Fedora alert FEDORA-2009-1769 (net-snmp)
| From: | updates@fedoraproject.org | |
| To: | fedora-package-announce@redhat.com | |
| Subject: | [SECURITY] Fedora 10 Update: net-snmp-5.4.2.1-3.fc10 | |
| Date: | Tue, 17 Feb 2009 15:39:27 +0000 | |
| Message-ID: | <20090217153927.B235C20851F@bastion.fedora.phx.redhat.com> |
-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2009-1769 2009-02-17 14:51:02 -------------------------------------------------------------------------------- Name : net-snmp Product : Fedora 10 Version : 5.4.2.1 Release : 3.fc10 URL : http://net-snmp.sourceforge.net/ Summary : A collection of SNMP protocol tools and libraries Description : SNMP (Simple Network Management Protocol) is a protocol used for network management. The NET-SNMP project includes various SNMP tools: an extensible agent, an SNMP library, tools for requesting or setting information from SNMP agents, tools for generating and handling SNMP traps, a version of the netstat command which uses SNMP, and a Tk/Perl mib browser. This package contains the snmpd and snmptrapd daemons, documentation, etc. You will probably also want to install the net-snmp-utils package, which contains NET-SNMP utilities. Building option: --without tcp_wrappers : disable tcp_wrappers support -------------------------------------------------------------------------------- ChangeLog: * Mon Feb 16 2009 Jan Safranek <jsafranek@redhat.com> 5.4.2.1-3 - fix tcp_wrappers integration (CVE-2008-6123) * Mon Dec 1 2008 Jan Safranek <jsafranek@redhat.com> 5.4.2.1-2 - rebuild for fixed rpm (#473420) * Mon Nov 3 2008 Jan Safranek <jsafranek@redhat.com> 5.4.2.1-1 - explicitly require the right version and release of net-snmp and net-snmp-libs - update to net-snmp-5.4.2.1 to fix CVE-2008-4309 -------------------------------------------------------------------------------- References: [ 1 ] Bug #485211 - CVE-2008-6123 net-snmp: snmp queries allowed from each remote host regardless of /etc/hosts.allow configuration (host sensitive information disclosure) https://bugzilla.redhat.com/show_bug.cgi?id=485211 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update net-snmp' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at http://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ Fedora-package-announce mailing list Fedora-package-announce@redhat.com http://www.redhat.com/mailman/listinfo/fedora-package-ann...
