Oracle alert ELSA-2012-0095 (ghostscript)
| From: | Errata Announcements for Oracle Linux <el-errata@oracle.com> | |
| To: | el-errata@oss.oracle.com | |
| Subject: | [El-errata] ELSA-2012-0095 Moderate: Oracle Linux 6 ghostscript security update | |
| Date: | Fri, 03 Feb 2012 18:52:25 -0800 | |
| Message-ID: | <4F2C9D69.2030603@oracle.com> |
Oracle Linux Security Advisory ELSA-2012-0095 https://rhn.redhat.com/errata/RHSA-2012-0095.html The following updated rpms for Oracle Linux 6 have been uploaded to the Unbreakable Linux Network: i386: ghostscript-8.70-11.el6_2.6.i686.rpm ghostscript-devel-8.70-11.el6_2.6.i686.rpm ghostscript-doc-8.70-11.el6_2.6.i686.rpm ghostscript-gtk-8.70-11.el6_2.6.i686.rpm x86_64: ghostscript-8.70-11.el6_2.6.i686.rpm ghostscript-8.70-11.el6_2.6.x86_64.rpm ghostscript-devel-8.70-11.el6_2.6.i686.rpm ghostscript-devel-8.70-11.el6_2.6.x86_64.rpm ghostscript-doc-8.70-11.el6_2.6.x86_64.rpm ghostscript-gtk-8.70-11.el6_2.6.x86_64.rpm SRPMS: http://oss.oracle.com/ol6/SRPMS-updates/ghostscript-8.70-... Description of changes: [8.70-11:.6] - Applied upstream fix to last patch (CVE-2010-4054, bug #646086). [8.70-11:.5] - Applied patch to prevent null pointer dereference (CVE-2010-4054, bug #646086). [8.70-11:.4] - Don't ship patch backup files for CVE-2010-2055. [8.70-11:.3] - Applied patch to prevent integer underflow in TrueType bytecode interpreter (CVE-2009-3743, bug #627902). - Applied patch to avoid reading initialization files from CWD (CVE-2010-2055, bug #599564). _______________________________________________ El-errata mailing list El-errata@oss.oracle.com http://oss.oracle.com/mailman/listinfo/el-errata
