| From: |
| updates@fedoraproject.org |
| To: |
| fedora-package-announce@redhat.com |
| Subject: |
| [SECURITY] Fedora 9 Update: fail2ban-0.8.3-18.fc9 |
| Date: |
| Sat, 14 Feb 2009 22:15:12 +0000 |
| Message-ID: |
| <20090214221512.C044120853E@bastion.fedora.phx.redhat.com> |
--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2009-1736
2009-02-14 21:22:31
--------------------------------------------------------------------------------
Name : fail2ban
Product : Fedora 9
Version : 0.8.3
Release : 18.fc9
URL : http://fail2ban.sourceforge.net/
Summary : Ban IPs that make too many password failures
Description :
Fail2ban scans log files like /var/log/pwdfail or
/var/log/apache/error_log and bans IP that makes too many password
failures. It updates firewall rules to reject the IP address.
--------------------------------------------------------------------------------
Update Information:
This updates fixes CVE-2009-0362. See http://cve.mitre.org/cgi-
bin/cvename.cgi?name=CVE-2009-0362 for further details.
--------------------------------------------------------------------------------
ChangeLog:
* Sat Feb 14 2009 Axel Thimm <Axel.Thimm@ATrpms.net> - 0.8.3-18
- Fix CVE-2009-0362 (Fedora bugs #485461, #485464, #485465, #485466).
* Mon Dec 1 2008 Ignacio Vazquez-Abrams <ivazqueznet+rpm@gmail.com> - 0.8.3-17
- Rebuild for Python 2.6
* Sun Aug 24 2008 Axel Thimm <Axel.Thimm@ATrpms.net> - 0.8.3-16
- Update to 0.8.3.
* Wed May 21 2008 Tom "spot" Callaway <tcallawa@redhat.com> - 0.8.2-15
- fix license tag
* Thu Mar 27 2008 Axel Thimm <Axel.Thimm@ATrpms.net> - 0.8.2-14
- Close on exec fixes by Jonathan Underwood.
--------------------------------------------------------------------------------
References:
[ 1 ] Bug #485461 - CVE-2009-0362 fail2ban: remote DoS via crafted domain names
https://bugzilla.redhat.com/show_bug.cgi?id=485461
--------------------------------------------------------------------------------
This update can be installed with the "yum" update program. Use
su -c 'yum update fail2ban' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------
_______________________________________________
Fedora-package-announce mailing list
Fedora-package-announce@redhat.com
http://www.redhat.com/mailman/listinfo/fedora-package-ann...
(
Log in to post comments)