-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- --------------------------------------------------------------------------
Trustix Secure Linux Bugfix Advisory #2005-0037

Package name:      bind, clamav, courier-authlib, courier-imap, dhcp,
                   initscripts, iptables, kernel, nscd, postfix, samba
Summary:           Various bug fixes
Date:              2005-07-29
Affected versions: Trustix Secure Linux 2.2
                   Trustix Secure Linux 3.0
- --------------------------------------------------------------------------
Package Description:
  bind
  BIND (Berkeley Internet Name Domain) is an implementation of the DNS
  (Domain Name System) protocols. BIND includes a DNS server (named),
  which resolves host names to IP addresses, and a resolver library
  (routines for applications to use when interfacing with DNS).  A DNS
  server allows clients to name resources or objects and share the
  information with other network machines.  The named DNS server can be
  used on workstations as a caching name server, but is generally only
  needed on one machine for an entire network.
  
  clamav
  Clam AntiVirus is a GPL anti-virus toolkit for UNIX. The main purpose of 
  this software is the integration with mail servers (attachment scanning).
  The package provides a flexible and scalable multi-threaded daemon,
  a command line scanner, and a tool for automatic updating via Internet.
  The programs are based on a shared library distributed with package,
  which you can use with your own software.
  
  courier-authlib
  This is the Courier authentication library. Copies of this library code
  used to exist in other tarballs: Courier, Courier-IMAP, and SqWebMail.
  Building and installing any of these packages would've automatically
  installed this authentication code.The authentication library is now
  a separate, standalone package.
  
  courier-imap
  Courier-IMAP is an IMAP server for Maildir mailboxes.  This package contains
  the standalone version of the IMAP server that's included in the Courier
  mail server package.  This package is a standalone version for use with
  other mail servers.
  
  dhcp
  DHCP (Dynamic Host Configuration Protocol) is a protocol which allows
  individual devices on an IP network to get their own network
  configuration information (IP address, subnetmask, broadcast address,
  etc.) from a DHCP server.  The overall purpose of DHCP is to make it
  easier to administer a large network.  The dhcp package includes the DHCP
  server and a DHCP relay agent.
  
  initscripts
  The initscripts package contains the basic system scripts used to boot
  your Trustix Secure Linux system, change runlevels, and shut the system
  down cleanly.  Initscripts also contains the scripts that activate and
  deactivate most network interfaces.
  
  
  iptables
  The iptables utility controls the network packet filtering code in the
  Linux kernel. If you need to set up firewalls and/or IP masquerading,
  you must install this package.
  
  kernel
  The kernel package contains the Linux kernel (vmlinuz), the core of your
  Trustix Secure Linux operating system.  The kernel handles the basic
  functions of the operating system:  memory allocation, process allocation,
  device input and output, etc.
  
  glibc
  The glibc package contains standard libraries which are used by
  multiple programs on the system. In order to save disk space and
  memory, as well as to make upgrading easier, common system code is
  kept in one place and shared between programs. This particular package
  contains the most important sets of shared libraries: the standard C
  library and the standard math library. Without these two libraries, a
  Linux system will not function.  The glibc package also contains
  national language (locale) support and timezone databases.
  
  postfix
  Postfix is an alternative to the sendmail mailer daemon. Postfix attempts
  to be fast, easy to administer, and secure, while at the same time being
  sendmail compatible enough to not upset existing users.
  
  samba
  Samba provides an SMB server which can be used to provide network
  services to SMB (sometimes called "Lan Manager") clients, including
  various versions of MS Windows, OS/2, and other Linux machines. Samba
  uses NetBIOS over TCP/IP (NetBT) protocols and does NOT need NetBEUI
  (Microsoft Raw NetBIOS frame) protocol.
  
  
Problem Description:
  bind
  - Fixed named.init for reloadproc, Ref. bug #1131.
  
  courier-authlib
  - New Upstream
  - New access control list group account options.
  
  courier-imap
  - New Upstream
  - Adds Support for control access lists account groups.
  - Academical fix to mkimapdcert and mkpop3dcert to set the umask before
    creating the cert file.
  - Rebuilt on courier-authlib-0.57
  
  clamav
  - New Upstream
  - Fixes for three possible integer overflows in libclamav, improved
    scanning of Cabinet and FSG compressed files, better database handling
    in clamav-milter.
  
  dhcp
  - New Upstream
  - Added a Patch for ifup
  
  initscripts
  - Run evms_activate before fsck so that correct device node numbers are
    assigned to nodes if in case got changed
  
  iptables
  - New Upstream
  - Built with gcc -fno-stack-protector, extensions don't load with
    stack_protector
    Fix Bug #1096.
  - Use ip6tables instead of iptables for IPv6.
  
  kernel
  - Now use AUTOACTIVATE correctly as expected in tsl-fixboot, removed
    --make-default option (AUTOACTIVATE will handle this).
  - Added support for standard serial ports. Fix Bug #1093.
  - Added support for Large Block Devices (greater than 2TB). Fix Bug #1070.
  - Added CONNMARK support in kernel and enabled 
    CONFIG_IP_NF_MATCH_CONNMARK and CONFIG_IP_NF_TARGET_CONNMARK modules.
    Fix Bug #1081.
  
  glibc
  - Minor clean up of previously fixed bug for proper working of nscd.
    Fixed bug#1086
  
  postfix
  - New Upstream
  
  samba
  - Minor clean ups in the  init script, Bug #1090.
  

Action:
  We recommend that all systems with this package installed be upgraded.
  Please note that if you do not need the functionality provided by this
  package, you may want to remove it from your system.


Location:
  All Trustix Secure Linux updates are available from
  <URI:http://http.trustix.org/pub/trustix/updates/>
  <URI:ftp://ftp.trustix.org/pub/trustix/updates/>


About Trustix Secure Linux:
  Trustix Secure Linux is a small Linux distribution for servers. With focus
  on security and stability, the system is painlessly kept safe and up to
  date from day one using swup, the automated software updater.


Automatic updates:
  Users of the SWUP tool can enjoy having updates automatically
  installed using 'swup --upgrade'.


Questions?
  Check out our mailing lists:
  <URI:http://www.trustix.org/support/>


Verification:
  This advisory along with all Trustix packages are signed with the
  TSL sign key.
  This key is available from:
  <URI:http://www.trustix.org/TSL-SIGN-KEY>

  The advisory itself is available from the errata pages at
  <URI:http://www.trustix.org/errata/trustix-2.2/> and
  <URI:http://www.trustix.org/errata/trustix-3.0/>
  or directly at
  <URI:http://www.trustix.org/errata/2005/0037/>


MD5sums of the packages:
- --------------------------------------------------------------------------
a1aa671bea792d39a989b0d5abe52433  3.0/rpms/bind-9.3.1-7tr.i586.rpm
6a0145f9b0a902f90a989d0a57a0460b  3.0/rpms/bind-devel-9.3.1-7tr.i586.rpm
98e12723a0fa90e773e4b6191894226e  3.0/rpms/bind-libs-9.3.1-7tr.i586.rpm
62b6ac65ff29235303845ed48954d0df  3.0/rpms/bind-light-9.3.1-7tr.i586.rpm
326b3776338852516a53317f63ecc49d  3.0/rpms/bind-light-devel-9.3.1-7tr.i586.rpm
dcdb118f71d46be1fab004b4ea987dc3  3.0/rpms/bind-utils-9.3.1-7tr.i586.rpm
fc19a36b721b4f4fa899e7516df79c27  3.0/rpms/clamav-0.86.2-1tr.i586.rpm
7f8f51ae86eda901fb02854249b106e4  3.0/rpms/clamav-devel-0.86.2-1tr.i586.rpm
451527d31a9e536f1280c99fe160ef9a  3.0/rpms/courier-authlib-0.57-2tr.i586.rpm
da99db7d5a8f723a81b583f88fee6525  
3.0/rpms/courier-authlib-ldap-0.57-2tr.i586.rpm
5f96d774c42bd98b78069c06c19718cd  
3.0/rpms/courier-authlib-mysql-0.57-2tr.i586.rpm
771dade79fafd3191f3f71eec68d1d2c  
3.0/rpms/courier-authlib-pgsql-0.57-2tr.i586.rpm
9c296e28d69b05dd36489ef4d9a6a3bb  3.0/rpms/courier-imap-4.0.4-1tr.i586.rpm
982e5df7838839dd6f7b5858554b3457  3.0/rpms/dhcp-client-3.0.3-1tr.i586.rpm
8e1c372d9c5f69fae4d3b667d4324352  3.0/rpms/dhcp-common-3.0.3-1tr.i586.rpm
79a78be388471a7fcb7a78a2ef83b0e4  3.0/rpms/dhcp-devel-3.0.3-1tr.i586.rpm
e26e9ee62f298f0b76cebac5a9996e29  3.0/rpms/dhcp-server-3.0.3-1tr.i586.rpm
39fdd63dc431e63ecadda6c2ee986ff1  3.0/rpms/initscripts-7.14-35tr.i586.rpm
04907dd3bf61e69435becca8a637f1fe  3.0/rpms/iptables-1.3.2-1tr.i586.rpm
bdb2d598fda0e702d2e64740b5c689f0  3.0/rpms/iptables-devel-1.3.2-1tr.i586.rpm
def112ff2518c28515395db2d7f76aee  3.0/rpms/iptables-ipv6-1.3.2-1tr.i586.rpm
f8a6f3e39b9a303fdea1fe3b495a26d8  3.0/rpms/kernel-2.6.11.12-6tr.i586.rpm
b297d7a4f6625fbc550b49b754a55295  3.0/rpms/kernel-doc-2.6.11.12-6tr.i586.rpm
558484d4cd23976e7fb21773678c2b1c  
3.0/rpms/kernel-headers-2.6.11.12-6tr.i586.rpm0db6b741d648b922e15723af2f9a8398  
3.0/rpms/kernel-smp-2.6.11.12-6tr.i586.rpm
f98d1e50349bd0fe5c276478a94ecaa6  
3.0/rpms/kernel-smp-headers-2.6.11.12-6tr.i586.rpm
1c515deebcf76161142aa254735d9f3d  3.0/rpms/kernel-source-2.6.11.12-6tr.i586.rpm
6bc90d1388153153fdc8d8200eda9e63  3.0/rpms/kernel-utils-2.6.11.12-6tr.i586.rpm
a51b330999adef4eab2507a0679f1de6  3.0/rpms/postfix-2.2.5-2tr.i586.rpm
3b33df483d08217029bb42f598d779ef  3.0/rpms/postfix-conf-2.2.5-2tr.i586.rpm
449cc2bf74854351ed017d9e60839f5e  3.0/rpms/postfix-ldap-2.2.5-2tr.i586.rpm
0d903705dd2935c87bb01a95e46015fe  3.0/rpms/postfix-mysql-2.2.5-2tr.i586.rpm
3cd19ed7cbda2371196cbbfe9df6b3cd  3.0/rpms/postfix-pcre-2.2.5-2tr.i586.rpm
78bf3ef30a3b118f7e71585ab3ab76b7  3.0/rpms/postfix-pgsql-2.2.5-2tr.i586.rpm
d8a2af86e3aa72e53fba5999128dfba9  3.0/rpms/postfix-rmail-2.2.5-2tr.i586.rpm
11027f17af9e68aaa512d6d9c61a3580  3.0/rpms/samba-3.0.14a-8tr.i586.rpm
7c7f1e2af503292d44386c3a730f2a88  3.0/rpms/samba-client-3.0.14a-8tr.i586.rpm
bc8b2e4a563fba2049d7f9032327946c  3.0/rpms/samba-common-3.0.14a-8tr.i586.rpm
53375959b358e2eaab39e02168eadfbb  3.0/rpms/samba-mysql-3.0.14a-8tr.i586.rpm

fa0ccbd884d61940521284ea57b07f9a  2.2/rpms/bind-9.3.1-3tr.i586.rpm
eb8718ba719cb0db0d883cc502973658  2.2/rpms/bind-devel-9.3.1-3tr.i586.rpm
39938e2951544f37a061fbac030d3f87  2.2/rpms/bind-libs-9.3.1-3tr.i586.rpm
401ec62a3832eb35b3d4d47906990028  2.2/rpms/bind-light-9.3.1-3tr.i586.rpm
d67b43a0fb53434c1287e971a1c96b5a  2.2/rpms/bind-light-devel-9.3.1-3tr.i586.rpm
bf21fadfab6b5e201d9665d207065af7  2.2/rpms/bind-utils-9.3.1-3tr.i586.rpm
f6d693725a9bebdc17436df781764de4  2.2/rpms/clamav-0.86.2-1tr.i586.rpm
fdfb6c97864e25063877027c4326233d  2.2/rpms/clamav-devel-0.86.2-1tr.i586.rpm
a1d2c5ded413ff03c28ed28468033934  2.2/rpms/postfix-2.1.6-1tr.i586.rpm
e3bac3b0626299acca0b02b79243928f  2.2/rpms/postfix-conf-2.1.6-1tr.i586.rpm
69380a053805612bb377d23adf82f7bf  2.2/rpms/postfix-ldap-2.1.6-1tr.i586.rpm
6473eff1f19295aed387b529bb3646be  2.2/rpms/postfix-mysql-2.1.6-1tr.i586.rpm
e65f64bac364219667dcd4678afcb1a2  2.2/rpms/postfix-pcre-2.1.6-1tr.i586.rpm
d23e9df0893518c065d4487c3d1b1869  2.2/rpms/postfix-pgsql-2.1.6-1tr.i586.rpm
614a59bc4f5b4ee70746085a449fc33d  2.2/rpms/postfix-rmail-2.1.6-1tr.i586.rpm
- --------------------------------------------------------------------------


Trustix Security Team

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)

iD8DBQFC7h6Wi8CEzsK9IksRAhHFAJ9XPYgv5kWskra6AlSEuWKD06K6pQCfWUbe
0Pi50uICw4fhGRxxzRJmPEM=
=l9Ck
-----END PGP SIGNATURE-----
_______________________________________________
tsl-announce mailing list
[email protected]
http://lists.trustix.org/mailman/listinfo/tsl-announce
_______________________________________________
tsl-discuss mailing list
[email protected]
http://lists.trustix.org/mailman/listinfo/tsl-discuss

Reply via email to