[SUSE-Announcements] BES Auto Notification: New Fixlets Published in Fixlet Site: PatchesforSUSELinuxEnterprise

Notification of New SUSE Fixlet Messages suse-announcements at bigmail.bigfix.com
Tue Nov 3 03:10:07 PST 2009


Fixlet Site - PatchesforSUSELinuxEnterprise
Current Version: 266	Published: Mon, 02 Nov 2009 21:49:47  GMT

New Fixlets:
============

***************************************************************
Title: PATCH-B9103001 - Security update for freeradius - SLES10 SP3
Severity: <Unspecified>
Fixlet ID: 910300103
Fixlet Link: http://download.novell.com/Download?buildid=6wR0lgIK9to~

Fixlet Description: This update of freeradius fixes a remote denial-of-service bug in function rad_decode() which can be triggered by zero-length Tunnel-Password attributes to make radiusd crash. (CVE-2009-3111) Everyone should update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B9103002 - Security update for strongswan - SLES10 SP3
Severity: <Unspecified>
Fixlet ID: 910300201
Fixlet Link: http://download.novell.com/Download?buildid=4QkY8N6_RVI~

Fixlet Description: The previous fix for a flaw in the ASN.1 parser was incomplete and had to be reworked. (CVE-2009-2661) This could lead to crashes of the pluto IKE daemon. Everyone should update. Please see patch page for more detailed information.



More information about the SUSE-Announcements mailing list