-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
- --------------------------------------------------------------------------
Trustix Secure Linux Bugfix Advisory #2005-0039
Package names: fetchmail, iptables, mod_fastcgi, mysql,
php, postfix, ppp, setup, sqlgrey
Summary: Various bug fixes
Date: 2005-08-05
Affected versions: Trustix Secure Linux 2.2
Trustix Secure Linux 3.0
- --------------------------------------------------------------------------
Package description:
fetchmail
Fetchmail is a remote mail retrieval and forwarding utility intended
for use over on-demand TCP/IP links, like SLIP or PPP connections.
Fetchmail supports every remote-mail protocol currently in use on the
Internet (POP2, POP3, RPOP, APOP, KPOP, all IMAPs, ESMTP ETRN, IPv6,
and IPSEC) for retrieval. Then Fetchmail forwards the mail through
SMTP so you can read it through your favorite mail client.
iptables
The iptables utility controls the network packet filtering code in the
Linux kernel. If you need to set up firewalls and/or IP masquerading,
you must install this package.
mod_fastcgi
FastCGI is a language independent, scalable, open extension to CGI
that provides high performance and persistence without the limitations
of server specific APIs.
mysql
MySQL is a true multi-user, multi-threaded SQL (Structured Query
Language) database server. MySQL is a client/server implementation
that consists of a server daemon (mysqld) and many different client
programs/libraries.
php
PHP is an HTML-embedded scripting language. PHP attempts to make it
easy for developers to write dynamically generated web pages. PHP
also offers built-in database integration for several commercial
and non-commercial database management systems, so writing a
database-enabled web page with PHP is fairly simple. The most
common use of PHP coding is probably as a replacement for CGI
scripts. The mod_php module enables the Apache web server to
understand and process the embedded PHP language in web pages.
postfix
Postfix is an alternative to the sendmail mailer daemon. Postfix attempts
to be fast, easy to administer, and secure, while at the same time being
sendmail compatible enough to not upset existing users.
ppp
The ppp package contains the PPP (Point-to-Point Protocol) daemon
and documentation for PPP support. The PPP protocol provides a
method for transmitting datagrams over serial point-to-point links.
setup
The setup package contains a set of important system configuration and
setup files, such as passwd, group, and profile.
sqlgrey
SQLgrey is a Postfix grey-listing policy service with auto-white-listing
written in Perl with SQL database as storage backend.
Greylisting stops 50 to 90 % junk mails (spam and virus) before they
reach your Postfix server (saves BW, user time and CPU time).
Problem description:
fetchmail
- Added fetchmail.init (by Olaf Rempel)
- Enabled support for ipv6
- Added a sample fetchmailrc for usage
- Fixed BuildRequires, Bug #1138
iptables
- New Upstream
- Accumulated Bug Fixes to the last version
- Adds support for upcoming (2.6.14) NFQUEUE target.
mod_fastcgi
- Initial Entry into TSL-3.0
mysql
- Now also sleep on startup if missing pidfile in initscript.
php
- Enabled FastCGI support in /home/httpd/cgi-bin/php-fcgi. Bug #1136
postfix
- Added TLS support. Fix Bug #1135.
ppp
- Fix pcap includes, Ref. Bug #1147.
setup
- Added /etc/sysconfig/mta
sqlgrey
- New Upstream
Action:
We recommend that all systems with this package installed be upgraded.
Please note that if you do not need the functionality provided by this
package, you may want to remove it from your system.
Location:
All Trustix Secure Linux updates are available from
<URI:http://http.trustix.org/pub/trustix/updates/>
<URI:ftp://ftp.trustix.org/pub/trustix/updates/>
About Trustix Secure Linux:
Trustix Secure Linux is a small Linux distribution for servers. With focus
on security and stability, the system is painlessly kept safe and up to
date from day one using swup, the automated software updater.
Automatic updates:
Users of the SWUP tool can enjoy having updates automatically
installed using 'swup --upgrade'.
Questions?
Check out our mailing lists:
<URI:http://www.trustix.org/support/>
Verification:
This advisory along with all Trustix packages are signed with the
TSL sign key.
This key is available from:
<URI:http://www.trustix.org/TSL-SIGN-KEY>
The advisory itself is available from the errata pages at
<URI:http://www.trustix.org/errata/trustix-2.2/> and
<URI:http://www.trustix.org/errata/trustix-3.0/>
or directly at
<URI:http://www.trustix.org/errata/2005/0039/>
MD5sums of the packages:
- --------------------------------------------------------------------------
520fffcdfc684786909f84ee7c0eeb3e 3.0/rpms/fetchmail-6.2.5.2-2tr.i586.rpm
ca1994233c4db94f755003e312f686bd 3.0/rpms/iptables-1.3.3-1tr.i586.rpm
8f9cd3e0f6651983a58cd6fc766cb72e 3.0/rpms/iptables-devel-1.3.3-1tr.i586.rpm
002f1593281550d787deefa12929770e 3.0/rpms/iptables-ipv6-1.3.3-1tr.i586.rpm
b4f6fb2d565a9edca85cba2c37020aeb 3.0/rpms/mod_fastcgi-2.4.2-1tr.i586.rpm
5ff644d55ff163987a0b7a455d64eb3f 3.0/rpms/mysql-4.1.13-2tr.i586.rpm
840488b46f6824188137f32e5dc9a11e 3.0/rpms/mysql-bench-4.1.13-2tr.i586.rpm
8b3274132e28a1a14431ad80124364cd 3.0/rpms/mysql-client-4.1.13-2tr.i586.rpm
da0f849272aa5c607358047b77b0f227 3.0/rpms/mysql-devel-4.1.13-2tr.i586.rpm
ebec850ec77c54882454aa4aff534a18 3.0/rpms/mysql-libs-4.1.13-2tr.i586.rpm
488c64368dda7aff9a2fb4ac07bc42cb 3.0/rpms/mysql-shared-4.1.13-2tr.i586.rpm
0a722e66f44f14a27695e2a9470fd9bf 3.0/rpms/php-5.0.4-15tr.i586.rpm
7469028376c01fee6b61e5a385b8a4dc 3.0/rpms/php-cli-5.0.4-15tr.i586.rpm
926b617b10fea0d2627ac8df2e11b1f9 3.0/rpms/php-devel-5.0.4-15tr.i586.rpm
7406b2889c236641cd02d45dfd540ca2 3.0/rpms/php-exif-5.0.4-15tr.i586.rpm
ccf3c9a51d116b4eb878754238a11b65 3.0/rpms/php-fcgi-5.0.4-15tr.i586.rpm
439a4d6881a54e070b0f2ee9aa5048ab 3.0/rpms/php-gd-5.0.4-15tr.i586.rpm
4d7d8304b674d5eafe658863ab7355c8 3.0/rpms/php-imap-5.0.4-15tr.i586.rpm
706a401dc10ff903500588377465b718 3.0/rpms/php-ldap-5.0.4-15tr.i586.rpm
6714f649708167108be18e57659bb417 3.0/rpms/php-mhash-5.0.4-15tr.i586.rpm
fd2b81b0573c89b8183127d36a47546a 3.0/rpms/php-mysql-5.0.4-15tr.i586.rpm
a2396b68392ca4b4486850d77a5bf6b4 3.0/rpms/php-mysqli-5.0.4-15tr.i586.rpm
a3d42f22ecc238513c7adf217bd4c920 3.0/rpms/php-pgsql-5.0.4-15tr.i586.rpm
53f41df3afaa43134bfc0db2349066ed 3.0/rpms/php-snmp-5.0.4-15tr.i586.rpm
7b928fbe8c8fda7c9d67512605e7ba6a 3.0/rpms/php-zlib-5.0.4-15tr.i586.rpm
a51b330999adef4eab2507a0679f1de6 3.0/rpms/postfix-2.2.5-2tr.i586.rpm
3b33df483d08217029bb42f598d779ef 3.0/rpms/postfix-conf-2.2.5-2tr.i586.rpm
449cc2bf74854351ed017d9e60839f5e 3.0/rpms/postfix-ldap-2.2.5-2tr.i586.rpm
0d903705dd2935c87bb01a95e46015fe 3.0/rpms/postfix-mysql-2.2.5-2tr.i586.rpm
3cd19ed7cbda2371196cbbfe9df6b3cd 3.0/rpms/postfix-pcre-2.2.5-2tr.i586.rpm
78bf3ef30a3b118f7e71585ab3ab76b7 3.0/rpms/postfix-pgsql-2.2.5-2tr.i586.rpm
d8a2af86e3aa72e53fba5999128dfba9 3.0/rpms/postfix-rmail-2.2.5-2tr.i586.rpm
82d4703e3492892f970b2423ee2483a8 3.0/rpms/ppp-2.4.3-9tr.i586.rpm
e4bd2ae44f7721697bda04f2ded30a8c 3.0/rpms/setup-2.2.9-10tr.i586.rpm
91bbc0a73155d299a35b0b07b2764d82 3.0/rpms/sqlgrey-1.6.5-1tr.i586.rpm
07c1db3369f46f77a85516a13282cef8 2.2/rpms/mysql-4.1.13-2tr.i586.rpm
ad853a1f354b25860030a38efcc9a816 2.2/rpms/mysql-bench-4.1.13-2tr.i586.rpm
8dc334be02e4c1c4d671796e827100ba 2.2/rpms/mysql-client-4.1.13-2tr.i586.rpm
9fc041a388b84e0ed755668c000ee7d6 2.2/rpms/mysql-devel-4.1.13-2tr.i586.rpm
60fdaf470c57e5e379aa4f910135031a 2.2/rpms/mysql-libs-4.1.13-2tr.i586.rpm
4bcb7b4baa573f0b162ef4c58ab2781e 2.2/rpms/mysql-shared-4.1.13-2tr.i586.rpm
d606c9ae8a796306ddd45aa4de77c390 2.2/rpms/ppp-2.4.3-5tr.i586.rpm
fba591fb2a20a20fe5ed39861014cc8a 2.2/rpms/sqlgrey-1.6.5-1tr.i586.rpm
- --------------------------------------------------------------------------
Trustix Security Team
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
iD8DBQFC85aIi8CEzsK9IksRAm/HAJ0S3b6zPq5Aqgo+zPJP3GoY6PIiSACffCse
4KPB2BYUiHNXCBdfcch6vMI=
=ZxDK
-----END PGP SIGNATURE-----
_______________________________________________
tsl-announce mailing list
[email protected]
http://lists.trustix.org/mailman/listinfo/tsl-announce
_______________________________________________
tsl-discuss mailing list
[email protected]
http://lists.trustix.org/mailman/listinfo/tsl-discuss