Oracle alert ELSA-2012-0095 (ghostscript)
From: | Errata Announcements for Oracle Linux <el-errata@oracle.com> | |
To: | el-errata@oss.oracle.com | |
Subject: | [El-errata] ELSA-2012-0095 Moderate: Oracle Linux 5 ghostscript security update | |
Date: | Fri, 03 Feb 2012 18:53:20 -0800 | |
Message-ID: | <4F2C9DA0.5030107@oracle.com> |
Oracle Linux Security Advisory ELSA-2012-0095 https://rhn.redhat.com/errata/RHSA-2012-0095.html The following updated rpms for Oracle Linux 5 have been uploaded to the Unbreakable Linux Network: i386: ghostscript-8.70-6.el5_7.6.i386.rpm ghostscript-devel-8.70-6.el5_7.6.i386.rpm ghostscript-gtk-8.70-6.el5_7.6.i386.rpm x86_64: ghostscript-8.70-6.el5_7.6.i386.rpm ghostscript-8.70-6.el5_7.6.x86_64.rpm ghostscript-devel-8.70-6.el5_7.6.i386.rpm ghostscript-devel-8.70-6.el5_7.6.x86_64.rpm ghostscript-gtk-8.70-6.el5_7.6.x86_64.rpm ia64: ghostscript-8.70-6.el5_7.6.ia64.rpm ghostscript-devel-8.70-6.el5_7.6.ia64.rpm ghostscript-gtk-8.70-6.el5_7.6.ia64.rpm SRPMS: http://oss.oracle.com/ol5/SRPMS-updates/ghostscript-8.70-... Description of changes: [8.70-6:.6] - Applied upstream fix to last patch (CVE-2010-4054, bug #646086). [8.70-6:.5] - Applied patch to prevent null pointer dereference (CVE-2010-4054, bug #646086). [8.70-6:.4] - Applied patch to avoid reading initialization files from CWD (CVE-2010-2055, bug #599564). - Applied patch to prevent integer underflow in TrueType bytecode interpreter (CVE-2009-3743, bug #627902). [8.70-6:.3] - Fixed character spacing problems using backported patch (bug #688996). - Match landscape page sizes when writing PXL (bug #692165). _______________________________________________ El-errata mailing list El-errata@oss.oracle.com http://oss.oracle.com/mailman/listinfo/el-errata