CentOS Errata and Security Advisory CESA-2005:608
httpd security update for CentOS 3 i386:
https://rhn.redhat.com/errata/RHSA-2005-608.html
The following updated file has been uploaded and is currently syncing to
the mirrors:
i386:
updates/i386/RPMS/httpd-2.0.46-46.3.ent.centos.1.i386.rpm
updates/i386/RPMS/httpd-devel-2.0.46-46.3.ent.centos.1.i386.rpm
updates/i386/RPMS/mod_ssl-2.0.46-46.3.ent.centos.1.i386.rpm
source:
updates/SRPMS/httpd-2.0.46-46.3.ent.centos.1.src.rpm
You may update your CentOS-3 i386 installations by running the command:
yum update httpd\* mod_ssl
Tru
--
Tru Huynh (CentOS-3 i386/x86_64 Package Maintenance)
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xBEFA581B
CentOS Errata and Security Advisory CESA-2005:756
cvs security update for CentOS 3 x86_64:
https://rhn.redhat.com/errata/RHSA-2005-756.html
The following updated file has been uploaded and is currently syncing to
the mirrors:
x86_64:
updates/x86_64/RPMS/cvs-1.11.2-28.x86_64.rpm
source:
updates/SRPMS/cvs-1.11.2-28.src.rpm
You may update your CentOS-3 x86_64 installations by running the command:
yum update cvs
Tru
--
Tru Huynh (CentOS-3 i386/x86_64 Package Maintenance)
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xBEFA581B
CentOS Errata and Security Advisory CESA-2005:756
cvs security update for CentOS 3 i386:
https://rhn.redhat.com/errata/RHSA-2005-756.html
The following updated file has been uploaded and is currently syncing to
the mirrors:
i386:
updates/i386/RPMS/cvs-1.11.2-28.i386.rpm
source:
updates/SRPMS/cvs-1.11.2-28.src.rpm
You may update your CentOS-3 i386 installations by running the command:
yum update cvs
Tru
--
Tru Huynh (CentOS-3 i386/x86_64 Package Maintenance)
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xBEFA581B
Hi,
https://rhn.redhat.com/errata/RHSA-2005-586.html
backported to compile agaist CentOS-3 level software. This is my bad. I
forgot the damn thing while the firefox security update came out.
ia64:
centosplus/ia64/RPMS/firefox-1.0.6-1.4.1.centos3.ia64.rpm
centosplus/ia64/SRPMS/firefox-1.0.6-1.4.1.centos3.src.rpm
s390:
centosplus/s390/RPMS/firefox-1.0.6-1.4.1.centos3.s390.rpm
centosplus/s390/SRPMS/firefox-1.0.6-1.4.1.centos3.src.rpm
s390x:
centosplus/s390x/RPMS/firefox-1.0.6-1.4.1.centos3.s390x.rpm
centosplus/s390x/SRPMS/firefox-1.0.6-1.4.1.centos3.src.rpm
--
Pasi Pirhonen - upi(a)iki.fi - http://iki.fi/upi/
CentOS Errata and Security Advisory 2005:0831-001
Important CentOS 4 x86_64 php - security update
This CESA is for the version of php is that is included in the
centosplus repo for CentOS-4 ... this is not an update to the main
CentOS-4 repo.
----------------
Name : php Relocations: (not relocatable)
Version : 5.0.4 Vendor: CentOS
Release : 3.centos4 Build Date: 31 Aug 2005 12:15:26 AM UTC
Install Date: (not installed) Build Host: x8664-build
Group : Development/Languages
Source RPM: php-5.0.4-3.centos4.src.rpm
License: The PHP License
Packager : Johnny Hughes <johnny(a)centos.org>
URL : http://www.php.net/
Summary : The PHP HTML-embedded scripting language. (PHP: Hypertext
Preprocessor)
Description :
PHP is an HTML-embedded scripting language. PHP attempts to make it
easy for developers to write dynamically generated webpages. PHP also
offers built-in database integration for several commercial and
non-commercial database management systems, so writing a
database-enabled webpage with PHP is fairly simple. The most common
use of PHP coding is probably as a replacement for CGI scripts. The
mod_php module enables the Apache Web server to understand and process
the embedded PHP language in Web pages.
----------------
Update Information:
This update is considered important by the CentOS Development Team.
A bug was discovered in the PEAR XML-RPC Server package included in PHP.
If a PHP script is used which implements an XML-RPC Server using the
PEAR XML-RPC package, then it is possible for a remote attacker to
construct an XML-RPC request which can cause PHP to execute arbitrary
PHP commands as the 'apache' user. The Common Vulnerabilities and
Exposures project (cve.mitre.org) has assigned the name CAN-2005-2498 to
this issue.
All Users of PHP-5 from the CentOSPlus Repo should upgrade to these
updated packages.
More info is available at:
http://rhn.redhat.com/errata/RHSA-2005-748.htmlhttps://www.redhat.com/archives/fedora-announce-list/2005-August/msg00118.h…
------------------------
The following updated files have been uploaded and are currently
syncing to the mirrors:
x86_64:
php-5.0.4-3.centos4.x86_64.rpm
php-bcmath-5.0.4-3.centos4.x86_64.rpm
php-dba-5.0.4-3.centos4.x86_64.rpm
php-devel-5.0.4-3.centos4.x86_64.rpm
php-gd-5.0.4-3.centos4.x86_64.rpm
php-imap-5.0.4-3.centos4.x86_64.rpm
php-ldap-5.0.4-3.centos4.x86_64.rpm
php-mbstring-5.0.4-3.centos4.x86_64.rpm
php-mysql-5.0.4-3.centos4.x86_64.rpm
php-ncurses-5.0.4-3.centos4.x86_64.rpm
php-odbc-5.0.4-3.centos4.x86_64.rpm
php-pear-5.0.4-3.centos4.x86_64.rpm
php-pgsql-5.0.4-3.centos4.x86_64.rpm
php-snmp-5.0.4-3.centos4.x86_64.rpm
php-soap-5.0.4-3.centos4.x86_64.rpm
php-xml-5.0.4-3.centos4.x86_64.rpm
php-xmlrpc-5.0.4-3.centos4.x86_64.rpm
src:
php-5.0.4-3.centos4.src.rpm
CentOS Errata and Security Advisory 2005:0831-001
Important CentOS 4 i386 php - security update
This CESA is for the version of php is that is included in the
centosplus repo for CentOS-4 ... this is not an update to the main
CentOS-4 repo.
----------------
Name : php Relocations: (not relocatable)
Version : 5.0.4 Vendor: CentOS
Release : 3.centos4 Build Date: 31 Aug 2005 12:15:26 AM UTC
Install Date: (not installed) Build Host: C4i386-build
Group : Development/Languages
Source RPM: php-5.0.4-3.centos4.src.rpm
License: The PHP License
Packager : Johnny Hughes <johnny(a)centos.org>
URL : http://www.php.net/
Summary : The PHP HTML-embedded scripting language. (PHP: Hypertext
Preprocessor)
Description :
PHP is an HTML-embedded scripting language. PHP attempts to make it
easy for developers to write dynamically generated webpages. PHP also
offers built-in database integration for several commercial and
non-commercial database management systems, so writing a
database-enabled webpage with PHP is fairly simple. The most common
use of PHP coding is probably as a replacement for CGI scripts. The
mod_php module enables the Apache Web server to understand and process
the embedded PHP language in Web pages.
----------------
Update Information:
This update is considered important by the CentOS Development Team.
A bug was discovered in the PEAR XML-RPC Server package included in PHP.
If a PHP script is used which implements an XML-RPC Server using the
PEAR XML-RPC package, then it is possible for a remote attacker to
construct an XML-RPC request which can cause PHP to execute arbitrary
PHP commands as the 'apache' user. The Common Vulnerabilities and
Exposures project (cve.mitre.org) has assigned the name CAN-2005-2498 to
this issue.
All Users of PHP-5 from the CentOSPlus Repo should upgrade to these
updated packages.
More info is available at:
http://rhn.redhat.com/errata/RHSA-2005-748.htmlhttps://www.redhat.com/archives/fedora-announce-list/2005-August/msg00118.h…
------------------------
The following updated files have been uploaded and are currently
syncing to the mirrors:
i386:
php-5.0.4-3.centos4.i386.rpm
php-bcmath-5.0.4-3.centos4.i386.rpm
php-dba-5.0.4-3.centos4.i386.rpm
php-devel-5.0.4-3.centos4.i386.rpm
php-gd-5.0.4-3.centos4.i386.rpm
php-imap-5.0.4-3.centos4.i386.rpm
php-ldap-5.0.4-3.centos4.i386.rpm
php-mbstring-5.0.4-3.centos4.i386.rpm
php-mysql-5.0.4-3.centos4.i386.rpm
php-ncurses-5.0.4-3.centos4.i386.rpm
php-odbc-5.0.4-3.centos4.i386.rpm
php-pear-5.0.4-3.centos4.i386.rpm
php-pgsql-5.0.4-3.centos4.i386.rpm
php-snmp-5.0.4-3.centos4.i386.rpm
php-soap-5.0.4-3.centos4.i386.rpm
php-xml-5.0.4-3.centos4.i386.rpm
php-xmlrpc-5.0.4-3.centos4.i386.rpm
src:
php-5.0.4-3.centos4.src.rpm
CentOS Errata and Security Advisory 2005:267
https://rhn.redhat.com/errata/RHSA-2005-267.html
The following updated files have been uploaded and are currently
syncing to the mirrors:
i386:
updates/i386/RPMS/evolution-1.4.5-16.i386.rpm
updates/i386/RPMS/evolution-devel-1.4.5-16.i386.rpm
apply these updates by running:
yum update evolution\*
Thanks,
-sv
CentOS Errata and Security Advisory 2005:267
https://rhn.redhat.com/errata/RHSA-2005-267.html
The following updated files have been uploaded and are currently
syncing to the mirrors:
x86_64:
updates/x86_64/RPMS/evolution-1.4.5-16.x86_64.rpm
updates/x86_64/RPMS/evolution-devel-1.4.5-16.x86_64.rpm
apply these updates by running:
yum update evolution\*
I'm sorry about this update taking a full day to come out. I encountered
some problems getting the x86_64 build to complete correctly. They were
worked out. Again, my apologies.
Thanks,
-sv
CentOS Errata and Security Advisory 2005:267
https://rhn.redhat.com/errata/RHSA-2005-267.html
The following updated files have been uploaded and are currently
syncing to the mirrors:
s390:
updates/s390/RPMS/evolution-2.0.2-16.3.s390.rpm
updates/s390/RPMS/evolution-devel-2.0.2-16.3.s390.rpm
s390x:
updates/s390x/RPMS/evolution-2.0.2-16.3.s390x.rpm
updates/s390x/RPMS/evolution-devel-2.0.2-16.3.s390x.rpm
--
Pasi Pirhonen - upi(a)iki.fi - http://iki.fi/upi/