[RedHat-Announcements] BES Auto Notification: New Fixlets Published in Fixlet Site: PatchesforRedHatEnterpriseLinux

redhat-announcements at bigmail.bigfix.com redhat-announcements at bigmail.bigfix.com
Wed Jul 27 02:15:20 PDT 2005


Fixlet Site - PatchesforRedHatEnterpriseLinux
Current Version: 46	Published: Tue, 26 Jul 2005 20:19:23 GMT


***************************************************************
Title: RHSA-2005:582 - Httpd Security Update - Red Hat Enterprise 3.0
Severity: Moderate
Fixlet ID: 200558201
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-582.html

Fixlet Description: Updated Apache httpd packages to correct two security issues are now available.Users of Apache httpd should update to these erratum packages that contain backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:640 - Fetchmail Security Update - Red Hat Enterprise 3.0
Severity: Important
Fixlet ID: 200564001
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-640.html

Fixlet Description: An updated fetchmail package that fixes a buffer overflow security vulnerability is now available.Users of fetchmail should update to this erratum package which contains a backported patch to correct this issue.

***************************************************************
Title: RHSA-2005:025 - Exim Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200502501
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-025.html

Fixlet Description: Updated exim packages that resolve security issues are now available.Users of exim are advised to update to these erratum packages which contain backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:026 - teTeX Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200502601
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-026.html

Fixlet Description: Updated teTeX packages that resolve security issues are now available.Users should update to these erratum packages which contain backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:033 - Alsa-Lib Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200503301
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-033.html

Fixlet Description: An updated alsa-lib package that fixes a flaw that disabled stack execution protection is now available.Users are advised to upgrade to these updated packages, which contain a patched version of the library which correctly enables stack execution protection.

***************************************************************
Title: RHSA-2005:034 - Xpdf Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200503401
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-034.html

Fixlet Description: An updated Xpdf package that fixes several security issues is now available.All users of Xpdf should upgrade to this updated package, which contains backported patches to resolve these issues.

***************************************************************
Title: RHSA-2005:035 - Libtiff Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200503501
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-035.html

Fixlet Description: Updated libtiff packages that fix various integer overflows are now available.All users are advised to upgrade to these updated packages, which contain backported fixes for these issues.

***************************************************************
Title: RHSA-2005:036 - Vim Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200503601
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-036.html

Fixlet Description: Updated vim packages that fix security vulnerabilities are now available.All users of vim are advised to upgrade to these erratum packages, which contain backported patches for these issues.

***************************************************************
Title: RHSA-2005:040 - Enscript Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200504001
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-040.html

Fixlet Description: An updated enscript package that fixes several security issues is now available.All users of enscript should upgrade to this updated package, which contains backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:053 - CUPS Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200505301
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-053.html

Fixlet Description: Updated CUPS packages that fix several security issues are now available.All users of CUPS should upgrade to these updated packages, which contain backported patches to resolve these issues.

***************************************************************
Title: RHSA-2005:057 - Gpdf Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200505701
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-057.html

Fixlet Description: An updated gpdf package that fixes two security issues is now available.Users should update to this erratum package which contains backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:066 - Kdegraphics Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200506601
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-066.html

Fixlet Description: Updated kdegraphics packages that resolve security issues in kpdf are now available.Users should update to these erratum packages which contain backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:072 - perl-DBI Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200507201
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-072.html

Fixlet Description: An updated perl-DBI package that fixes a temporary file flaw in DBI::ProxyServer is now available.Users should update to this erratum package which disables the temporary PID file unless configured.

***************************************************************
Title: RHSA-2005:073 - Cpio Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200507301
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-073.html

Fixlet Description: An updated cpio package that fixes a umask bug is now available.Users of cpio should upgrade to this updated package, which resolves this issue.

***************************************************************
Title: RHSA-2005:090 - htDig Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200509001
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-090.html

Fixlet Description: Updated ht://Dig packages that fix a security flaw are now available.Users of ht://Dig should upgrade to these updated packages, which contain a backported patch, and are not vulnerable to this issue.

***************************************************************
Title: RHSA-2005:099 - Squirrelmail Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200509901
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-099.html

Fixlet Description: An updated Squirrelmail package that fixes several security issues is now available.Users of Squirrelmail are advised to upgrade to this updated package, which contains backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:100 - mod_python Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200510001
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-100.html

Fixlet Description: An updated mod_python package that fixes a security issue in the publisher handle is now available.Users of mod_python are advised to upgrade to this updated package, which contains a backported patch to correct this issue.

***************************************************************
Title: RHSA-2005:102 - Dbus Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200510201
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-102.html

Fixlet Description: Updated dbus packages that fix a security issue are now available.Users of dbus are advised to upgrade to these updated packages, which contain backported patches to correct this issue.

***************************************************************
Title: RHSA-2005:103 - Perl Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200510301
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-103.html

Fixlet Description: Updated Perl packages that fix several security issues are now available.Users of Perl are advised to upgrade to these updated packages, which contains backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:108 - Python Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200510801
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-108.html

Fixlet Description: Updated Python packages that fix several security issues are now available.Users of Python are advised to upgrade to these updated packages, which contain backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:110 - Emacs Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200511001
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-110.html

Fixlet Description: Updated Emacs packages are now available that fix a string format bug which results in a remote code execution vulnerability. Users of Emacs are advised to upgrade to these updated packages, which contain backported patches to correct this issue.

***************************************************************
Title: RHSA-2005:133 - XEmacs Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200513301
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-133.html

Fixlet Description: Updated XEmacs packages are now available that fix a string format bug which results in a remote code execution vulnerability.Users of XEmacs are advised to upgrade to these updated packages, which contain backported patches to correct this issue.

***************************************************************
Title: RHSA-2005:152 - Postfix Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200515201
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-152.html

Fixlet Description: Updated postfix packages that include a security fix and two other bug fixes are now available.All users of postfix should upgrade to these updated packages, which contain patches which resolve these issues.

***************************************************************
Title: RHSA-2005:165 - Rsh Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200516501
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-165.html

Fixlet Description: Updated rsh packages that fix various bugs and a theoretical security issue are now available.All users of rsh should upgrade to these updated packages, which resolve these issues.

***************************************************************
Title: RHSA-2005:198 - Xorg-X11 Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200519801
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-198.html

Fixlet Description: Updated xorg-x11 packages that fix a security issue as well as various bugs are now available. In addition to these, this release has a large number of additional stability fixes which resolve various other issues reported since the initial release of Red Hat Enterprise Linux 4. All users of X11 should upgrade to these updated packages, which resolve all of these issues.

***************************************************************
Title: RHSA-2005:232 - Ipsec-Tools Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200523205
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-232.html

Fixlet Description: An updated ipsec-tools package that fixes a bug in parsing of ISAKMP headers is now available.Users of ipsec-tools should upgrade to this updated package, which contains backported patches, and is not vulnerable to this issue.

***************************************************************
Title: RHSA-2005:235 - Mailman Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200523503
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-235.html

Fixlet Description: An updated mailman package that corrects a cross-site scripting flaw is now available.Users of mailman should update to this erratum package, which corrects this issue by turning on STEALTH_MODE by default and using Utils.websafe() to quote the html.

***************************************************************
Title: RHSA-2005:300 - Libexif Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200530001
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-300.html

Fixlet Description: Updated libexif packages that fix a buffer overflow issue are now available.Users of libexif should upgrade to these updated packages, which contain a backported patch and are not vulnerable to this issue.

***************************************************************
Title: RHSA-2005:332 - Xloadimage Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200533203
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-332.html

Fixlet Description: A new xloadimage package that fixes bugs in handling malformed TIFF and PBM/PNM/PPM images, and in handling metacharacters in filenames is now available.All users of xloadimage should upgrade to this erratum package which contains backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:340 - cURL Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200534005
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-340.html

Fixlet Description: Updated cURL packages are now available that fix multiple buffer overflow bugs.All users of cURL are advised to upgrade to these updated packages, which contain backported fixes for these issues.

***************************************************************
Title: RHSA-2005:343 - Gdk-Pixbuf Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200534303
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-343.html

Fixlet Description: Updated gdk-pixbuf packages that fix a double free vulnerability are now available.Users of gdk-pixbuf are advised to upgrade to these packages, which contain a backported patch and is not vulnerable to this issue.

***************************************************************
Title: RHSA-2005:344 - Gtk2 Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200534405
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-344.html

Fixlet Description: Updated gtk2 packages that fix a double free vulnerability are now available.Users of gtk2 are advised to upgrade to these packages, which contain a backported patch and is not vulnerable to this issue.

***************************************************************
Title: RHSA-2005:357 - Gzip Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200535703
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-357.html

Fixlet Description: An updated gzip package is now available that solves a remote code execution vulnerability and various other issues.Users of gzip should upgrade to this updated package, which contains backported patches to correct issues.

***************************************************************
Title: RHSA-2005:375 - Openoffice.Org Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200537502
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-375.html

Fixlet Description: Updated openoffice.org packages are now available that address a buffer overflow bug.All users of OpenOffice.org are advised to upgrade to these updated packages, which contain backported fixes for these issues.

***************************************************************
Title: RHSA-2005:377 - Sharutils Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200537703
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-377.html

Fixlet Description: An updated sharutils package is now available.All users of sharutils should upgrade to this updated package, which includes backported fixes to correct these issues.

***************************************************************
Title: RHSA-2005:378 - Cpio Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200537803
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-378.html

Fixlet Description: An updated cpio package that fixes multiple issues is now available. All users of cpio are advised to upgrade to this updated package, which contains backported fixes for these issues.

***************************************************************
Title: RHSA-2005:381 - NASM Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200538103
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-381.html

Fixlet Description: An updated NASM package that fixes multiple security issues is now available.All users of NASM advised to upgrade to this updated package, which contains backported fixes for these issues.

***************************************************************
Title: RHSA-2005:387 - CVS Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200538703
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-387.html

Fixlet Description: An updated CVS package that fixes security bugs is now available.All users of CVS should upgrade to this updated package, which includes a backported patch to correct these issues.

***************************************************************
Title: RHSA-2005:393 - Kdelibs Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200539301
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-393.html

Fixlet Description: Updated kdelibs packages that fix a flaw in kimgio input validation are now available.All users of kdelibs should upgrade to these updated packages, which contain a backported security patch to correct these issues.

***************************************************************
Title: RHSA-2005:397 - Evolution Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200539701
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-397.html

Fixlet Description: Updated evolution packages that fix various security issues are now available.All users of evolution should upgrade to these updated packages, which include backported fixes to correct these issues.

***************************************************************
Title: RHSA-2005:408 - Cyrus-IMAPd Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200540801
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-408.html

Fixlet Description: Updated Cyrus-IMAPd packages that fix several buffer overflow security issues are now available.Users of Cyrus-IMAPd are advised to upgrade to these updated packages, which contain Cyrus-IMAPd version 2.2.12 to correct these issues.

***************************************************************
Title: RHSA-2005:410 - gFTP Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200541003
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-410.html

Fixlet Description: An updated gFTP package that fixes a directory traversal issue is now available.Users of gftp should upgrade to this updated package, which contains a backported fix for this issue.

***************************************************************
Title: RHSA-2005:412 - OpenMotif Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200541203
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-412.html

Fixlet Description: Updated OpenMotif packages that fix a flaw in the Xpm image library are now available.Users of OpenMotif are advised to upgrade to these erratum packages, which contain a backported security patch to the embedded libXpm library.

***************************************************************
Title: RHSA-2005:415 - Squid Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200541503
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-415.html

Fixlet Description: An updated squid package that fixes several security issues is now available.  Users of squid should upgrade to this updated package, which contains backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:420 - Updated Kernel Packages - Red Hat Enterprise 4.0
Severity: <N/A>
Fixlet ID: 200542001
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-420.html

Fixlet Description: Updated kernel packages are now available as part of ongoing support and maintenance of Red Hat Enterprise Linux 4.  This is the first regular update.All Red Hat Enterprise Linux 4 users are advised to upgrade their kernels to the packages associated with their machine architectures and configurations as listed in this erratum.

***************************************************************
Title: RHSA-2005:427 - Ethereal Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200542703
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-427.html

Fixlet Description: Updated Ethereal packages that fix various security vulnerabilities are now available.Users of Ethereal should upgrade to these updated packages, which contain version 0.10.11 which is not vulnerable to these issues.

***************************************************************
Title: RHSA-2005:430 - GnuTLS Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200543001
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-430.html

Fixlet Description: Updated GnuTLS packages that fix a remote denial of service vulnerability are available for Red Hat Enterprise Linux 4.All users of GnuTLS are advised to upgrade to these updated packages and to restart any services which use GnuTLS.

***************************************************************
Title: RHSA-2005:433 - PostgreSQL Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200543303
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-433.html

Fixlet Description: Updated PostgreSQL packages that fix several security vulnerabilities and risks of data loss are now available.All users of PostgreSQL are advised to upgrade to these updated packages and to apply the manual corrections recommended on the erratum page to existing databases.

***************************************************************
Title: RHSA-2005:474 - Bzip2 Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200547403
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-474.html

Fixlet Description: Updated bzip2 packages that fix multiple issues are now available.Users of bzip2 should upgrade to these updated packages, which contain backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:476 - OpenSSL Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200547603
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-476.html

Fixlet Description: Updated OpenSSL packages that fix security issues are now available.Users are advised to update to these erratum packages which contain patches to correct these issues.

***************************************************************
Title: RHSA-2005:480 - ImageMagick Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200548003
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-480.html

Fixlet Description: Updated ImageMagick packages that fix a denial of service issue are now available. Users of ImageMagick should upgrade to these updated packages, which contain a backported patch, and are not vulnerable to this issue. 

***************************************************************
Title: RHSA-2005:498 - SpamAssassin Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200549801
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-498.html

Fixlet Description: An updated SpamAssassin package that fixes a denial of service bug when parsing malformed messages is now available.Users of SpamAssassin should update to this updated package, containing version 3.0.4 which is not vulnerable to this issue and resolves this bug as well as other various bugs.

***************************************************************
Title: RHSA-2005:499 - Gedit Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200549903
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-499.html

Fixlet Description: An updated gedit package that fixes a file name format string vulnerability is now available.Users of gedit should upgrade to these updated packages, which contain a backported patch to correct this issue.

***************************************************************
Title: RHSA-2005:502 - Sysreport Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200550202
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-502.html

Fixlet Description: An updated sysreport package that fixes an information disclosure flaw is now available.Users of sysreport should update to this erratum package, which contains a patch that removes any proxy authentication passwords.

***************************************************************
Title: RHSA-2005:504 - Telnet Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200550403
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-504.html

Fixlet Description: Updated telnet packages that fix an information disclosure issue are now available.Users of telnet should upgrade to this updated package, which contains a backported patch to correct this issue.

***************************************************************
Title: RHSA-2005:505 - Tcpdump Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200550501
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-505.html

Fixlet Description: Updated tcpdump packages that fix a security issue are now available.Users of tcpdump are advised to upgrade to these erratum packages, which contain backported security patches and are not vulnerable to these issues.

***************************************************************
Title: RHSA-2005:506 - Mikmod Security Update - Red Hat Enterprise 4.0
Severity: Low
Fixlet ID: 200550603
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-506.html

Fixlet Description: Updated mikmod packages that fix a security issue are now available.Users of mikmod are advised to upgrade to these erratum packages, which contain backported security patches and are not vulnerable to these issues.

***************************************************************
Title: RHSA-2005:517 - Helixplayer Security Update - Red Hat Enterprise 4.0
Severity: Critical
Fixlet ID: 200551701
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-517.html

Fixlet Description: An updated HelixPlayer package that fixes a buffer overflow issue is now available.All users of HelixPlayer are advised to upgrade to this updated package, which contains HelixPlayer version 10.0.5 and is not vulnerable to this issue.

***************************************************************
Title: RHSA-2005:518 - Gaim Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200551803
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-518.html

Fixlet Description: An updated gaim package that fixes two denial of service issues is now available.Users of gaim are advised to upgrade to this updated package, which contains version 1.3.1 and is not vulnerable to these issues.

***************************************************************
Title: RHSA-2005:518 - Dependencies Needed - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200551805
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-518.html

Fixlet Description: An updated gaim package that fixes two denial of service issues is now available. However, this security update requires the package "mozilla-nspr" to be installed at a version of at least "1.7.3-18.EL4" and the package "mozilla-nss" to be installed at a version of at least "1.7.3-18.EL4". You must install or upgrade these packages in order for this security update to become relevant.

***************************************************************
Title: RHSA-2005:523 - Realplayer Security Update - Red Hat Enterprise 4.0
Severity: Critical
Fixlet ID: 200552305
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-523.html

Fixlet Description: An updated RealPlayer package that fixes a buffer overflow issue is now available.All users of RealPlayer are advised to upgrade to this updated package, which contains RealPlayer version 10.0.5 and is not vulnerable to this issue.

***************************************************************
Title: RHSA-2005:524 - Freeradius Security Update - Red Hat Enterprise 4.0 (AS/ES)
Severity: Moderate
Fixlet ID: 200552404
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-524.html

Fixlet Description: An updated freeradius package is now available that fixes a buffer overflow and prevents possible SQL injection attacks in the sql module. Users of freeradius should update to this erratum package, which contains a backported patch and is not vulnerable to these issues. 

***************************************************************
Title: RHSA-2005:535 - Sudo Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200553503
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-535.html

Fixlet Description: An updated sudo package is available that fixes a race condition in sudo's pathname validation. Users of sudo should apply this update, which contains a backported patch and is not vulnerable to this issue. 

***************************************************************
Title: RHSA-2005:564 - Php Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200556403
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-564.html

Fixlet Description: Updated PHP packages that fix two security issues are now available.Users of PHP should upgrade to these updated packages, which contain backported fixes for these issues.

***************************************************************
Title: RHSA-2005:567 - Krb5 Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200556701
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-567.html

Fixlet Description: Updated krb5 packages that fix multiple security issues are now available.All users of krb5 should update to these erratum packages, which contain backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:575 - Adobe Acrobat Reader Security Update - Red Hat Enterprise 4.0
Severity: Critical
Fixlet ID: 200557503
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-575.html

Fixlet Description: Updated acroread packages that fix a security issue are now available.All users of Acrobat Reader are advised to upgrade to these updated packages, which contain Acrobat Reader version 7.0.0 and are not vulnerable to this issue.

***************************************************************
Title: RHSA-2005:582 - Httpd Security Update - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200558203
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-582.html

Fixlet Description: Updated Apache httpd packages to correct two security issues are now available. Users of Apache httpd should update to these erratum packages that contain backported patches to correct these issues.

***************************************************************
Title: RHSA-2005:582 - Dependencies Needed - Red Hat Enterprise 4.0
Severity: Moderate
Fixlet ID: 200558205
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-582.html

Fixlet Description: Updated Apache httpd packages to correct two security issues are now available. However, this security update requires the package "apr" to be installed at a version of at least "0.9.4-24.2".  You must install or upgrade these packages in order for this security update to become relevant.

***************************************************************
Title: RHSA-2005:584 - Zlib Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200558401
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-584.html

Fixlet Description: Updated zlib packages that fix a buffer overflow are now available.All users of zlib should update to these errata packages that contain a patch that corrects this issue.

***************************************************************
Title: RHSA-2005:586 - Firefox Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200558601
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-586.html

Fixlet Description: An updated Firefox package that fixes various security bugs is now available.Users of Firefox are advised to upgrade to this updated package that contains Firefox version 1.0.6 and is not vulnerable to these issues.

***************************************************************
Title: RHSA-2005:587 - Mozilla Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200558703
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-587.html

Fixlet Description: Updated Mozilla packages that fix various security issues are now available.Users of Mozilla are advised to upgrade to these updated packages, which contain Mozilla version 1.7.10 and are not vulnerable to these issues.

***************************************************************
Title: RHSA-2005:601 - Thunderbird Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200560101
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-601.html

Fixlet Description: An updated Thunderbird package that fixes various bugs is now available.Users of Thunderbird are advised to upgrade to this updated package that contains Thunderbird version 1.0.6 and is not vulnerable to these issues.

***************************************************************
Title: RHSA-2005:639 - Kdenetwork Security Update - Red Hat Enterprise 4.0
Severity: Critical
Fixlet ID: 200563901
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-639.html

Fixlet Description: Updated kdenetwork packages to correct a security flaw in Kopete, the KDE instant messenger, are now available.Note that this issue does not affect Red Hat Enterprise Linux 2.1 or 3.Users of Kopete should update to these packages which contain a patch to correct this issue.

***************************************************************
Title: RHSA-2005:640 - Fetchmail Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200564003
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-640.html

Fixlet Description: An updated fetchmail package that fixes a buffer overflow security vulnerability is now available. Users of fetchmail should update to this erratum package which contains a backported patch to correct this issue.

***************************************************************
Title: RHSA-2005:330 - Krb5 Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200533002
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-330.html

Fixlet Description: 

***************************************************************
Title: RHSA-2005:337 - Thunderbird Security Update - Red Hat Enterprise 4.0
Severity: Critical
Fixlet ID: 200533701
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-337.html

Fixlet Description: 

***************************************************************
Title: RHSA-2005:434 - Firefox Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200543401
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-434.html

Fixlet Description: 

***************************************************************
Title: RHSA-2005:435 - Mozilla Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200543504
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-435.html

Fixlet Description: 

***************************************************************
Title: RHSA-2005:569 - Zlib Security Update - Red Hat Enterprise 4.0
Severity: Important
Fixlet ID: 200556901
Fixlet Link: https://rhn.redhat.com/errata/RHSA-2005-569.html

Fixlet Description: 


More information about the RedHat-Announcements mailing list