[LWN Logo]

From: "Michael K. Johnson" <johnsonm@redhat.com>
Subject: SECURITY: procps 1.2.7 fixes security hole
Date: Mon, 20 Apr 1998 13:18:42 GMT

-----BEGIN PGP SIGNED MESSAGE-----


A file creation and corruption bug in XConsole included in procps-X11
versions 1.2.6 and earlier has been found.  To fix it, you can either
remove the XConsole program or upgrade to procps-1.2.7, available from
ftp://tsx-11.mit.edu/pub/linux/sources/usr.bin/procps-1.2.7.tar.gz

Thanks to Alan Iwi for finding the bug.

A few other bugs have been fixed in this version.  Read the NEWS file
if you care.

If you are trying to build it by hand from the sources and you have
trouble,

	Read the INSTALL file.  Really.  Read it twice.  It answers
	EVERY question about building that I have EVER received.

If you have Red Hat Linux or another RPM-based distribution, libc5-based
RPM packages are available from
ftp://ftp.redhat.com/updates/4.2/
and glibc-based RPM packages are available from
ftp://ftp.redhat.com/updates/5.0/

Fuller upgrade instructions for Red Hat Linux users have been given in
a separate post to redhat-announce-list@redhat.com

michaelkjohnson

"Magazines all too frequently lead to books and should be regarded by the
 prudent as the heavy petting of literature."            -- Fran Lebowitz
 Linux Application Development       http://www.redhat.com/~johnsonm/lad/



- -- 
This article has been digitally signed by the moderator, using PGP.
http://www.iki.fi/mjr/cola-public-key.asc has PGP key for validating signature.
Send submissions for comp.os.linux.announce to: linux-announce@news.ornl.gov
PLEASE remember a short description of the software and the LOCATION.
This group is archived at http://www.iki.fi/mjr/linux/cola.html

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3ia
Charset: latin1

iQCVAgUBNTtLMlrUI/eHXJZ5AQFjEwP9FBbwj5WYrWOB8tCZkBmlkBrOaQ5tIEcE
lGyLjU1MLefIWa9dKLZ+qGXsDNU+m2c6gIkGSh/bVojXQ67SDMjsHm+grk1zIJI2
idYI5kdTYk0AH+4ejI3gghi04sGnz87VDOewWu4kA2xr82qYP6UjBUbHlsrfMC/r
wtsLutCjF1w=
=hX/k
-----END PGP SIGNATURE-----