Date:         Tue, 4 Oct 2005 16:19:42 -0500
Reply-To:     Troy Dawson 
Sender:       Security Errata for Scientific Linux
              
From:         Troy Dawson 
Subject:      Re: ERRATA for SL 302,303,304,305 x86_64 now available
In-Reply-To:  

GFS has been put into the errata area.  It is not a security update, but 
it has a dependancy on the new kernel, and if you are using GFS you 
cannot update your kernel without these.
GFS, like the kernel, does NOT get updated automatically.  You do have 
to do it yourself.

   GFS-6.0.2.27-0.ia32e.rpm
   GFS-6.0.2.27-0.x86_64.rpm
   GFS-devel-6.0.2.27-0.ia32e.rpm
   GFS-devel-6.0.2.27-0.x86_64.rpm
   GFS-modules-6.0.2.27-0.ia32e.rpm
   GFS-modules-6.0.2.27-0.x86_64.rpm
   GFS-modules-smp-6.0.2.27-0.x86_64.rpm
   clumanager-1.2.28-1.x86_64.rpm
   piranha-0.7.11-1.1.x86_64.rpm
   redhat-config-cluster-1.0.8-1.noarch.rpm


Connie Sieh wrote:
> The following ERRATA for SL 302,303,304,305 x86_64 are now available from:
> >  
> Note that the default yum-conf does NOT update either openafs or kernels.
> You have to do that yourself.  Yum is your friend.
> 
> Synopsis:          Updated kernel packages
> Advisory ID:       RHSA-2005:663-01
> Obsoletes:         RHSA-2005:472
> CVE Names:         CAN-2004-0181 CAN-2004-1056 CAN-2005-0124 CAN-2005-0136
>                    CAN-2005-0179 CAN-2005-0210 CAN-2005-0400 CAN-2005-0504
>                    CAN-2005-0756 CAN-2005-0815 CAN-2005-1761 CAN-2005-1762
>                    CAN-2005-1767 CAN-2005-1768 CAN-2005-2456 CAN-2005-2490
>                    CAN-2005-2553 CAN-2005-2555
> 
>   kernel-2.4.21-37.EL.ia32e.rpm
>   kernel-2.4.21-37.EL.x86_64.rpm
>   kernel-doc-2.4.21-37.EL.x86_64.rpm
>   kernel-smp-2.4.21-37.EL.x86_64.rpm 
>   kernel-smp-unsupported-2.4.21-37.EL.x86_64.rpm
>   kernel-source-2.4.21-37.EL.x86_64.rpm
>   kernel-unsupported-2.4.21-37.EL.ia32e.rpm
>   kernel-unsupported-2.4.21-37.EL.x86_64.rpm
> 
> Openafs is being updated to the latest stable 1.2.x release (1.2.13),
> across all Scientific Linux 3.0.x distributions.  This release of
> openafs has proven to be much more stable, and fixed many bugs from
> previous releases.
> In addition to openafs's fixes, the Scientific Linux openafs development
> team have updated various parts.  "rpm -q --changelog openafs" will give
> all of the changes, but some of the more important ones are
>    - Updated CellServDB
>    - dynroot and fakestat are turned on by default now
>    - Startup script has several bugs fixed
>    - 64 bit aklog bug fixed
> 
>   openafs-1.2.13-15.17.SL.x86_64.rpm
>   openafs-client-1.2.13-15.17.SL.x86_64.rpm
>   openafs-compat-1.2.13-15.17.SL.x86_64.rpm
>   openafs-debug-1.2.13-15.17.SL.x86_64.rpm
>   openafs-devel-1.2.13-15.17.SL.x86_64.rpm
>   openafs-kernel-source-1.2.13-15.17.SL.x86_64.rpm
>   openafs-kpasswd-1.2.13-15.17.SL.x86_64.rpm
>   openafs-krb5-1.2.13-15.17.SL.x86_64.rpm
>   openafs-server-1.2.13-15.17.SL.x86_64.rpm
>   kernel-module-openafs-2.4.21-*-1.2.13-15.17.SL.ia32e.rpm
> 
> -Connie Sieh
> -Troy Dawson


-- 
__________________________________________________
Troy Dawson  dawson@fnal.gov  (630)840-6468
Fermilab  ComputingDivision/CSS  CSI Group
__________________________________________________
Date:         Tue, 4 Oct 2005 16:24:24 -0500
Reply-To:     Troy Dawson 
Sender:       Security Errata for Scientific Linux
              
From:         Troy Dawson 
Subject:      Re: ERRATA for SL 301,302,303,304,305 i386 now available
In-Reply-To:  

GFS has been put into the errata area.  It is not a security update, but 
it has a dependancy on the new kernel, and if you are using GFS you 
cannot update your kernel without these.
GFS, like the kernel, does NOT get updated automatically.  You do have 
to do it yourself.

   GFS-6.0.2.27-0.i686.rpm
   GFS-devel-6.0.2.27-0.i686.rpm
   GFS-modules-6.0.2.27-0.i686.rpm
   GFS-modules-hugemem-6.0.2.27-0.i686.rpm
   GFS-modules-smp-6.0.2.27-0.i686.rpm
   clumanager-1.2.28-1.i386.rpm
   piranha-0.7.11-1.1.i386.rpm
   redhat-config-cluster-1.0.8-1.noarch.rpm

In addition, we have released the kernel, and the openafs upgrade for 
Scientific Linux 301.  We gave this an extra day or two of testing 
because it is a bigger jump than later S.L. releases.  But the upgrade 
has passed every test we put it through.

-- Troy Dawson

Connie Sieh wrote:
> The following ERRATA for SL 302,303,304,305 i386 are now available from:
> >  
> Note that the default yum-conf does NOT update either openafs or kernels.  
> You have to do that yourself.  Yum is your friend.
> 
> Synopsis:          Updated kernel packages
> Advisory ID:       RHSA-2005:663-01
> Obsoletes:         RHSA-2005:472
> CVE Names:         CAN-2004-0181 CAN-2004-1056 CAN-2005-0124 CAN-2005-0136
>                    CAN-2005-0179 CAN-2005-0210 CAN-2005-0400 CAN-2005-0504
>                    CAN-2005-0756 CAN-2005-0815 CAN-2005-1761 CAN-2005-1762
>                    CAN-2005-1767 CAN-2005-1768 CAN-2005-2456 CAN-2005-2490
>                    CAN-2005-2553 CAN-2005-2555
> 
>   kernel-2.4.21-37.EL.athlon.rpm
>   kernel-2.4.21-37.EL.i686.rpm
>   kernel-BOOT-2.4.21-37.EL.i386.rpm
>   kernel-doc-2.4.21-37.EL.i386.rpm
>   kernel-hugemem-2.4.21-37.EL.i686.rpm
>   kernel-hugemem-unsupported-2.4.21-37.EL.i686.rpm
>   kernel-smp-2.4.21-37.EL.athlon.rpm
>   kernel-smp-2.4.21-37.EL.i686.rpm
>   kernel-smp-unsupported-2.4.21-37.EL.athlon.rpm
>   kernel-smp-unsupported-2.4.21-37.EL.i686.rpm
>   kernel-source-2.4.21-37.EL.i386.rpm
>   kernel-unsupported-2.4.21-37.EL.athlon.rpm
>   kernel-unsupported-2.4.21-37.EL.i686.rpm
> 
> Openafs is being updated to the latest stable 1.2.x release (1.2.13),
> across all Scientific Linux 3.0.x distributions.  This release of
> openafs has proven to be much more stable, and fixed many bugs from
> previous releases.
> In addition to openafs's fixes, the Scientific Linux openafs development
> team have updated various parts.  "rpm -q --changelog openafs" will give
> all of the changes, but some of the more important ones are
>    - Updated CellServDB
>    - dynroot and fakestat are turned on by default now
>    - Startup script has several bugs fixed
>    - 64 bit aklog bug fixed
> 
>   openafs-1.2.13-15.17.SL.i386.rpm
>   openafs-client-1.2.13-15.17.SL.i386.rpm
>   openafs-compat-1.2.13-15.17.SL.i386.rpm
>   openafs-debug-1.2.13-15.17.SL.i386.rpm
>   openafs-devel-1.2.13-15.17.SL.i386.rpm
>   openafs-kernel-source-1.2.13-15.17.SL.i386.rpm
>   openafs-kpasswd-1.2.13-15.17.SL.i386.rpm
>   openafs-krb5-1.2.13-15.17.SL.i386.rpm
>   openafs-server-1.2.13-15.17.SL.i386.rpm
>   kernel-module-openafs-2.4.21-*-1.2.13-15.17.SL.athlon.rpm
> 
> -Connie Sieh
> -Troy Dawson


-- 
__________________________________________________
Troy Dawson  dawson@fnal.gov  (630)840-6468
Fermilab  ComputingDivision/CSS  CSI Group
__________________________________________________
Date:         Fri, 7 Oct 2005 15:33:56 -0500
Reply-To:     Troy Dawson 
Sender:       Security Errata for Scientific Linux
              
From:         Troy Dawson 
Subject:      ERRATA for SL 40,41 i386 now available
Comments: To: scientific-linux-errata@fnal.gov

The following ERRATA for SL 40,41 i386 are now available from:

Synopsis:          Low: binutils security update
Advisory ID:       RHSA-2005:673-01
CVE Names:         CAN-2005-1704

   binutils-2.15.92.0.2-15.i386.rpm

Synopsis:          Low: gdb security update
Advisory ID:       RHSA-2005:709-01
CVE Names:         CAN-2005-1704 CAN-2005-1705

   gdb-6.3.0.0-1.63.i386.rpm

Synopsis:          Updated kernel package containing security updates
Advisory ID:       RHSA-2005:514-01
CVE Names:         CAN-2005-0756 CAN-2005-1265 CAN-2005-1761 
CAN-2005-1762 CAN-2005-1763 CAN-2005-2098 CAN-2005-2099 CAN-2005-2100 
CAN-2005-2456 CAN-2005-2490 CAN-2005-2492 CAN-2005-2555 CAN-2005-2801 
CAN-2005-2872

   kernel-2.6.9-22.EL.i686.rpm
   kernel-devel-2.6.9-22.EL.i686.rpm
   kernel-hugemem-2.6.9-22.EL.i686.rpm
   kernel-hugemem-devel-2.6.9-22.EL.i686.rpm
   kernel-module-openafs-2.6.9-22.EL-1.3.82-3.SL.i686.rpm
   kernel-module-openafs-2.6.9-22.ELsmp-1.3.82-3.SL.i686.rpm
   kernel-smp-2.6.9-22.EL.i686.rpm
   kernel-smp-devel-2.6.9-22.EL.i686.rpm

Synopsis:          Low: mysql security update
Advisory ID:       RHSA-2005:685-01
CVE Names:         CAN-2005-1636

   mysql-4.1.12-3.RHEL4.1.i386.rpm
   mysql-bench-4.1.12-3.RHEL4.1.i386.rpm
   mysql-devel-4.1.12-3.RHEL4.1.i386.rpm
   mysql-server-4.1.12-3.RHEL4.1.i386.rpm

Synopsis:          Low: net-snmp security update
Advisory ID:       RHSA-2005:395-01
CVE Names:         CAN-2005-1740 CAN-2005-2177

   net-snmp-5.1.2-11.EL4.6.i386.rpm
   net-snmp-devel-5.1.2-11.EL4.6.i386.rpm
   net-snmp-libs-5.1.2-11.EL4.6.i386.rpm
   net-snmp-perl-5.1.2-11.EL4.6.i386.rpm
   net-snmp-utils-5.1.2-11.EL4.6.i386.rpm

Synopsis:          Low: perl security update
Advisory ID:       RHSA-2005:674-01
CVE Names:         CAN-2005-0448

   perl-5.8.5-16.RHEL4.i386.rpm
   perl-suidperl-5.8.5-16.RHEL4.i386.rpm

Synopsis:          Low: slocate security update
Advisory ID:       RHSA-2005:346-01
CVE Names:         CAN-2005-2499

   slocate-2.7-13.el4.6.i386.rpm

Synopsis:          Important: thunderbird security update
Advisory ID:       RHSA-2005:791-01
CVE Names:   CAN-2005-2871 CAN-2005-2702 CAN-2005-2703 CAN-2005-2704 
CAN-2005-2705 CAN-2005-2706 CAN-2005-2707 CAN-2005-2968

   thunderbird-1.0.7-1.4.1.i386.rpm

--Troy Dawson

SciLinux: CAN-2004-0181 SL 40,41 i386

Important: thunderbird security update

Summary

Date:         Tue, 4 Oct 2005 16:19:42 -0500Reply-To:     Troy Dawson Sender:       Security Errata for Scientific Linux              From:         Troy Dawson Subject:      Re: ERRATA for SL 302,303,304,305 x86_64 now availableIn-Reply-To:  GFS has been put into the errata area.  It is not a security update, but it has a dependancy on the new kernel, and if you are using GFS you cannot update your kernel without these.GFS, like the kernel, does NOT get updated automatically.  You do have to do it yourself.   GFS-6.0.2.27-0.ia32e.rpm   GFS-6.0.2.27-0.x86_64.rpm   GFS-devel-6.0.2.27-0.ia32e.rpm   GFS-devel-6.0.2.27-0.x86_64.rpm   GFS-modules-6.0.2.27-0.ia32e.rpm   GFS-modules-6.0.2.27-0.x86_64.rpm   GFS-modules-smp-6.0.2.27-0.x86_64.rpm   clumanager-1.2.28-1.x86_64.rpm   piranha-0.7.11-1.1.x86_64.rpm   redhat-config-cluster-1.0.8-1.noarch.rpmConnie Sieh wrote:> The following ERRATA for SL 302,303,304,305 x86_64 are now available from:> >  > Note that the default yum-conf does NOT update either openafs or kernels.> You have to do that yourself.  Yum is your friend.> > Synopsis:          Updated kernel packages> Advisory ID:       RHSA-2005:663-01> Obsoletes:         RHSA-2005:472> CVE Names:         CAN-2004-0181 CAN-2004-1056 CAN-2005-0124 CAN-2005-0136>                    CAN-2005-0179 CAN-2005-0210 CAN-2005-0400 CAN-2005-0504>                    CAN-2005-0756 CAN-2005-0815 CAN-2005-1761 CAN-2005-1762>                    CAN-2005-1767 CAN-2005-1768 CAN-2005-2456 CAN-2005-2490>                    CAN-2005-2553 CAN-2005-2555> >   kernel-2.4.21-37.EL.ia32e.rpm>   kernel-2.4.21-37.EL.x86_64.rpm>   kernel-doc-2.4.21-37.EL.x86_64.rpm>   kernel-smp-2.4.21-37.EL.x86_64.rpm >   kernel-smp-unsupported-2.4.21-37.EL.x86_64.rpm>   kernel-source-2.4.21-37.EL.x86_64.rpm>   kernel-unsupported-2.4.21-37.EL.ia32e.rpm>   kernel-unsupported-2.4.21-37.EL.x86_64.rpm> > Openafs is being updated to the latest stable 1.2.x release (1.2.13),> across all Scientific Linux 3.0.x distributions.  This release of> openafs has proven to be much more stable, and fixed many bugs from> previous releases.> In addition to openafs's fixes, the Scientific Linux openafs development> team have updated various parts.  "rpm -q --changelog openafs" will give> all of the changes, but some of the more important ones are>    - Updated CellServDB>    - dynroot and fakestat are turned on by default now>    - Startup script has several bugs fixed>    - 64 bit aklog bug fixed> >   openafs-1.2.13-15.17.SL.x86_64.rpm>   openafs-client-1.2.13-15.17.SL.x86_64.rpm>   openafs-compat-1.2.13-15.17.SL.x86_64.rpm>   openafs-debug-1.2.13-15.17.SL.x86_64.rpm>   openafs-devel-1.2.13-15.17.SL.x86_64.rpm>   openafs-kernel-source-1.2.13-15.17.SL.x86_64.rpm>   openafs-kpasswd-1.2.13-15.17.SL.x86_64.rpm>   openafs-krb5-1.2.13-15.17.SL.x86_64.rpm>   openafs-server-1.2.13-15.17.SL.x86_64.rpm>   kernel-module-openafs-2.4.21-*-1.2.13-15.17.SL.ia32e.rpm> > -Connie Sieh> -Troy Dawson-- __________________________________________________Troy Dawson  dawson@fnal.gov  (630)840-6468Fermilab  ComputingDivision/CSS  CSI Group__________________________________________________Date:         Tue, 4 Oct 2005 16:24:24 -0500Reply-To:     Troy Dawson Sender:       Security Errata for Scientific Linux              From:         Troy Dawson Subject:      Re: ERRATA for SL 301,302,303,304,305 i386 now availableIn-Reply-To:  GFS has been put into the errata area.  It is not a security update, but it has a dependancy on the new kernel, and if you are using GFS you cannot update your kernel without these.GFS, like the kernel, does NOT get updated automatically.  You do have to do it yourself.   GFS-6.0.2.27-0.i686.rpm   GFS-devel-6.0.2.27-0.i686.rpm   GFS-modules-6.0.2.27-0.i686.rpm   GFS-modules-hugemem-6.0.2.27-0.i686.rpm   GFS-modules-smp-6.0.2.27-0.i686.rpm   clumanager-1.2.28-1.i386.rpm   piranha-0.7.11-1.1.i386.rpm   redhat-config-cluster-1.0.8-1.noarch.rpmIn addition, we have released the kernel, and the openafs upgrade for Scientific Linux 301.  We gave this an extra day or two of testing because it is a bigger jump than later S.L. releases.  But the upgrade has passed every test we put it through.-- Troy DawsonConnie Sieh wrote:> The following ERRATA for SL 302,303,304,305 i386 are now available from:> >  > Note that the default yum-conf does NOT update either openafs or kernels.  > You have to do that yourself.  Yum is your friend.> > Synopsis:          Updated kernel packages> Advisory ID:       RHSA-2005:663-01> Obsoletes:         RHSA-2005:472> CVE Names:         CAN-2004-0181 CAN-2004-1056 CAN-2005-0124 CAN-2005-0136>                    CAN-2005-0179 CAN-2005-0210 CAN-2005-0400 CAN-2005-0504>                    CAN-2005-0756 CAN-2005-0815 CAN-2005-1761 CAN-2005-1762>                    CAN-2005-1767 CAN-2005-1768 CAN-2005-2456 CAN-2005-2490>                    CAN-2005-2553 CAN-2005-2555> >   kernel-2.4.21-37.EL.athlon.rpm>   kernel-2.4.21-37.EL.i686.rpm>   kernel-BOOT-2.4.21-37.EL.i386.rpm>   kernel-doc-2.4.21-37.EL.i386.rpm>   kernel-hugemem-2.4.21-37.EL.i686.rpm>   kernel-hugemem-unsupported-2.4.21-37.EL.i686.rpm>   kernel-smp-2.4.21-37.EL.athlon.rpm>   kernel-smp-2.4.21-37.EL.i686.rpm>   kernel-smp-unsupported-2.4.21-37.EL.athlon.rpm>   kernel-smp-unsupported-2.4.21-37.EL.i686.rpm>   kernel-source-2.4.21-37.EL.i386.rpm>   kernel-unsupported-2.4.21-37.EL.athlon.rpm>   kernel-unsupported-2.4.21-37.EL.i686.rpm> > Openafs is being updated to the latest stable 1.2.x release (1.2.13),> across all Scientific Linux 3.0.x distributions.  This release of> openafs has proven to be much more stable, and fixed many bugs from> previous releases.> In addition to openafs's fixes, the Scientific Linux openafs development> team have updated various parts.  "rpm -q --changelog openafs" will give> all of the changes, but some of the more important ones are>    - Updated CellServDB>    - dynroot and fakestat are turned on by default now>    - Startup script has several bugs fixed>    - 64 bit aklog bug fixed> >   openafs-1.2.13-15.17.SL.i386.rpm>   openafs-client-1.2.13-15.17.SL.i386.rpm>   openafs-compat-1.2.13-15.17.SL.i386.rpm>   openafs-debug-1.2.13-15.17.SL.i386.rpm>   openafs-devel-1.2.13-15.17.SL.i386.rpm>   openafs-kernel-source-1.2.13-15.17.SL.i386.rpm>   openafs-kpasswd-1.2.13-15.17.SL.i386.rpm>   openafs-krb5-1.2.13-15.17.SL.i386.rpm>   openafs-server-1.2.13-15.17.SL.i386.rpm>   kernel-module-openafs-2.4.21-*-1.2.13-15.17.SL.athlon.rpm> > -Connie Sieh> -Troy Dawson-- __________________________________________________Troy Dawson  dawson@fnal.gov  (630)840-6468Fermilab  ComputingDivision/CSS  CSI Group__________________________________________________Date:         Fri, 7 Oct 2005 15:33:56 -0500Reply-To:     Troy Dawson Sender:       Security Errata for Scientific Linux              From:         Troy Dawson Subject:      ERRATA for SL 40,41 i386 now availableComments: To: scientific-linux-errata@fnal.govThe following ERRATA for SL 40,41 i386 are now available from:Synopsis:          Low: binutils security updateAdvisory ID:       RHSA-2005:673-01CVE Names:         CAN-2005-1704   binutils-2.15.92.0.2-15.i386.rpmSynopsis:          Low: gdb security updateAdvisory ID:       RHSA-2005:709-01CVE Names:         CAN-2005-1704 CAN-2005-1705   gdb-6.3.0.0-1.63.i386.rpmSynopsis:          Updated kernel package containing security updatesAdvisory ID:       RHSA-2005:514-01CVE Names:         CAN-2005-0756 CAN-2005-1265 CAN-2005-1761 CAN-2005-1762 CAN-2005-1763 CAN-2005-2098 CAN-2005-2099 CAN-2005-2100 CAN-2005-2456 CAN-2005-2490 CAN-2005-2492 CAN-2005-2555 CAN-2005-2801 CAN-2005-2872   kernel-2.6.9-22.EL.i686.rpm   kernel-devel-2.6.9-22.EL.i686.rpm   kernel-hugemem-2.6.9-22.EL.i686.rpm   kernel-hugemem-devel-2.6.9-22.EL.i686.rpm   kernel-module-openafs-2.6.9-22.EL-1.3.82-3.SL.i686.rpm   kernel-module-openafs-2.6.9-22.ELsmp-1.3.82-3.SL.i686.rpm   kernel-smp-2.6.9-22.EL.i686.rpm   kernel-smp-devel-2.6.9-22.EL.i686.rpmSynopsis:          Low: mysql security updateAdvisory ID:       RHSA-2005:685-01CVE Names:         CAN-2005-1636   mysql-4.1.12-3.RHEL4.1.i386.rpm   mysql-bench-4.1.12-3.RHEL4.1.i386.rpm   mysql-devel-4.1.12-3.RHEL4.1.i386.rpm   mysql-server-4.1.12-3.RHEL4.1.i386.rpmSynopsis:          Low: net-snmp security updateAdvisory ID:       RHSA-2005:395-01CVE Names:         CAN-2005-1740 CAN-2005-2177   net-snmp-5.1.2-11.EL4.6.i386.rpm   net-snmp-devel-5.1.2-11.EL4.6.i386.rpm   net-snmp-libs-5.1.2-11.EL4.6.i386.rpm   net-snmp-perl-5.1.2-11.EL4.6.i386.rpm   net-snmp-utils-5.1.2-11.EL4.6.i386.rpmSynopsis:          Low: perl security updateAdvisory ID:       RHSA-2005:674-01CVE Names:         CAN-2005-0448   perl-5.8.5-16.RHEL4.i386.rpm   perl-suidperl-5.8.5-16.RHEL4.i386.rpmSynopsis:          Low: slocate security updateAdvisory ID:       RHSA-2005:346-01CVE Names:         CAN-2005-2499   slocate-2.7-13.el4.6.i386.rpmSynopsis:          Important: thunderbird security updateAdvisory ID:       RHSA-2005:791-01CVE Names:   CAN-2005-2871 CAN-2005-2702 CAN-2005-2703 CAN-2005-2704 CAN-2005-2705 CAN-2005-2706 CAN-2005-2707 CAN-2005-2968   thunderbird-1.0.7-1.4.1.i386.rpm--Troy Dawson



Security Fixes

Severity

Related News