LWN.net Logo

Security updates for Friday

Security updates for Friday
[Security] Posted Dec 9, 2011 20:47 UTC (Fri) by jake

CentOS has updated perl (C4; C5: multiple vulnerabilities).

openSUSE has updated opera (multiple vulnerabilities).

Oracle has updated perl (OL4; OL5: multiple vulnerabilities).

Red Hat has updated perl (RHEL 4&5: multiple vulnerabilities), qemu-kvm (RHEL 6: privilege escalation), and jasper (RHEL 6: two code execution flaws).

Scientific Linux has put out a bunch of updates to SL6 that track the ones released as part of RHEL 6.2 on Wednesday: kexec-tools (three ssh-related flaws), krb5 (denial of service), squid (denial of service), libxml2 (multiple vulnerabilities), php-pear (arbitrary file overwrite), libcap (chroot escape), util-linux-ng (mtab corruption and denial of service), ruby (two random number flaws), resource-agents (privilege escalation), sos (Red Hat network entitlement key disclosure), nfs-utils (mtab corruption and access control bypass), glibc (code execution and mtab corruption), and cups (code execution). It has also updated perl (SL4&5: multiple vulnerabilities).

Ubuntu has updated dovecot (certificate validation flaw), acpid (multiple vulnerabilities), and django (multiple vulnerabilities).

Comments (none posted)

Copyright © 2011, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds