LWN.net Logo

Security advisories for Monday

Fedora has updated ghostscript (F17; F16: code execution).

Gentoo has updated vmware-player (multiple vulnerabilities).

Mageia has updated tor (multiple vulnerabilities), ganglia (code execution), spice-gtk (privilege escalation) and iceape (multiple vulnerabilities).

Oracle has updated enterprise kernel (OL6; OL5: multiple vulnerabilities).


(Log in to post comments)

Security advisories for Monday

Posted Oct 1, 2012 18:27 UTC (Mon) by charlieb (subscriber, #23340) [Link]

Is Oracle really posting ELSA security advisories on rhn.redhat.com? Seems rather unlikely...

http://lwn.net/Articles/518240/
http://lwn.net/Articles/518241/

Security advisories for Monday

Posted Oct 1, 2012 19:29 UTC (Mon) by ris (editor, #5) [Link]

In this case Oracle is posting security advisories for its "Unbreakable Enterprise kernel", not the Red Hat kernel.

Security advisories for Monday

Posted Oct 1, 2012 19:47 UTC (Mon) by jake (editor, #205) [Link]

Hmm, looks like a typo (of sorts) in the Oracle advisories. Most Oracle advisories just point to the Red Hat equivalent, which, of course, doesn't exist for these (as it is Oracle's own kernel, not the RHEL-derived kernel, from what I can see). Someone must have forgotten to fix that up.

jake

Security advisories for Monday

Posted Oct 1, 2012 21:22 UTC (Mon) by geofft (subscriber, #59789) [Link]

Those are impressively ancient versions of VMware in Gentoo. (The continued existence of something called "VMware Server" is kind of a giveaway.)

Good on the Gentoo security team for issuing an advisory about it, but I'm surprised nobody noticed earlier.

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds