LWN.net Logo

Advertisement

E-Commerce & credit card processing - the Open Source way!

Advertise here

Trustix Secure Linux

From:  Trustix Security Advisor <tsl-AT-trustix.org>
To:  tsl-announce-AT-lists.trustix.org
Subject:  TSL-2004-0030 - multi
Date:  Wed, 2 Jun 2004 13:57:15 +0200

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- --------------------------------------------------------------------------
Trustix Secure Linux Bugfix Advisory #2004-0030

Package name:      cyrus-imapd, dhcp, openssl, samba
Summary:           Various problems
Date:              2004-06-02
Affected versions: Trustix Secure Linux 2.1
                   Trustix Secure Enterprise Linux 2

- --------------------------------------------------------------------------
Package description:
  cyrus-imapd:
  The Cyrus IMAP server is a scaleable enterprise mail system
  designed for use from small to large enterprise environments using
  standards-based technologies.

  dhcp:
  DHCP server is the Internet Software Consortium (ISC) DHCP server for
  various UNIX operating systems. It allows a UNIX mac hine to serve DHCP
  requests from the network.

  openssl:
  A C library that provides various crytographic algorithms and protocols,
  including DES, RC4, RSA, and SSL. Includes shared libraries.

  samba:
  Samba provides an SMB server which can be used to provide network
  services to SMB (sometimes called "Lan Manager") clients, including
  various versions of MS Windows, OS/2, and other Linux machines. Samba
  uses NetBIOS over TCP/IP (NetBT) protocols and does NOT need NetBEUI
  (Microsoft Raw NetBIOS frame) protocol.


Problem description:
  cyrus-imapd:
  The directories used by sieve were missing from the package and thus
  the sieve part would not work.

  dhcp:
  Missing file in /var/state/dhcp preventing the dhcp server from starting.

  openssl:
  Now also ship m2crypto-0.09/M2Crypto/{SSL,PGP}.

  samba:
  There is a premature optimization in unix_convert() which is best shown
  in cases where people using Macromedia HomeSite were getting weird
  error messages.


Action:
  We recommend that all systems with this package installed be upgraded.
  Please note that if you do not need the functionality provided by this
  package, you may want to remove it from your system.


Location:
  All Trustix Secure Linux updates are available from
  <URI:http://http.trustix.org/pub/trustix/updates/>
  <URI:ftp://ftp.trustix.org/pub/trustix/updates/>


About Trustix Secure Linux:
  Trustix Secure Linux is a small Linux distribution for servers. With focus
  on security and stability, the system is painlessly kept safe and up to
  date from day one using swup, the automated software updater.


Automatic updates:
  Users of the SWUP tool can enjoy having updates automatically
  installed using 'swup --upgrade'.


Public testing:
  Most updates for Trustix Secure Linux are made available for public
  testing some time before release.
  If you want to contribute by testing the various packages in the
  testing tree, please feel free to share your findings on the
  tsl-discuss mailinglist.
  The testing tree is located at
  <URI:http://tsldev.trustix.org/horizon/>

  You may also use swup for public testing of updates:
  
  site {
      class = 0
      location = "http://tsldev.trustix.org/horizon/rdfs/latest.rdf"
      regexp = ".*"
  }
  

Questions?
  Check out our mailing lists:
  <URI:http://www.trustix.org/support/>


Verification:
  This advisory along with all Trustix packages are signed with the
  TSL sign key.
  This key is available from:
  <URI:http://www.trustix.org/TSL-SIGN-KEY>

  The advisory itself is available from the errata pages at
  <URI:http://www.trustix.org/errata/trustix-2.1/>
  or directly at
  <URI:http://www.trustix.org/errata/2004/0030/>


MD5sums of the packages:
- --------------------------------------------------------------------------
91f330fdd1247c620e0505fdbd50092e  tsel-2/cyrus-imapd-2.2.3-3tr.i586.rpm
7861e0004f30b0794ca8934147980b26  tsel-2/cyrus-imapd-devel-2.2.3-3tr.i586.rpm
9a4ddc64ea639d4508b5c720b7373193  tsel-2/dhcp-client-3.0pl2-12tr.i586.rpm
22eaba50b32f1e592ea16721b4131153  tsel-2/dhcp-common-3.0pl2-12tr.i586.rpm
af4ac0205a89d4df5a6a3628ff4ac586  tsel-2/dhcp-devel-3.0pl2-12tr.i586.rpm
9ae7b9be9732c1f78997e52f94926be6  tsel-2/dhcp-server-3.0pl2-12tr.i586.rpm
41ad1566715e22f2af21c420d11cc2df  tsel-2/openssl-0.9.7c-11tr.i586.rpm
988b4ade979bd23dd99075506c621a10  tsel-2/openssl-devel-0.9.7c-11tr.i586.rpm
b65298e66f48dcad0c98a16e1dc23ab6  tsel-2/openssl-python-0.9.7c-11tr.i586.rpm
d4364a376464a85f46d268821d554d33  tsel-2/openssl-support-0.9.7c-11tr.i586.rpm
251131ec5fb741d328687b823d3d2328  tsel-2/samba-3.0.4-2tr.i586.rpm
a1d121e5fb5775e87fa28ccc27186640  tsel-2/samba-client-3.0.4-2tr.i586.rpm
b0cbfa7a6d9afe66e98a20f5426875ed  tsel-2/samba-common-3.0.4-2tr.i586.rpm
efae6bc62630e2e36e3e2d73e2a68615  tsel-2/samba-mysql-3.0.4-2tr.i586.rpm

aa7b821a819500740c239ec0d3ed0caf  2.1/rpms/cyrus-imapd-2.2.3-3tr.i586.rpm
b9c96f86d889dcd7e8213ffc9af37c92  2.1/rpms/cyrus-imapd-devel-2.2.3-3tr.i586.rpm
456b246ff755a95f2dfef536af307140  2.1/rpms/dhcp-client-3.0pl2-12tr.i586.rpm
9a9b3f96a187b918817ca81a43ad64f1  2.1/rpms/dhcp-common-3.0pl2-12tr.i586.rpm
c43f3da55e57e4b151f875dfa712d161  2.1/rpms/dhcp-devel-3.0pl2-12tr.i586.rpm
0cb7f38d71012f4542b13f2f6e2b1903  2.1/rpms/dhcp-server-3.0pl2-12tr.i586.rpm
08ed91f5f31c55ba22631525f7146fba  2.1/rpms/openssl-0.9.7c-11tr.i586.rpm
300969489323b5357859c56a30a258a8  2.1/rpms/openssl-devel-0.9.7c-11tr.i586.rpm
0e28ea4b4237e8e874d3765f444c9464  2.1/rpms/openssl-python-0.9.7c-11tr.i586.rpm
0f2bc11322a216db1b8337da42dd5710  2.1/rpms/openssl-support-0.9.7c-11tr.i586.rpm
4e9430b7f90f11faedc3f5d614ee5efc  2.1/rpms/samba-3.0.4-2tr.i586.rpm
d0a60a268a44655fff8092677ee646ca  2.1/rpms/samba-client-3.0.4-2tr.i586.rpm
72d78757d1eee73ebe987ffc32d0c9bd  2.1/rpms/samba-common-3.0.4-2tr.i586.rpm
0148fa874d048274d8d706cd5925a2c7  2.1/rpms/samba-mysql-3.0.4-2tr.i586.rpm
- --------------------------------------------------------------------------


Trustix Security Team

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)

iD8DBQFAvalXi8CEzsK9IksRArCjAJ9j2BkPDDFWrJ1803fMocN9UCdskQCaAyQA
65iMN5ESC+dQBJq27gGzhJI=
=MNMW
-----END PGP SIGNATURE-----
_______________________________________________
tsl-announce mailing list
tsl-announce@lists.trustix.org
http://lists.trustix.org/mailman/listinfo/tsl-announce


(Log in to post comments)

Copyright © 2004, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds