| From: |
| Errata Announcements for Oracle Linux <el-errata@oracle.com> |
| To: |
| el-errata@oss.oracle.com |
| Subject: |
| [El-errata] ELSA-2012-0095 Moderate: Oracle Linux 5 ghostscript
security update |
| Date: |
| Fri, 03 Feb 2012 18:53:20 -0800 |
| Message-ID: |
| <4F2C9DA0.5030107@oracle.com> |
| Archive-link: |
| Article, Thread
|
Oracle Linux Security Advisory ELSA-2012-0095
https://rhn.redhat.com/errata/RHSA-2012-0095.html
The following updated rpms for Oracle Linux 5 have been uploaded to the
Unbreakable Linux Network:
i386:
ghostscript-8.70-6.el5_7.6.i386.rpm
ghostscript-devel-8.70-6.el5_7.6.i386.rpm
ghostscript-gtk-8.70-6.el5_7.6.i386.rpm
x86_64:
ghostscript-8.70-6.el5_7.6.i386.rpm
ghostscript-8.70-6.el5_7.6.x86_64.rpm
ghostscript-devel-8.70-6.el5_7.6.i386.rpm
ghostscript-devel-8.70-6.el5_7.6.x86_64.rpm
ghostscript-gtk-8.70-6.el5_7.6.x86_64.rpm
ia64:
ghostscript-8.70-6.el5_7.6.ia64.rpm
ghostscript-devel-8.70-6.el5_7.6.ia64.rpm
ghostscript-gtk-8.70-6.el5_7.6.ia64.rpm
SRPMS:
http://oss.oracle.com/ol5/SRPMS-updates/ghostscript-8.70-...
Description of changes:
[8.70-6:.6]
- Applied upstream fix to last patch (CVE-2010-4054, bug #646086).
[8.70-6:.5]
- Applied patch to prevent null pointer dereference (CVE-2010-4054,
bug #646086).
[8.70-6:.4]
- Applied patch to avoid reading initialization files from CWD
(CVE-2010-2055, bug #599564).
- Applied patch to prevent integer underflow in TrueType bytecode
interpreter (CVE-2009-3743, bug #627902).
[8.70-6:.3]
- Fixed character spacing problems using backported patch (bug #688996).
- Match landscape page sizes when writing PXL (bug #692165).
_______________________________________________
El-errata mailing list
El-errata@oss.oracle.com
http://oss.oracle.com/mailman/listinfo/el-errata
(
Log in to post comments)