: RHSA-2005:176-01
Advisory URL: https://rhn.redhat.com/errata/RHSA-2005-176.html
Issue date: 2005-03-01
Updated on: 2005-03-01
Product: Red Hat Enterprise Linux
CVE Names: CAN-2004-1156 CAN-2005-0231 CAN-2005-0232 CAN-2005-0233 CAN-2005-0255 CAN-2005-0527 CAN-2005-0578 CAN-2005-0584 CAN-2005-0585 CAN-2005-0586 CAN-2005-0588 CAN-2005-0589 CAN-2005-0590 CAN-2005-0591 CAN-2005-0592 CAN-2005-0593
----------------------------------------------------------------------

1. Summary:

Updated firefox packages that fix various bugs are now available.

This update has been rated as having critical security impact by the Red Hat Security Response Team.

2. Relevant releases/architectures:

Red Hat Enterprise Linux AS version 4 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Enterprise Linux Desktop version 4 - i386, x86_64
Red Hat Enterprise Linux ES version 4 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 4 - i386, ia64, x86_64

Red Hat 9313 Published by Philipp Esselbach 0

Updated kernel packages are available for Red Hat Linux 7.3, 9, and Fedora Core 1

---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated kernel packages fix security issues
Advisory ID: FLSA:2336
Issue date: 2005-02-24
Product: Red Hat Linux, Fedora Core
Keywords: Bugfix
Cross references: https://bugzilla.fedora.us/show_bug.cgi?id=2336
CVE Names: CAN-2004-0177 CAN-2004-0685 CAN-2004-0814
CAN-2004-0883 CAN-2004-0949 CAN-2004-1016
CAN-2004-1017 CAN-2004-1056 CAN-2004-1068
CAN-2004-1070 CAN-2004-1071 CAN-2004-1072
CAN-2004-1073 CAN-2004-1074 CAN-2004-1137
CAN-2004-1234 CAN-2004-1235 CAN-2005-0001
---------------------------------------------------------------------


---------------------------------------------------------------------
1. Topic:

Updated kernel packages that fix several security issues are now available.

The Linux kernel handles the basic functions of the operating system.

2. Relevant releases/architectures:

Red Hat Linux 7.3 - i386
Red Hat Linux 9 - i386
Fedora Core 1 - i386

Red Hat 9313 Published by Philipp Esselbach 0

Updated vim packages are available for Red Hat Linux 7.3, 9, and Fedora Core 1

---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated vim packages fix security issues
Advisory ID: FLSA:2343
Issue date: 2005-02-23
Product: Red Hat Linux, Fedora Core
Keywords: Bugfix
Cross references: https://bugzilla.fedora.us/show_bug.cgi?id=2343
CVE Names: CAN-2004-1138 CAN-2005-0069
---------------------------------------------------------------------


---------------------------------------------------------------------
1. Topic:

Updated vim packages that fix multiple vulnerabilities are now available.

VIM (Vi IMproved) is an updated and improved version of the vi screen-based editor.

2. Relevant releases/architectures:

Red Hat Linux 7.3 - i386
Red Hat Linux 9 - i386
Fedora Core 1 - i386

Red Hat 9313 Published by Philipp Esselbach 0

An updated zlib package has been released for Fedora Core 1

---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated zlib package fixes security issues
Advisory ID: FLSA:2043
Issue date: 2005-02-23
Product: Fedora Core
Keywords: Bugfix
Cross references: https://bugzilla.fedora.us/show_bug.cgi?id
43
CVE Names: CAN-2004-0797
---------------------------------------------------------------------


---------------------------------------------------------------------
1. Topic:

An updated zlib package that fixes a security flaw is now available.

Zlib is a general-purpose, patent-free, lossless data compression library which is used by many different programs.

2. Relevant releases/architectures:

Fedora Core 1 - i386

Red Hat 9313 Published by Philipp Esselbach 0

Updated gdk-pixbuf packages are available for Red Hat Linux 7.3 and 9

---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated gdk-pixbuf packages fix security flaws
Advisory ID: FLSA:2005
Issue date: 2005-02-23
Product: Red Hat Linux
Keywords: Bugfix
Cross references: https://bugzilla.fedora.us/show_bug.cgi?id
05
CVE Names: CAN-2004-0111 CAN-2004-0753 CAN-2004-0782
CAN-2004-0783 CAN-2004-0788
---------------------------------------------------------------------


---------------------------------------------------------------------
1. Topic:

Updated gdk-pixbuf packages that fix several security flaws are now available.

The gdk-pixbuf package contains an image loading library used with the GNOME GUI desktop environment.

2. Relevant releases/architectures:

Red Hat Linux 7.3 - i386
Red Hat Linux 9 - i386

Red Hat 9313 Published by Philipp Esselbach 0

An imap security update has been released for Red Hat Enterprise Linux 3

----------------------------------------------------------------------
Red Hat Security Advisory

Synopsis: Moderate: imap security update
Advisory ID: RHSA-2005:128-01
Advisory URL: https://rhn.redhat.com/errata/RHSA-2005-128.html
Issue date: 2005-02-23
Updated on: 2005-02-23
Product: Red Hat Enterprise Linux
CVE Names: CAN-2005-0198
----------------------------------------------------------------------

1. Summary:

Updated imap packages to correct a security vulnerability in CRAM-MD5 authentication are now available for Red Hat Enterprise Linux 3.

This update has been rated as having moderate security impact by the Red Hat Security Response Team.

2. Relevant releases/architectures:

Red Hat Enterprise Linux AS version 3 - i386, ia64, ppc, s390, s390x, x86_64
Red Hat Desktop version 3 - i386, x86_64
Red Hat Enterprise Linux ES version 3 - i386, ia64, x86_64
Red Hat Enterprise Linux WS version 3 - i386, ia64, x86_64

Red Hat 9313 Published by Philipp Esselbach 0

Updated cdrtools packages are available for Red Hat Linux 9

---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated cdrtools packages fix a security issue
Advisory ID: FLSA:2058
Issue date: 2005-02-20
Product: Red Hat Linux
Keywords: Bugfix
Cross references: https://bugzilla.fedora.us/show_bug.cgi?id
58
CVE Names: CAN-2004-0806
---------------------------------------------------------------------


---------------------------------------------------------------------
1. Topic:

Updated cdrtools packages that fix a privilege escalation vulnerability are now available.

Cdrtools is a collection of CD/DVD utilities.

2. Relevant releases/architectures:

Red Hat Linux 9 - i386

Red Hat 9313 Published by Philipp Esselbach 0

Updated sox packages are available for Red Hat Linux 7.3 and 9

---------------------------------------------------------------------
Fedora Legacy Update Advisory

Synopsis: Updated sox packages fix buffer overflows
Advisory ID: FLSA:1945
Issue date: 2005-02-20
Product: Red Hat Linux
Keywords: Bugfix
Cross references: https://bugzilla.fedora.us/show_bug.cgi?id=1945
CVE Names: CAN-2004-0557
---------------------------------------------------------------------


---------------------------------------------------------------------
1. Topic:

Updated sox packages that fix buffer overflows in the WAV file handling code are now available.

SoX (Sound eXchange) is a sound file format converter. SoX can convert between many different digitized sound formats and perform simple sound manipulation functions, including sound effects.

2. Relevant releases/architectures:

Red Hat Linux 7.3 - i386
Red Hat Linux 9 - i386