Fixlet Site - PatchesforRedHatEnterpriseLinux Current Version: 178 Published: Wed, 28 Feb 2007 23:57:33 GMT *************************************************************** Title: RHBA-2006:0747 - Java-1.4.2-Ibm Bug Fix Update - Red Hat Enterprise 3.0 (Superseded) Severity: Fixlet ID: 200674701 Fixlet Link: https://rhn.redhat.com/errata/RHBA-2006-0747.html Fixlet Description: Note: RHSA-2007:0062 supersedes this errata. Updated java-1.4.2-ibm packages that comprise IBM's SR6 SDK release are now available. The following packages comprise IBM's 1.4.2 SR6 Java release: java-1.4.2-ibm java-1.4.2-ibm-devel java-1.4.2-ibm-src java-1.4.2-ibm-demo java-1.4.2-ibm-plugin java-1.4.2-ibm-jdbc These packages include the IBM Java 2 Runtime Environment and the IBM Java 2 Software Development Kit. The Java 2 Runtime Environment (JRE) consists of the Java virtual machine, the Java platform core classes and supporting files, and includes a Web browser plug-in for running Java applets. It is the runtime section of the Java 2 SDK, but without the development tools such as compilers and debuggers. The Java 2 Software Development Kit (SDK) is a development environment for building applications, applets, and components that can be deployed on the Java platform. The Java 2 SDK software includes tools useful for developing and testing programs written in the Java programming language. The Java 2 SDK software also includes a JDBC/ODBC bridge for Java applications that need to communicate with a database. These updated packages include IBM's SR6 SDK release. They fix a Runtime. exec permission bug and a crash in the exception handling code. All users of java-1.4.2-ibm should upgrade to these updated packages, which resolve these issues. *************************************************************** Title: RHSA-2007:0015 - Imagemagick Security Update - Red Hat Enterprise 3.0 Severity: Moderate Fixlet ID: 200701501 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0015.html Fixlet Description: Updated ImageMagick packages that correct several security issues are now available. Security flaws were discovered in the way ImageMagick decodes DCM, PALM, and SGI graphic files. An attacker may be able to execute arbitrary code on a victim's machine if they were able to trick the victim into opening a specially crafted image file. *************************************************************** Title: RHSA-2007:0018 - Fetchmail Security Update - Red Hat Enterprise 3.0 Severity: Moderate Fixlet ID: 200701801 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0018.html Fixlet Description: An updated fetchmail package that fixes two security issues is now available. *************************************************************** Title: RHSA-2007:0022 - Squirrelmail Security Update - Red Hat Enterprise 3.0 Severity: Moderate Fixlet ID: 200702201 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0022.html Fixlet Description: A new squirrelmail package that fixes security issues is now available for Red Hat Enterprise Linux 3 and 4. Notes: - After installing this update, users are advised to restart their httpd service to ensure that the updated version functions correctly. - config. php should NOT be modified, please modify config_local. php instead. - Known Bug: The configuration generator may potentially produce bad options that interfere with the operation of this application. Applying specific config changes to config_local. php manually is recommended. *************************************************************** Title: RHSA-2007:0022 - Dependencies Needed - Red Hat Enterprise 3.0 Severity: Moderate Fixlet ID: 200702207 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0022.html Fixlet Description: Updated squirrelmail packages that fix a security issue are now available. However, this update requires the package "php-mbstring" or the latest version of php. You must install this package in order for this update to become relevant. *************************************************************** Title: RHSA-2007:0044 - Bind Security Update - Red Hat Enterprise 3.0 Severity: Moderate Fixlet ID: 200704401 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0044.html Fixlet Description: Updated bind packages that fix a security issue and a bug are now available. *************************************************************** Title: RHSA-2007:0044 - Dependencies Needed - Red Hat Enterprise 3.0 Severity: Moderate Fixlet ID: 200704406 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0044.html Fixlet Description: Updated bind packages that fix a security issue are now available. However, this update requires the package "bind-libs." You must install this package in order for this update to become relevant. *************************************************************** Title: RHSA-2007:0060 - Samba Security Update - Red Hat Enterprise 3.0 Severity: Moderate Fixlet ID: 200706001 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0060.html Fixlet Description: Updated samba packages that fix a denial of service vulnerability are now available. Users of Samba should update to these packages, which contain a backported patch to correct this issue. *************************************************************** Title: RHSA-2007:0060 - Dependencies Needed - Red Hat Enterprise 3.0 Severity: Moderate Fixlet ID: 200706008 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0060.html Fixlet Description: Updated samba packages that fix a denial of service exploit are now available. However, this update requires at least version "1.2.7-31" of package "krb5-libs." You must install or upgrade this package in order for this update to become relevant. *************************************************************** Title: RHSA-2007:0062 - Java-1.4.2-Ibm Security Update - Red Hat Enterprise 3.0 Severity: Critical Fixlet ID: 200706201 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0062.html Fixlet Description: Updated java-1.4.2-ibm packages to correct several security issues are now available for Red Hat Enterprise Linux 3 and 4 Extras. All users of java-1.4.2-ibm should upgrade to these updated packages. *************************************************************** Title: RHSA-2007:0064 - PostgreSQL Security Update - Red Hat Enterprise 3.0 Severity: Moderate Fixlet ID: 200706401 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0064.html Fixlet Description: Updated postgresql packages that fix two security issues involving a denial of service attack and a bug are now available for Red Hat Enterprise Linux 3 and 4. Users of PostgreSQL should upgrade to these updated packages containing PostgreSQL version 7.4.16 or 7.3.18, which correct these issues. *************************************************************** Title: RHSA-2007:0076 - PHP Security Update - Red Hat Enterprise 3.0 Severity: Important Fixlet ID: 200707601 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0076.html Fixlet Description: Updated PHP packages that fix several security issues are now available for Red Hat Enterprise Linux 3 and 4. Users of PHP should upgrade to these updated packages which contain backported patches to correct these issues. *************************************************************** Title: RHSA-2007:0077 - Seamonkey Security Update - Red Hat Enterprise 3.0 Severity: Critical Fixlet ID: 200707701 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0077.html Fixlet Description: Updated seamonkey packages that fix several security bugs are now available. Users of SeaMonkey are advised to upgrade to these erratum packages, which contain SeaMonkey version 1.0.8 that corrects these issues. *************************************************************** Title: RHSA-2007:0086 - Gnomemeeting Security Update - Red Hat Enterprise 3.0 Severity: Critical Fixlet ID: 200708601 Fixlet Link: https://rhn.redhat.com/errata/RHSA-2007-0086.html Fixlet Description: An updated gnomemeeting package that fixes a security issue is now available for Red Hat Enterprise Linux. Users of GnomeMeeting should upgrade to this updated package which contains a backported patch to correct this issue.