-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- --------------------------------------------------------------------------
Trustix Secure Linux Bugfix Advisory #2005-0052

Package names:     net-tools, php, time, xdelta, zsh 
Summary:           Various bug fixes
Date:              2005-09-30
Affected versions: Trustix Secure Linux 3.0

- --------------------------------------------------------------------------
Package description:
  net-tools
  The net-tools package contains the basic tools needed for setting up
  networking:  ethers, route and others.

  php
  PHP is an HTML-embedded scripting language.  PHP attempts to make it easy
  for developers to write dynamically generated web pages. PHP also offers
  built-in database integration for several commercial and non-commercial
  database management systems, so writing a database-enabled web page with
  PHP is fairly simple. The most common use of PHP coding is probably as a
  replacement for CGI scripts. The mod_php module enables the Apache web
  server to understand and process the embedded PHP language in web pages.

  time
  The time command runs another program, then displays information about
  the resources used by that program, collected by the system while the
  program was running.

  xdelta
  XDelta (X for XCF: the eXperimental Computing Facility at Berkeley) is
  a library interface and binary delta generator (like a diff program
  for binaries) and an RCS. These changes (deltas) are similar to the
  output of the "diff" program in that they may be used to store and
  transmit only the changes between files. However, unlike diff, the
  output of XDelta is not expressed in a human-readable format--XDelta
  can also also apply these deltas to a copy of the original file(s).

  zsh
  zsh is a shell designed for interactive use, although it is also a 
  powerful scripting language. Many of the useful features of bash, ksh,
  and tcsh were incorporated into zsh; many original features were added.

Problem description:
  net-tools < TSL 3.0 >
  - fix stack smash attack in function if_readlist_proc

  php < TSL 3.0 >
  - Added calender support. Bug #1303.
  - Created pspell sub package.

  time < TSL 3.0 >
  - Initial Entry into TSL 3.0

  xdelta < TSL 3.0 >
  - Initial Entry into TSL 3.0

  zsh < TSL 3.0 >
  - Initial Entry into TSL 3.0
  
Action:
  We recommend that all systems with this package installed be upgraded.
  Please note that if you do not need the functionality provided by this
  package, you may want to remove it from your system.


Location:
  All Trustix Secure Linux updates are available from
  <URI:http://http.trustix.org/pub/trustix/updates/>
  <URI:ftp://ftp.trustix.org/pub/trustix/updates/>


About Trustix Secure Linux:
  Trustix Secure Linux is a small Linux distribution for servers. With focus
  on security and stability, the system is painlessly kept safe and up to
  date from day one using swup, the automated software updater.


Automatic updates:
  Users of the SWUP tool can enjoy having updates automatically
  installed using 'swup --upgrade'.


Questions?
  Check out our mailing lists:
  <URI:http://www.trustix.org/support/>


Verification:
  This advisory along with all Trustix packages are signed with the
  TSL sign key.
  This key is available from:
  <URI:http://www.trustix.org/TSL-SIGN-KEY>

  The advisory itself is available from the errata pages at
  <URI:http://www.trustix.org/errata/trustix-3.0/>
  or directly at
  <URI:http://www.trustix.org/errata/2005/0052/>


MD5sums of the packages:
- --------------------------------------------------------------------------
c51095a79a2eaf03c7aac48040dcb750  3.0/rpms/net-tools-1.60-13tr.i586.rpm
7b5479c6fc3717e457d88ef4645841f3  3.0/rpms/php-5.0.4-21tr.i586.rpm
6646a43cd9c35d67770a78305510a541  3.0/rpms/php-calendar-5.0.4-21tr.i586.rpm
6a1098e1c448c746b4429539601477f1  3.0/rpms/php-cli-5.0.4-21tr.i586.rpm
7962578709021bdae90cda48c483ffc7  3.0/rpms/php-curl-5.0.4-21tr.i586.rpm
d66c5ed42344e7de50f91f5ebc4d49c2  3.0/rpms/php-devel-5.0.4-21tr.i586.rpm
8a88d7f0bee3e4514b97d64e1ef29ef7  3.0/rpms/php-exif-5.0.4-21tr.i586.rpm
ef1e4d45fda0d10e5bd0fc5c89b1ac57  3.0/rpms/php-fcgi-5.0.4-21tr.i586.rpm
37f13c1302feba92fc3e7d1011dc7b91  3.0/rpms/php-gd-5.0.4-21tr.i586.rpm
db7583072ddd6a078f5761dd900a2378  3.0/rpms/php-imap-5.0.4-21tr.i586.rpm
30dd41cc256a9665bfcf403bb843ea37  3.0/rpms/php-ldap-5.0.4-21tr.i586.rpm
5367ca3c2459efa19b45f5b9b5a5c9ef  3.0/rpms/php-mhash-5.0.4-21tr.i586.rpm
05a63082df5c8d87fb51022162ab3491  3.0/rpms/php-mysql-5.0.4-21tr.i586.rpm
837cd2f3106f92180d3aedd751f6f1de  3.0/rpms/php-mysqli-5.0.4-21tr.i586.rpm
393b6283302865c5dce73b30527c33cb  3.0/rpms/php-pgsql-5.0.4-21tr.i586.rpm
04ea0bfa09d5527ae118f45de1c14ddb  3.0/rpms/php-pspell-5.0.4-21tr.i586.rpm
d6f200bee129b2c6ea02522e5e16628a  3.0/rpms/php-snmp-5.0.4-21tr.i586.rpm
462f6a49f21a1cbed0dbf8031b430111  3.0/rpms/php-zlib-5.0.4-21tr.i586.rpm
358a31c484561991bf651239015f666f  3.0/rpms/time-1.7-1tr.i586.rpm
dcb060e631a7a71d059222747eeaf5c0  3.0/rpms/xdelta-1.1.3-1tr.i586.rpm
8678e17a88aba8d5b15052ae69e1c22d  3.0/rpms/xdelta-devel-1.1.3-1tr.i586.rpm
1de2af2994b4ea3c4d817de913fb7d21  3.0/rpms/zsh-4.2.5-2tr.i586.rpm
- --------------------------------------------------------------------------


Trustix Security Team


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)

iD8DBQFDPYB8i8CEzsK9IksRAiSFAKCUJH543KkbZAsQiA4QXTFkX5clCgCdHkpl
YCocGVuTvTI7DXFlb7Nn+M4=
=kXG6
-----END PGP SIGNATURE-----
_______________________________________________
tsl-announce mailing list
[email protected]
http://lists.trustix.org/mailman/listinfo/tsl-announce
_______________________________________________
tsl-discuss mailing list
[email protected]
http://lists.trustix.org/mailman/listinfo/tsl-discuss

Reply via email to