[SUSE-Announcements] BES Auto Notification: New Fixlets Published in Fixlet Site: 'Patches for SUSE Linux Enterprise'
Notification of New SUSE Fixlet Messages
suse-announcements at bigmail.bigfix.com
Tue Mar 23 02:10:25 PST 2010
Fixlet Site - 'Patches for SUSE Linux Enterprise'
Current Version: 311 Published: Mon, 22 Mar 2010 19:27:28 GMT
New Fixlets:
============
***************************************************************
Title: PATCH-B10031601 - Security update for ethereal - SLED10 SP2
Severity: <Unspecified>
Fixlet ID: 1003160101
Fixlet Link: http://download.novell.com/Download?buildid=oI0MbiS7M00~
Fixlet Description: This update of ethereal fixes: CVE-2010-0304: Several buffer overflows in the LWRES dissector. Please update. Please see patch page for more detailed information.
***************************************************************
Title: PATCH-B10031601 - Security update for ethereal - SLES10 SP2
Severity: <Unspecified>
Fixlet ID: 1003160103
Fixlet Link: http://download.novell.com/Download?buildid=u1mrTx09mxI~
Fixlet Description: This update of ethereal fixes: CVE-2010-0304: Several buffer overflows in the LWRES dissector. Please update. Please see patch page for more detailed information.
***************************************************************
Title: PATCH-B10031701 - Security update for MySQL - SLES10 SP2
Severity: <Unspecified>
Fixlet ID: 1003170101
Fixlet Link: http://download.novell.com/Download?buildid=BB3PrMAlfMM~
Fixlet Description: This update fixes various security issues (bnc#557669) : upstream #47320 - checking server certificates (CVE-2009-4028) upstream #48291 - error handling in subqueries (CVE-2009-4019) upstream #47780 - preserving null_value flag in GeomFromWKB() (CVE-2009-4019) upstream #39277 - symlink behaviour fixed (CVE-2008-7247) upstream #32167 - symlink behaviour refixed (CVE-2009-4030) fixing remote buffer overflow (CVE-2009-4484) Everyone should update. Please see patch page for more detailed information.
***************************************************************
Title: PATCH-B10031701 - Security update for MySQL - SLED10 SP2
Severity: <Unspecified>
Fixlet ID: 1003170103
Fixlet Link: http://download.novell.com/Download?buildid=7NS3KANcglM~
Fixlet Description: This update fixes various security issues (bnc#557669) : upstream #47320 - checking server certificates (CVE-2009-4028) upstream #48291 - error handling in subqueries (CVE-2009-4019) upstream #47780 - preserving null_value flag in GeomFromWKB() (CVE-2009-4019) upstream #39277 - symlink behaviour fixed (CVE-2008-7247) upstream #32167 - symlink behaviour refixed (CVE-2009-4030) fixing remote buffer overflow (CVE-2009-4484) Everyone should update. Please see patch page for more detailed information.
***************************************************************
Title: PATCH-B10031702 - Security update for cron - SLES10 SP2
Severity: <Unspecified>
Fixlet ID: 1003170201
Fixlet Link: http://download.novell.com/Download?buildid=lVnsnRfHkEU~
Fixlet Description: This update of cron fixes a race condition in crontab that can be used to change the time-stamp of arbitrary files while editing the crontab entry. CVE-2010-0424: CVSS v2 Base Score: 3.6 Additionally the return value of initgroups() is verified now. Please update. Please see patch page for more detailed information.
***************************************************************
Title: PATCH-B10031702 - Security update for cron - SLED10 SP2
Severity: <Unspecified>
Fixlet ID: 1003170203
Fixlet Link: http://download.novell.com/Download?buildid=V9ppwCcvGCI~
Fixlet Description: This update of cron fixes a race condition in crontab that can be used to change the time-stamp of arbitrary files while editing the crontab entry. CVE-2010-0424: CVSS v2 Base Score: 3.6 Additionally the return value of initgroups() is verified now. Please update. Please see patch page for more detailed information.
More information about the SUSE-Announcements
mailing list