[SUSE-Announcements] BES Auto Notification: New Fixlets Published in Fixlet Site: 'Patches for SUSE Linux Enterprise'

Notification of New SUSE Fixlet Messages suse-announcements at bigmail.bigfix.com
Tue May 18 03:10:21 PDT 2010


Fixlet Site - 'Patches for SUSE Linux Enterprise'
Current Version: 322	Published: Mon, 17 May 2010 22:22:46  GMT

New Fixlets:
============

***************************************************************
Title: PATCH-12600 - Security update for Python - SLES9
Severity: <Unspecified>
Fixlet ID: 1260001
Fixlet Link: http://download.novell.com/Download?buildid=pwAdVGgme3w~

Fixlet Description: This update of python has a copy of libxmlrpc that is vulnerable to denial of service bugs that can occur while processing malformed XML input. CVE-2009-2625: CVSS v2 Base Score: 5.0 (moderate) (AV:N/AC:L/Au:N/C:N/I:N/A:P): Permissions, Privileges, and Access Control (CWE-264) CVE-2009-3720: CVSS v2 Base Score: 5.0 (MEDIUM) (AV:N/AC:L/Au:N/C:N/I:N/A:P): Insufficient Information (CWE-noinfo) CVE-2009-3560: CVSS v2 Base Score: 5.0 (MEDIUM) (AV:N/AC:L/Au:N/C:N/I:N/A:P): Buffer Errors (CWE-119) Everyone should update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B10051401 - Security update for Python - SLED10 SP3
Severity: <Unspecified>
Fixlet ID: 1005140101
Fixlet Link: http://download.novell.com/Download?buildid=TcshCCxDpyY~

Fixlet Description: This update of python has a copy of libxmlrpc that is vulnerable to denial of service bugs that can occur while processing malformed XML input. CVE-2009-2625: CVSS v2 Base Score: 5.0 (moderate) (AV:N/AC:L/Au:N/C:N/I:N/A:P): Permissions, Privileges, and Access Control (CWE-264) CVE-2009-3720: CVSS v2 Base Score: 5.0 (MEDIUM) (AV:N/AC:L/Au:N/C:N/I:N/A:P): Insufficient Information (CWE-noinfo) CVE-2009-3560: CVSS v2 Base Score: 5.0 (MEDIUM) (AV:N/AC:L/Au:N/C:N/I:N/A:P): Buffer Errors (CWE-119) Everyone should update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B10051401 - Security update for Python - SLES10 SP3
Severity: <Unspecified>
Fixlet ID: 1005140103
Fixlet Link: http://download.novell.com/Download?buildid=HmWiV_q06JU~

Fixlet Description: This update of python has a copy of libxmlrpc that is vulnerable to denial of service bugs that can occur while processing malformed XML input. CVE-2009-2625: CVSS v2 Base Score: 5.0 (moderate) (AV:N/AC:L/Au:N/C:N/I:N/A:P): Permissions, Privileges, and Access Control (CWE-264) CVE-2009-3720: CVSS v2 Base Score: 5.0 (MEDIUM) (AV:N/AC:L/Au:N/C:N/I:N/A:P): Insufficient Information (CWE-noinfo) CVE-2009-3560: CVSS v2 Base Score: 5.0 (MEDIUM) (AV:N/AC:L/Au:N/C:N/I:N/A:P): Buffer Errors (CWE-119) Everyone should update. Please see patch page for more detailed information.

***************************************************************
Title: PATCH-B10051402 - Security update for TeX - SLED10 SP3
Severity: <Unspecified>
Fixlet ID: 1005140201
Fixlet Link: http://download.novell.com/Download?buildid=-dP76dlu_Bw~

Fixlet Description: A security update for TeX  is now available. Everyone should update. Please see patch page for more detailed information.



More information about the SUSE-Announcements mailing list