[SUSE-Announcements] BES Auto Notification: New Fixlets Published in Fixlet Site: 'Patches for SUSE Linux Enterprise'

Notification of New SUSE Fixlet Messages suse-announcements at bigmail.bigfix.com
Tue Mar 23 02:10:25 PST 2010


Fixlet Site - 'Patches for SUSE Linux Enterprise'
Current Version: 311	Published: Mon, 22 Mar 2010 19:27:28  GMT

New Fixlets:
============

***************************************************************
Title: PATCH-B10031601 - Security update for ethereal - SLED10 SP2
Severity: <Unspecified>
Fixlet ID: 1003160101
Fixlet Link: http://download.novell.com/Download?buildid=oI0MbiS7M00~

Fixlet Description: This update of ethereal fixes:     CVE-2010-0304: Several buffer overflows in the LWRES dissector. Please update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B10031601 - Security update for ethereal - SLES10 SP2
Severity: <Unspecified>
Fixlet ID: 1003160103
Fixlet Link: http://download.novell.com/Download?buildid=u1mrTx09mxI~

Fixlet Description: This update of ethereal fixes:     CVE-2010-0304: Several buffer overflows in the LWRES dissector. Please update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B10031701 - Security update for MySQL - SLES10 SP2
Severity: <Unspecified>
Fixlet ID: 1003170101
Fixlet Link: http://download.novell.com/Download?buildid=BB3PrMAlfMM~

Fixlet Description: This update fixes various security issues (bnc#557669) :    upstream #47320 - checking server certificates (CVE-2009-4028)  upstream #48291 - error handling in subqueries (CVE-2009-4019)  upstream #47780 - preserving null_value flag in GeomFromWKB() (CVE-2009-4019)  upstream #39277 - symlink behaviour fixed (CVE-2008-7247)  upstream #32167 - symlink behaviour refixed (CVE-2009-4030)  fixing remote buffer overflow (CVE-2009-4484) Everyone should update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B10031701 - Security update for MySQL - SLED10 SP2
Severity: <Unspecified>
Fixlet ID: 1003170103
Fixlet Link: http://download.novell.com/Download?buildid=7NS3KANcglM~

Fixlet Description: This update fixes various security issues (bnc#557669) :    upstream #47320 - checking server certificates (CVE-2009-4028)  upstream #48291 - error handling in subqueries (CVE-2009-4019)  upstream #47780 - preserving null_value flag in GeomFromWKB() (CVE-2009-4019)  upstream #39277 - symlink behaviour fixed (CVE-2008-7247)  upstream #32167 - symlink behaviour refixed (CVE-2009-4030)  fixing remote buffer overflow (CVE-2009-4484) Everyone should update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B10031702 - Security update for cron - SLES10 SP2
Severity: <Unspecified>
Fixlet ID: 1003170201
Fixlet Link: http://download.novell.com/Download?buildid=lVnsnRfHkEU~

Fixlet Description: This update of cron fixes a race condition in crontab that can be used to change the time-stamp of arbitrary files while editing the crontab entry.     CVE-2010-0424: CVSS v2 Base Score: 3.6 Additionally the return value of initgroups() is verified now. Please update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B10031702 - Security update for cron - SLED10 SP2
Severity: <Unspecified>
Fixlet ID: 1003170203
Fixlet Link: http://download.novell.com/Download?buildid=V9ppwCcvGCI~

Fixlet Description: This update of cron fixes a race condition in crontab that can be used to change the time-stamp of arbitrary files while editing the crontab entry.     CVE-2010-0424: CVSS v2 Base Score: 3.6 Additionally the return value of initgroups() is verified now. Please update. Please see patch page for more detailed information.



More information about the SUSE-Announcements mailing list