Login
Newsletter
Werbung

Sicherheit: Unsichere Verwendung von /tmp in mgetty
Aktuelle Meldungen Distributionen
Name: Unsichere Verwendung von /tmp in mgetty
ID: RHSA-2001:050-04
Distribution: Red Hat
Plattformen: Red Hat Linux
Datum: Sa, 21. April 2001, 13:00
Referenzen: Keine Angabe
Applikationen: mgetty

Originalnachricht

---------------------------------------------------------------------
Red Hat, Inc. Red Hat Security Advisory

Synopsis: Updated mgetty packages available
Advisory ID: RHSA-2001:050-04
Issue date: 2001-04-16
Updated on: 2001-04-19
Product: Red Hat Linux
Keywords: mgetty
Cross references:
Obsoletes: RHSA-2000:059
---------------------------------------------------------------------

1. Topic:

Updated mgetty packages are now available for Red Hat Linux 6.2 and 7.x.
These packages fix packaging errors present in previous versions.

2. Relevant releases/architectures:

Red Hat Linux 5.2 - alpha, i386, sparc

Red Hat Linux 6.2 - alpha, i386, sparc

Red Hat Linux 7.0 - alpha, i386

Red Hat Linux 7.1 - i386

3. Problem description:

Previously-issued mgetty packages did not log messages correctly. Previous
packages would encounter errors when attempting to spool outgoing fax jobs
due to an incorrect patch applied to the faxspool script. Log files for
vgetty and vm were also not rotated.

4. Solution:

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

To update all RPMs for your particular architecture, run:

rpm -Fvh [filenames]

where [filenames] is a list of the RPMs you wish to upgrade. Only those
RPMs which are currently installed will be updated. Those RPMs which are
not installed but included in the list will not be updated. Note that you
can also use wildcards (*.rpm) if your current directory *only* contains
the desired RPMs.

Please note that this update is also available via Red Hat Network. Many
people find this an easier way to apply updates. To use Red Hat Network,
launch the Red Hat Update Agent with the following command:

up2date

This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system.

5. Bug IDs fixed (http://bugzilla.redhat.com/bugzilla for more info):

23578 - faxspool bug in mgetty-sendfax-1.1.22-1.6.x
24022 - mgetty does not write logs to /var/log/mgetty.tty*
31918 - when receiving faxes line is dropped due to

6. RPMs required:

Red Hat Linux 5.2:

SRPMS:
ftp://updates.redhat.com/5.2/en/os/SRPMS/mgetty-1.1.25-4.5.src.rpm

alpha:
ftp://updates.redhat.com/5.2/en/os/alpha/mgetty-1.1.25-4.5.alpha.rpm
ftp://updates.redhat.com/5.2/en/os/alpha/mgetty-sendfax-1.1.25-4.5.alpha.rpm
ftp://updates.redhat.com/5.2/en/os/alpha/mgetty-viewfax-1.1.25-4.5.alpha.rpm
ftp://updates.redhat.com/5.2/en/os/alpha/mgetty-voice-1.1.25-4.5.alpha.rpm

i386:
ftp://updates.redhat.com/5.2/en/os/i386/mgetty-1.1.25-4.5.i386.rpm
ftp://updates.redhat.com/5.2/en/os/i386/mgetty-sendfax-1.1.25-4.5.i386.rpm
ftp://updates.redhat.com/5.2/en/os/i386/mgetty-viewfax-1.1.25-4.5.i386.rpm
ftp://updates.redhat.com/5.2/en/os/i386/mgetty-voice-1.1.25-4.5.i386.rpm

sparc:
ftp://updates.redhat.com/5.2/en/os/sparc/mgetty-1.1.25-4.5.sparc.rpm
ftp://updates.redhat.com/5.2/en/os/sparc/mgetty-sendfax-1.1.25-4.5.sparc.rpm
ftp://updates.redhat.com/5.2/en/os/sparc/mgetty-viewfax-1.1.25-4.5.sparc.rpm
ftp://updates.redhat.com/5.2/en/os/sparc/mgetty-voice-1.1.25-4.5.sparc.rpm

Red Hat Linux 6.2:

SRPMS:
ftp://updates.redhat.com/6.2/en/os/SRPMS/mgetty-1.1.25-4.6.src.rpm

alpha:
ftp://updates.redhat.com/6.2/en/os/alpha/mgetty-1.1.25-4.6.alpha.rpm
ftp://updates.redhat.com/6.2/en/os/alpha/mgetty-sendfax-1.1.25-4.6.alpha.rpm
ftp://updates.redhat.com/6.2/en/os/alpha/mgetty-viewfax-1.1.25-4.6.alpha.rpm
ftp://updates.redhat.com/6.2/en/os/alpha/mgetty-voice-1.1.25-4.6.alpha.rpm

i386:
ftp://updates.redhat.com/6.2/en/os/i386/mgetty-1.1.25-4.6.i386.rpm
ftp://updates.redhat.com/6.2/en/os/i386/mgetty-sendfax-1.1.25-4.6.i386.rpm
ftp://updates.redhat.com/6.2/en/os/i386/mgetty-viewfax-1.1.25-4.6.i386.rpm
ftp://updates.redhat.com/6.2/en/os/i386/mgetty-voice-1.1.25-4.6.i386.rpm

sparc:
ftp://updates.redhat.com/6.2/en/os/sparc/mgetty-1.1.25-4.6.sparc.rpm
ftp://updates.redhat.com/6.2/en/os/sparc/mgetty-sendfax-1.1.25-4.6.sparc.rpm
ftp://updates.redhat.com/6.2/en/os/sparc/mgetty-viewfax-1.1.25-4.6.sparc.rpm
ftp://updates.redhat.com/6.2/en/os/sparc/mgetty-voice-1.1.25-4.6.sparc.rpm

Red Hat Linux 7.0:

SRPMS:
ftp://updates.redhat.com/7.0/en/os/SRPMS/mgetty-1.1.25-5.src.rpm

alpha:
ftp://updates.redhat.com/7.0/en/os/alpha/mgetty-1.1.25-5.alpha.rpm
ftp://updates.redhat.com/7.0/en/os/alpha/mgetty-sendfax-1.1.25-5.alpha.rpm
ftp://updates.redhat.com/7.0/en/os/alpha/mgetty-viewfax-1.1.25-5.alpha.rpm
ftp://updates.redhat.com/7.0/en/os/alpha/mgetty-voice-1.1.25-5.alpha.rpm

i386:
ftp://updates.redhat.com/7.0/en/os/i386/mgetty-1.1.25-5.i386.rpm
ftp://updates.redhat.com/7.0/en/os/i386/mgetty-sendfax-1.1.25-5.i386.rpm
ftp://updates.redhat.com/7.0/en/os/i386/mgetty-viewfax-1.1.25-5.i386.rpm
ftp://updates.redhat.com/7.0/en/os/i386/mgetty-voice-1.1.25-5.i386.rpm

Red Hat Linux 7.1:

SRPMS:
ftp://updates.redhat.com/7.1/en/os/SRPMS/mgetty-1.1.25-5.src.rpm

i386:
ftp://updates.redhat.com/7.1/en/os/i386/mgetty-1.1.25-5.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/mgetty-sendfax-1.1.25-5.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/mgetty-viewfax-1.1.25-5.i386.rpm
ftp://updates.redhat.com/7.1/en/os/i386/mgetty-voice-1.1.25-5.i386.rpm



7. Verification:

MD5 sum Package Name
--------------------------------------------------------------------------
729c8693d302a959a40722a58bce7235 5.2/en/os/SRPMS/mgetty-1.1.25-4.5.src.rpm
ec7cb6a44a86684426dfd4c5a03aec12 5.2/en/os/alpha/mgetty-1.1.25-4.5.alpha.rpm
39965d1741d28203960facceea6cc87e
5.2/en/os/alpha/mgetty-sendfax-1.1.25-4.5.alpha.rpm
cdacd79a1ce7d7733601c5bf68e69a0a
5.2/en/os/alpha/mgetty-viewfax-1.1.25-4.5.alpha.rpm
c2d3f1c9736a117bbc9543b4f20827b6
5.2/en/os/alpha/mgetty-voice-1.1.25-4.5.alpha.rpm
59876e914060fd2cf1269bd82c235678 5.2/en/os/i386/mgetty-1.1.25-4.5.i386.rpm
92a11694686ab513ebe2bde5caec308d
5.2/en/os/i386/mgetty-sendfax-1.1.25-4.5.i386.rpm
e953e08d0c450c3fd5db42029b9f29fa
5.2/en/os/i386/mgetty-viewfax-1.1.25-4.5.i386.rpm
0c58420a07c323c791eeaf6f7fefbd45
5.2/en/os/i386/mgetty-voice-1.1.25-4.5.i386.rpm
948b1ce4ee5c23decd96cebea34bbc28 5.2/en/os/sparc/mgetty-1.1.25-4.5.sparc.rpm
4efcb68c88f027749f72e84ae6d81db8
5.2/en/os/sparc/mgetty-sendfax-1.1.25-4.5.sparc.rpm
004dfb154013eade3eac8bfc8a2bce14
5.2/en/os/sparc/mgetty-viewfax-1.1.25-4.5.sparc.rpm
7f27acb07ee6bda0d25f2320440ee378
5.2/en/os/sparc/mgetty-voice-1.1.25-4.5.sparc.rpm
adf6becf54c8bf6240e7e6abfea5b4e4 6.2/en/os/SRPMS/mgetty-1.1.25-4.6.src.rpm
d119781639818a6645681e3e8dcc319f 6.2/en/os/alpha/mgetty-1.1.25-4.6.alpha.rpm
da9686f942904a5a7534ac2e1490dd84
6.2/en/os/alpha/mgetty-sendfax-1.1.25-4.6.alpha.rpm
66217f24fdc0bb27b048657c1e4fa0d1
6.2/en/os/alpha/mgetty-viewfax-1.1.25-4.6.alpha.rpm
7207ed34edac92095b08620b092e0a26
6.2/en/os/alpha/mgetty-voice-1.1.25-4.6.alpha.rpm
905a0d84cd734c271f78d5838253aa2b 6.2/en/os/i386/mgetty-1.1.25-4.6.i386.rpm
8ce13210135e29f7dce3b316af130b83
6.2/en/os/i386/mgetty-sendfax-1.1.25-4.6.i386.rpm
7e42a0df1b0e91c50638bfc10fe2da05
6.2/en/os/i386/mgetty-viewfax-1.1.25-4.6.i386.rpm
72c0288697ccf5fd799721f2b6d2181f
6.2/en/os/i386/mgetty-voice-1.1.25-4.6.i386.rpm
4b354d6623596cb71cfeaf40a585f3b9 6.2/en/os/sparc/mgetty-1.1.25-4.6.sparc.rpm
c956abe0343870b83256e23f10155b60
6.2/en/os/sparc/mgetty-sendfax-1.1.25-4.6.sparc.rpm
0eebf7d1dba0a5011074a0944b6a59c1
6.2/en/os/sparc/mgetty-viewfax-1.1.25-4.6.sparc.rpm
02afeae7f61418ab2e3ee8e82f34372c
6.2/en/os/sparc/mgetty-voice-1.1.25-4.6.sparc.rpm
265de77ade0ffdcc45cd299988fce53a 7.0/en/os/SRPMS/mgetty-1.1.25-5.src.rpm
67ed1833829e5f2479c28db60d55b052 7.0/en/os/alpha/mgetty-1.1.25-5.alpha.rpm
dbebae87831f6ad5b80fab1bf129b1ee
7.0/en/os/alpha/mgetty-sendfax-1.1.25-5.alpha.rpm
1c9f751ba7846ea3148c7ef9ca8c07bc
7.0/en/os/alpha/mgetty-viewfax-1.1.25-5.alpha.rpm
13e127de9659d444279ac99519d19494
7.0/en/os/alpha/mgetty-voice-1.1.25-5.alpha.rpm
8d455745c570e7bce3096e0da79075a9 7.0/en/os/i386/mgetty-1.1.25-5.i386.rpm
56fb1634a16af69e7df1eafb2753aac4
7.0/en/os/i386/mgetty-sendfax-1.1.25-5.i386.rpm
785096824b657ec2021ad2623712dd2e
7.0/en/os/i386/mgetty-viewfax-1.1.25-5.i386.rpm
f2b8abb6d467965f48cfa20827130f98 7.0/en/os/i386/mgetty-voice-1.1.25-5.i386.rpm
265de77ade0ffdcc45cd299988fce53a 7.1/en/os/SRPMS/mgetty-1.1.25-5.src.rpm
8d455745c570e7bce3096e0da79075a9 7.1/en/os/i386/mgetty-1.1.25-5.i386.rpm
56fb1634a16af69e7df1eafb2753aac4
7.1/en/os/i386/mgetty-sendfax-1.1.25-5.i386.rpm
785096824b657ec2021ad2623712dd2e
7.1/en/os/i386/mgetty-viewfax-1.1.25-5.i386.rpm
f2b8abb6d467965f48cfa20827130f98 7.1/en/os/i386/mgetty-voice-1.1.25-5.i386.rpm

These packages are GPG signed by Red Hat, Inc. for security. Our key
is available at:
http://www.redhat.com/corp/contact.html

You can verify each package with the following command:
rpm --checksig <filename>

If you only wish to verify that each package has not been corrupted or
tampered with, examine only the md5sum with the following command:
rpm --checksig --nogpg <filename>

8. References:




Copyright(c) 2000, 2001 Red Hat, Inc.
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung