[SUSE-Announcements] BES Auto Notification: New Fixlets Published in Fixlet Site: 'Patches for SUSE Linux Enterprise'

Notification of New SUSE Fixlet Messages suse-announcements at bigmail.bigfix.com
Wed Jan 27 03:13:25 PST 2010


Fixlet Site - 'Patches for SUSE Linux Enterprise'
Current Version: 297	Published: Tue, 26 Jan 2010 19:51:04  GMT

New Fixlets:
============

***************************************************************
Title: PATCH-B10012501 - Security update for gzip - SLED10 SP2
Severity: <Unspecified>
Fixlet ID: 1001250103
Fixlet Link: http://download.novell.com/Download?buildid=aPL_YSTvk6s~

Fixlet Description: The following bug has been fixed:     Specially crafted gzip archives could trigger integer overflows. Attackers could exploit that to crash gzip or potentially execute arbitrary code (CVE-2010-0001). Only 64bit architectures are affected by this flaw. Everyone should update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B10012501 - Security update for gzip - SLES10 SP2
Severity: <Unspecified>
Fixlet ID: 1001250107
Fixlet Link: http://download.novell.com/Download?buildid=ZY_BTNBDqw0~

Fixlet Description: The following bug has been fixed:     Specially crafted gzip archives could trigger integer overflows. Attackers could exploit that to crash gzip or potentially execute arbitrary code (CVE-2010-0001). Only 64bit architectures are affected by this flaw. Everyone should update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B10012502 - Security update for gzip - SLED10 SP3
Severity: <Unspecified>
Fixlet ID: 1001250201
Fixlet Link: http://download.novell.com/Download?buildid=yJACS2-i6Ic~

Fixlet Description: The following bug has been fixed:     Specially crafted gzip archives could trigger integer overflows. Attackers could exploit that to crash gzip or potentially execute arbitrary code (CVE-2010-0001). Only 64bit architectures are affected by this flaw. Everyone should update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B10012502 - Security update for gzip - SLES10 SP3
Severity: <Unspecified>
Fixlet ID: 1001250205
Fixlet Link: http://download.novell.com/Download?buildid=beACkRtGPAw~

Fixlet Description: The following bug has been fixed:     Specially crafted gzip archives could trigger integer overflows. Attackers could exploit that to crash gzip or potentially execute arbitrary code (CVE-2010-0001). Only 64bit architectures are affected by this flaw. Everyone should update. Please see patch page for more detailed information.



More information about the SUSE-Announcements mailing list