openSUSE

SUSE Linux 10.0 (i386)

SUSE Linux 10.0 (i386): patches, updates, bugfixes

Here you´ll find patches, updates, and bugfixes for SUSE Linux 10.0 (i386)

Our FTP-server: ftp.suse.com, a list of mirrors is located here.

Updates listed here are also available via the YaST Online Update (YOU). We strongly recommend using YOU.

Security updates are marked red. If you are using one of these packages, we strongly recommend to update! Please see our Security announcements as well.

Patch RPMs

As of now we are offering so called Patch RPM packages. A Patch RPM updates an already installed RPM. It only contains files which have changed - therefore it is (much) smaller than the complete RPM package. Prerequisite for installation is an already installed basic RPM. The packages included on the SUSE Linux 10.0 (i386) CDs/DVD are considered as basic RPMs.
If you want to update an already installed package, please download the smaller Patch RPM package.


20 Dec 2007 nmap-gtk: A Graphical Front-End for Nmap
RPM nmap-gtk 3.81-9.3 (i586) 33 kB
Patch-RPM nmap-gtk 3.81-9.3-patch (i586) 29 kB
Source-RPM nmap-3.81-9.3.src.rpm  

Security Update!
nmap contains a copy of the pcre library. Specially crafted regular
expressions could lead to a buffer overflow in the pcre library.
Applications using pcre to process regular expressions from
untrusted sources could therefore potentially be exploited by
attackers to execute arbitrary code.
This update makes nmap use the system's pcre library which was
already updated to fix the above mentioned problems. Make sure to
also install the pcre update.


20 Dec 2007 nmap: Portscanner
RPM nmap 3.81-9.3 (i586) 526 kB
Patch-RPM nmap 3.81-9.3-patch (i586) 208 kB
Source-RPM nmap-3.81-9.3.src.rpm  

Security Update!
nmap contains a copy of the pcre library. Specially crafted regular
expressions could lead to a buffer overflow in the pcre library.
Applications using pcre to process regular expressions from
untrusted sources could therefore potentially be exploited by
attackers to execute arbitrary code.
This update makes nmap use the system's pcre library which was
already updated to fix the above mentioned problems. Make sure to
also install the pcre update.


12 Dec 2007 mozilla-zh-TW: traditional Chinese Language Pack for Mozilla
RPM mozilla-zh-TW 1.7-6.6 (i586) 590 kB
Patch-RPM mozilla-zh-TW 1.7-6.6-patch (i586) 5 kB
Source-RPM mozilla-zh-TW-1.7-6.6.src.rpm  

Security Update!
This update fixed various security problems in the Mozilla Suite.

Following security problems were fixed:
MFSA 2007-37 / CVE-2007-5947: The jar protocol handler in Mozilla Firefox
retrieves the inner URL regardless of its MIME type, and considers HTML
documents within a jar archive to have the same origin as the inner URL,
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via a jar: URI.

MFSA 2007-38 / CVE-2007-5959:
The Firefox 2.0.0.10 update contains fixes for three bugs that improve the
stability of the product. These crashes showed some evidence of memory
corruption under certain circumstances and we presume that with enough effort
at least some of these could be exploited to run arbitrary code.

MFSA 2007-39 / CVE-2007-5960:
Gregory Fleischer demonstrated that it was possible to generate a fake HTTP
Referer header by exploiting a timing condition when setting the
window.location property. This could be used to conduct a Cross-site Request
Forgery (CSRF) attack against websites that rely only on the Referer header as
protection against such attacks.


12 Dec 2007 mozilla-zh-CN: simplified Chinese Language Pack for Mozilla
RPM mozilla-zh-CN 1.7-6.6 (i586) 774 kB
Patch-RPM mozilla-zh-CN 1.7-6.6-patch (i586) 6 kB
Source-RPM mozilla-zh-CN-1.7-6.6.src.rpm  

Security Update!
This update fixed various security problems in the Mozilla Suite.

Following security problems were fixed:
MFSA 2007-37 / CVE-2007-5947: The jar protocol handler in Mozilla Firefox
retrieves the inner URL regardless of its MIME type, and considers HTML
documents within a jar archive to have the same origin as the inner URL,
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via a jar: URI.

MFSA 2007-38 / CVE-2007-5959:
The Firefox 2.0.0.10 update contains fixes for three bugs that improve the
stability of the product. These crashes showed some evidence of memory
corruption under certain circumstances and we presume that with enough effort
at least some of these could be exploited to run arbitrary code.

MFSA 2007-39 / CVE-2007-5960:
Gregory Fleischer demonstrated that it was possible to generate a fake HTTP
Referer header by exploiting a timing condition when setting the
window.location property. This could be used to conduct a Cross-site Request
Forgery (CSRF) attack against websites that rely only on the Referer header as
protection against such attacks.


12 Dec 2007 mozilla-mail: The Mozilla Mail Client
RPM mozilla-mail 1.8_seamonkey_1.0.9-2.9 (i586) 1938 kB
Patch-RPM mozilla-mail 1.8_seamonkey_1.0.9-2.9-patch (i586) 1923 kB
Source-RPM mozilla-1.8_seamonkey_1.0.9-2.9.src.rpm  

Security Update!
This update fixed various security problems in the Mozilla Suite.

Following security problems were fixed:
MFSA 2007-37 / CVE-2007-5947: The jar protocol handler in Mozilla Firefox
retrieves the inner URL regardless of its MIME type, and considers HTML
documents within a jar archive to have the same origin as the inner URL,
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via a jar: URI.

MFSA 2007-38 / CVE-2007-5959:
The Firefox 2.0.0.10 update contains fixes for three bugs that improve the
stability of the product. These crashes showed some evidence of memory
corruption under certain circumstances and we presume that with enough effort
at least some of these could be exploited to run arbitrary code.

MFSA 2007-39 / CVE-2007-5960:
Gregory Fleischer demonstrated that it was possible to generate a fake HTTP
Referer header by exploiting a timing condition when setting the
window.location property. This could be used to conduct a Cross-site Request
Forgery (CSRF) attack against websites that rely only on the Referer header as
protection against such attacks.


12 Dec 2007 mozilla-venkman: The Mozilla JavaScript Debugger
RPM mozilla-venkman 1.8_seamonkey_1.0.9-2.9 (i586) 206 kB
Patch-RPM mozilla-venkman 1.8_seamonkey_1.0.9-2.9-patch (i586) 202 kB
Source-RPM mozilla-1.8_seamonkey_1.0.9-2.9.src.rpm  

Security Update!
This update fixed various security problems in the Mozilla Suite.

Following security problems were fixed:
MFSA 2007-37 / CVE-2007-5947: The jar protocol handler in Mozilla Firefox
retrieves the inner URL regardless of its MIME type, and considers HTML
documents within a jar archive to have the same origin as the inner URL,
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via a jar: URI.

MFSA 2007-38 / CVE-2007-5959:
The Firefox 2.0.0.10 update contains fixes for three bugs that improve the
stability of the product. These crashes showed some evidence of memory
corruption under certain circumstances and we presume that with enough effort
at least some of these could be exploited to run arbitrary code.

MFSA 2007-39 / CVE-2007-5960:
Gregory Fleischer demonstrated that it was possible to generate a fake HTTP
Referer header by exploiting a timing condition when setting the
window.location property. This could be used to conduct a Cross-site Request
Forgery (CSRF) attack against websites that rely only on the Referer header as
protection against such attacks.


12 Dec 2007 mozilla-spellchecker: A Spell Checker for Mozilla
RPM mozilla-spellchecker 1.8_seamonkey_1.0.9-2.9 (i586) 334 kB
Source-RPM mozilla-1.8_seamonkey_1.0.9-2.9.src.rpm  

Security Update!
This update fixed various security problems in the Mozilla Suite.

Following security problems were fixed:
MFSA 2007-37 / CVE-2007-5947: The jar protocol handler in Mozilla Firefox
retrieves the inner URL regardless of its MIME type, and considers HTML
documents within a jar archive to have the same origin as the inner URL,
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via a jar: URI.

MFSA 2007-38 / CVE-2007-5959:
The Firefox 2.0.0.10 update contains fixes for three bugs that improve the
stability of the product. These crashes showed some evidence of memory
corruption under certain circumstances and we presume that with enough effort
at least some of these could be exploited to run arbitrary code.

MFSA 2007-39 / CVE-2007-5960:
Gregory Fleischer demonstrated that it was possible to generate a fake HTTP
Referer header by exploiting a timing condition when setting the
window.location property. This could be used to conduct a Cross-site Request
Forgery (CSRF) attack against websites that rely only on the Referer header as
protection against such attacks.


12 Dec 2007 mozilla-dom-inspector: The Mozilla DOM Inspector
RPM mozilla-dom-inspector 1.8_seamonkey_1.0.9-2.9 (i586) 161 kB
Patch-RPM mozilla-dom-inspector 1.8_seamonkey_1.0.9-2.9-patch (i586) 158 kB
Source-RPM mozilla-1.8_seamonkey_1.0.9-2.9.src.rpm  

Security Update!
This update fixed various security problems in the Mozilla Suite.

Following security problems were fixed:
MFSA 2007-37 / CVE-2007-5947: The jar protocol handler in Mozilla Firefox
retrieves the inner URL regardless of its MIME type, and considers HTML
documents within a jar archive to have the same origin as the inner URL,
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via a jar: URI.

MFSA 2007-38 / CVE-2007-5959:
The Firefox 2.0.0.10 update contains fixes for three bugs that improve the
stability of the product. These crashes showed some evidence of memory
corruption under certain circumstances and we presume that with enough effort
at least some of these could be exploited to run arbitrary code.

MFSA 2007-39 / CVE-2007-5960:
Gregory Fleischer demonstrated that it was possible to generate a fake HTTP
Referer header by exploiting a timing condition when setting the
window.location property. This could be used to conduct a Cross-site Request
Forgery (CSRF) attack against websites that rely only on the Referer header as
protection against such attacks.


12 Dec 2007 mozilla-ko: Korean Language Pack for Mozilla
RPM mozilla-ko 1.75-3.6 (i586) 577 kB
Patch-RPM mozilla-ko 1.75-3.6-patch (i586) 6 kB
Source-RPM mozilla-ko-1.75-3.6.src.rpm  

Security Update!
This update fixed various security problems in the Mozilla Suite.

Following security problems were fixed:
MFSA 2007-37 / CVE-2007-5947: The jar protocol handler in Mozilla Firefox
retrieves the inner URL regardless of its MIME type, and considers HTML
documents within a jar archive to have the same origin as the inner URL,
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via a jar: URI.

MFSA 2007-38 / CVE-2007-5959:
The Firefox 2.0.0.10 update contains fixes for three bugs that improve the
stability of the product. These crashes showed some evidence of memory
corruption under certain circumstances and we presume that with enough effort
at least some of these could be exploited to run arbitrary code.

MFSA 2007-39 / CVE-2007-5960:
Gregory Fleischer demonstrated that it was possible to generate a fake HTTP
Referer header by exploiting a timing condition when setting the
window.location property. This could be used to conduct a Cross-site Request
Forgery (CSRF) attack against websites that rely only on the Referer header as
protection against such attacks.


12 Dec 2007 mozilla-irc: IRC for Mozilla
RPM mozilla-irc 1.8_seamonkey_1.0.9-2.9 (i586) 239 kB
Patch-RPM mozilla-irc 1.8_seamonkey_1.0.9-2.9-patch (i586) 236 kB
Source-RPM mozilla-1.8_seamonkey_1.0.9-2.9.src.rpm  

Security Update!
This update fixed various security problems in the Mozilla Suite.

Following security problems were fixed:
MFSA 2007-37 / CVE-2007-5947: The jar protocol handler in Mozilla Firefox
retrieves the inner URL regardless of its MIME type, and considers HTML
documents within a jar archive to have the same origin as the inner URL,
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via a jar: URI.

MFSA 2007-38 / CVE-2007-5959:
The Firefox 2.0.0.10 update contains fixes for three bugs that improve the
stability of the product. These crashes showed some evidence of memory
corruption under certain circumstances and we presume that with enough effort
at least some of these could be exploited to run arbitrary code.

MFSA 2007-39 / CVE-2007-5960:
Gregory Fleischer demonstrated that it was possible to generate a fake HTTP
Referer header by exploiting a timing condition when setting the
window.location property. This could be used to conduct a Cross-site Request
Forgery (CSRF) attack against websites that rely only on the Referer header as
protection against such attacks.


12 Dec 2007 mozilla-devel: Mozilla Developer Environment
RPM mozilla-devel 1.8_seamonkey_1.0.9-2.9 (i586) 3109 kB
Source-RPM mozilla-1.8_seamonkey_1.0.9-2.9.src.rpm  

Security Update!
This update fixed various security problems in the Mozilla Suite.

Following security problems were fixed:
MFSA 2007-37 / CVE-2007-5947: The jar protocol handler in Mozilla Firefox
retrieves the inner URL regardless of its MIME type, and considers HTML
documents within a jar archive to have the same origin as the inner URL,
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via a jar: URI.

MFSA 2007-38 / CVE-2007-5959:
The Firefox 2.0.0.10 update contains fixes for three bugs that improve the
stability of the product. These crashes showed some evidence of memory
corruption under certain circumstances and we presume that with enough effort
at least some of these could be exploited to run arbitrary code.

MFSA 2007-39 / CVE-2007-5960:
Gregory Fleischer demonstrated that it was possible to generate a fake HTTP
Referer header by exploiting a timing condition when setting the
window.location property. This could be used to conduct a Cross-site Request
Forgery (CSRF) attack against websites that rely only on the Referer header as
protection against such attacks.


12 Dec 2007 mozilla-calendar: Mozilla's Calendar Implementation
RPM mozilla-calendar 1.8_seamonkey_1.0.9-2.9 (i586) 39 kB
Patch-RPM mozilla-calendar 1.8_seamonkey_1.0.9-2.9-patch (i586) 36 kB
Source-RPM mozilla-1.8_seamonkey_1.0.9-2.9.src.rpm  

Security Update!
This update fixed various security problems in the Mozilla Suite.

Following security problems were fixed:
MFSA 2007-37 / CVE-2007-5947: The jar protocol handler in Mozilla Firefox
retrieves the inner URL regardless of its MIME type, and considers HTML
documents within a jar archive to have the same origin as the inner URL,
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via a jar: URI.

MFSA 2007-38 / CVE-2007-5959:
The Firefox 2.0.0.10 update contains fixes for three bugs that improve the
stability of the product. These crashes showed some evidence of memory
corruption under certain circumstances and we presume that with enough effort
at least some of these could be exploited to run arbitrary code.

MFSA 2007-39 / CVE-2007-5960:
Gregory Fleischer demonstrated that it was possible to generate a fake HTTP
Referer header by exploiting a timing condition when setting the
window.location property. This could be used to conduct a Cross-site Request
Forgery (CSRF) attack against websites that rely only on the Referer header as
protection against such attacks.


12 Dec 2007 mozilla: The Open Source successor of the Netscape browser
RPM mozilla 1.8_seamonkey_1.0.9-2.9 (i586) 9297 kB
Patch-RPM mozilla 1.8_seamonkey_1.0.9-2.9-patch (i586) 9181 kB
Source-RPM mozilla-1.8_seamonkey_1.0.9-2.9.src.rpm  

Security Update!
This update fixed various security problems in the Mozilla Suite.

Following security problems were fixed:
MFSA 2007-37 / CVE-2007-5947: The jar protocol handler in Mozilla Firefox
retrieves the inner URL regardless of its MIME type, and considers HTML
documents within a jar archive to have the same origin as the inner URL,
which allows remote attackers to conduct cross-site scripting (XSS)
attacks via a jar: URI.

MFSA 2007-38 / CVE-2007-5959:
The Firefox 2.0.0.10 update contains fixes for three bugs that improve the
stability of the product. These crashes showed some evidence of memory
corruption under certain circumstances and we presume that with enough effort
at least some of these could be exploited to run arbitrary code.

MFSA 2007-39 / CVE-2007-5960:
Gregory Fleischer demonstrated that it was possible to generate a fake HTTP
Referer header by exploiting a timing condition when setting the
window.location property. This could be used to conduct a Cross-site Request
Forgery (CSRF) attack against websites that rely only on the Referer header as
protection against such attacks.


11 Dec 2007 libapr0: Apache Portable Runtime (APR) Library
RPM libapr0 2.0.54-10.13 (i586) 394 kB
Patch-RPM libapr0 2.0.54-10.13-patch (i586) 208 kB
Source-RPM apache2-2.0.54-10.13.src.rpm  

Security Update!
Apache2 contains a copy of the pcre library. Specially crafted regular
expressions could lead to a buffer overflow in the pcre library.
Applications using pcre to process regular expressions from
untrusted sources could therefore potentially be exploited by
attackers to execute arbitrary code (CVE-2006-7224, CVE-2007-1660).


11 Dec 2007 apache2-worker: Apache 2 worker MPM (Multi-Processing Module)
RPM apache2-worker 2.0.54-10.13 (i586) 292 kB
Patch-RPM apache2-worker 2.0.54-10.13-patch (i586) 290 kB
Source-RPM apache2-2.0.54-10.13.src.rpm  

Security Update!
Apache2 contains a copy of the pcre library. Specially crafted regular
expressions could lead to a buffer overflow in the pcre library.
Applications using pcre to process regular expressions from
untrusted sources could therefore potentially be exploited by
attackers to execute arbitrary code (CVE-2006-7224, CVE-2007-1660).


11 Dec 2007 apache2-example-pages: Example Pages for the Apache 2 Web Server
RPM apache2-example-pages 2.0.54-10.13 (i586) 100 kB
Patch-RPM apache2-example-pages 2.0.54-10.13-patch (i586) 73 kB
Source-RPM apache2-2.0.54-10.13.src.rpm  

Security Update!
Apache2 contains a copy of the pcre library. Specially crafted regular
expressions could lead to a buffer overflow in the pcre library.
Applications using pcre to process regular expressions from
untrusted sources could therefore potentially be exploited by
attackers to execute arbitrary code (CVE-2006-7224, CVE-2007-1660).


11 Dec 2007 apache2-prefork: Apache 2 "prefork" MPM (Multi-Processing Module)
RPM apache2-prefork 2.0.54-10.13 (i586) 285 kB
Patch-RPM apache2-prefork 2.0.54-10.13-patch (i586) 284 kB
Source-RPM apache2-2.0.54-10.13.src.rpm  

Security Update!
Apache2 contains a copy of the pcre library. Specially crafted regular
expressions could lead to a buffer overflow in the pcre library.
Applications using pcre to process regular expressions from
untrusted sources could therefore potentially be exploited by
attackers to execute arbitrary code (CVE-2006-7224, CVE-2007-1660).


11 Dec 2007 apache2-doc: Additional Package Documentation.
RPM apache2-doc 2.0.54-10.13 (i586) 1923 kB
Patch-RPM apache2-doc 2.0.54-10.13-patch (i586) 195 kB
Source-RPM apache2-2.0.54-10.13.src.rpm  

Security Update!
Apache2 contains a copy of the pcre library. Specially crafted regular
expressions could lead to a buffer overflow in the pcre library.
Applications using pcre to process regular expressions from
untrusted sources could therefore potentially be exploited by
attackers to execute arbitrary code (CVE-2006-7224, CVE-2007-1660).


11 Dec 2007 apache2-devel: Apache 2.0 Header and Include Files
RPM apache2-devel 2.0.54-10.13 (i586) 235 kB
Patch-RPM apache2-devel 2.0.54-10.13-patch (i586) 125 kB
Source-RPM apache2-2.0.54-10.13.src.rpm  

Security Update!
Apache2 contains a copy of the pcre library. Specially crafted regular
expressions could lead to a buffer overflow in the pcre library.
Applications using pcre to process regular expressions from
untrusted sources could therefore potentially be exploited by
attackers to execute arbitrary code (CVE-2006-7224, CVE-2007-1660).


11 Dec 2007 apache2: The Apache web server (version 2.0)
RPM apache2 2.0.54-10.13 (i586) 892 kB
Patch-RPM apache2 2.0.54-10.13-patch (i586) 586 kB
Source-RPM apache2-2.0.54-10.13.src.rpm  

Security Update!
Apache2 contains a copy of the pcre library. Specially crafted regular
expressions could lead to a buffer overflow in the pcre library.
Applications using pcre to process regular expressions from
untrusted sources could therefore potentially be exploited by
attackers to execute arbitrary code (CVE-2006-7224, CVE-2007-1660).


11 Dec 2007 netpbm: A Powerful Graphics Conversion Package
RPM netpbm 10.26.12-5.7 (i586) 1745 kB
Patch-RPM netpbm 10.26.12-5.7-patch (i586) 1154 kB
Source-RPM netpbm-10.26.12-5.7.src.rpm  

Security Update!
This update of netpbm fixes a security vulnerability in the included libjasper. This bug can be triggered while processing image files and can lead to remote code execution. (CVE-2007-2721)


11 Dec 2007 libnetpbm: Libraries for the NetPBM (NetPortableBitmap) Graphic Formats
RPM libnetpbm 1.0.0-636.5 (i586) 119 kB
Patch-RPM libnetpbm 1.0.0-636.5-patch (i586) 101 kB
Source-RPM netpbm-10.26.12-5.7.src.rpm  

Security Update!
This update of netpbm fixes a security vulnerability in the included libjasper. This bug can be triggered while processing image files and can lead to remote code execution. (CVE-2007-2721)


11 Dec 2007 OpenOffice_org-zu: Zulu Localization Files for OpenOffice.org
RPM OpenOffice_org-zu 2.0.0-1.15 (i586) 2176 kB
Patch-RPM OpenOffice_org-zu 2.0.0-1.15-patch (i586) 580 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-zh-TW: Chinese Traditional Localization Files for OpenOffice.org
RPM OpenOffice_org-zh-TW 2.0.0-1.15 (i586) 12327 kB
Patch-RPM OpenOffice_org-zh-TW 2.0.0-1.15-patch (i586) 7491 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-zh-CN: Chinese Simplified Localization Files for OpenOffice.org
RPM OpenOffice_org-zh-CN 2.0.0-1.15 (i586) 12235 kB
Patch-RPM OpenOffice_org-zh-CN 2.0.0-1.15-patch (i586) 7442 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-vi: Vietnamese Localization Files for OpenOffice.org
RPM OpenOffice_org-vi 2.0.0-1.15 (i586) 11914 kB
Patch-RPM OpenOffice_org-vi 2.0.0-1.15-patch (i586) 10335 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-xh: Xhosa Localization Files for OpenOffice.org
RPM OpenOffice_org-xh 2.0.0-1.15 (i586) 2256 kB
Patch-RPM OpenOffice_org-xh 2.0.0-1.15-patch (i586) 609 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-tr: Turkish Localization Files for OpenOffice.org
RPM OpenOffice_org-tr 2.0.0-1.15 (i586) 12017 kB
Patch-RPM OpenOffice_org-tr 2.0.0-1.15-patch (i586) 10523 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-ru: Russian Localization Files for OpenOffice.org
RPM OpenOffice_org-ru 2.0.0-1.15 (i586) 12882 kB
Patch-RPM OpenOffice_org-ru 2.0.0-1.15-patch (i586) 11353 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-sk: Slovak Localization Files for OpenOffice.org
RPM OpenOffice_org-sk 2.0.0-1.15 (i586) 12352 kB
Patch-RPM OpenOffice_org-sk 2.0.0-1.15-patch (i586) 10622 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-pt-BR: Brazilian Portuguese Localization Files for OpenOffice.org
RPM OpenOffice_org-pt-BR 2.0.0-1.15 (i586) 12518 kB
Patch-RPM OpenOffice_org-pt-BR 2.0.0-1.15-patch (i586) 7414 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-sl: Slovene Localization Files for OpenOffice.org
RPM OpenOffice_org-sl 2.0.0-1.15 (i586) 2182 kB
Patch-RPM OpenOffice_org-sl 2.0.0-1.15-patch (i586) 555 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-sv: Swedish Localization Files for OpenOffice.org
RPM OpenOffice_org-sv 2.0.0-1.15 (i586) 12341 kB
Patch-RPM OpenOffice_org-sv 2.0.0-1.15-patch (i586) 7332 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-pt: Portuguese Localization Files for OpenOffice.org
RPM OpenOffice_org-pt 2.0.0-1.15 (i586) 2102 kB
Patch-RPM OpenOffice_org-pt 2.0.0-1.15-patch (i586) 566 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-pl: Polish Localization Files for OpenOffice.org
RPM OpenOffice_org-pl 2.0.0-1.15 (i586) 12145 kB
Patch-RPM OpenOffice_org-pl 2.0.0-1.15-patch (i586) 10607 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-officebean: OfficeBean Java Bean component for OpenOffice.org
RPM OpenOffice_org-officebean 2.0.0-1.15 (i586) 72 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-pa-IN: Punjabi Localization Files for OpenOffice.org
RPM OpenOffice_org-pa-IN 2.0.0-1.15 (i586) 2199 kB
Patch-RPM OpenOffice_org-pa-IN 2.0.0-1.15-patch (i586) 595 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-mono: Mono UNO Bridge for OpenOffice.org
RPM OpenOffice_org-mono 2.0.0-1.15 (i586) 254 kB
Patch-RPM OpenOffice_org-mono 2.0.0-1.15-patch (i586) 62 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-nn: Norwegian Nynorsk Localization Files for OpenOffice.org
RPM OpenOffice_org-nn 2.0.0-1.15 (i586) 2218 kB
Patch-RPM OpenOffice_org-nn 2.0.0-1.15-patch (i586) 580 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-nl: Dutch Localization Files for OpenOffice.org
RPM OpenOffice_org-nl 2.0.0-1.15 (i586) 2140 kB
Patch-RPM OpenOffice_org-nl 2.0.0-1.15-patch (i586) 592 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-nb: Norwegian Bokmaal Localization Files for OpenOffice.org
RPM OpenOffice_org-nb 2.0.0-1.15 (i586) 11912 kB
Patch-RPM OpenOffice_org-nb 2.0.0-1.15-patch (i586) 10322 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-ko: Korean Localization Files for OpenOffice.org
RPM OpenOffice_org-ko 2.0.0-1.15 (i586) 12355 kB
Patch-RPM OpenOffice_org-ko 2.0.0-1.15-patch (i586) 7436 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-ja: Japanese Localization Files for OpenOffice.org
RPM OpenOffice_org-ja 2.0.0-1.15 (i586) 13005 kB
Patch-RPM OpenOffice_org-ja 2.0.0-1.15-patch (i586) 7714 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-kde: KDE Extensions for OpenOffice.org
RPM OpenOffice_org-kde 2.0.0-1.15 (i586) 180 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-hunspell: Hunspell Spell Checker for OpenOffice.org
RPM OpenOffice_org-hunspell 2.0.0-1.15 (i586) 114 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-it: Italian Localization Files for OpenOffice.org
RPM OpenOffice_org-it 2.0.0-1.15 (i586) 12484 kB
Patch-RPM OpenOffice_org-it 2.0.0-1.15-patch (i586) 7380 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-hr: Croatian Localization Files for OpenOffice.org
RPM OpenOffice_org-hr 2.0.0-1.15 (i586) 12134 kB
Patch-RPM OpenOffice_org-hr 2.0.0-1.15-patch (i586) 7239 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-gu-IN: Gujarati Localization Files for OpenOffice.org
RPM OpenOffice_org-gu-IN 2.0.0-1.15 (i586) 2232 kB
Patch-RPM OpenOffice_org-gu-IN 2.0.0-1.15-patch (i586) 609 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-gnome: GNOME Extensions for OpenOffice.org
RPM OpenOffice_org-gnome 2.0.0-1.15 (i586) 179 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-hu: Hungarian Localization Files for OpenOffice.org
RPM OpenOffice_org-hu 2.0.0-1.15 (i586) 2277 kB
Patch-RPM OpenOffice_org-hu 2.0.0-1.15-patch (i586) 595 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-galleries: Extra Galleries for OpenOffice.org
RPM OpenOffice_org-galleries 2.0.0-1.15 (i586) 5842 kB
Patch-RPM OpenOffice_org-galleries 2.0.0-1.15-patch (i586) 5838 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-fi: Finnish Localization Files for OpenOffice.org
RPM OpenOffice_org-fi 2.0.0-1.15 (i586) 11971 kB
Patch-RPM OpenOffice_org-fi 2.0.0-1.15-patch (i586) 7144 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-fr: French Localization Files for OpenOffice.org
RPM OpenOffice_org-fr 2.0.0-1.15 (i586) 12700 kB
Patch-RPM OpenOffice_org-fr 2.0.0-1.15-patch (i586) 7518 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-et: Estonian Localization Files for OpenOffice.org
RPM OpenOffice_org-et 2.0.0-1.15 (i586) 12474 kB
Patch-RPM OpenOffice_org-et 2.0.0-1.15-patch (i586) 10868 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-de: German Localization Files for OpenOffice.org
RPM OpenOffice_org-de 2.0.0-1.15 (i586) 13100 kB
Patch-RPM OpenOffice_org-de 2.0.0-1.15-patch (i586) 7582 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-da: Danish Localization Files for OpenOffice.org
RPM OpenOffice_org-da 2.0.0-1.15 (i586) 12309 kB
Patch-RPM OpenOffice_org-da 2.0.0-1.15-patch (i586) 10686 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-el: Greek Localization Files for OpenOffice.org
RPM OpenOffice_org-el 2.0.0-1.15 (i586) 11945 kB
Patch-RPM OpenOffice_org-el 2.0.0-1.15-patch (i586) 10351 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-es: Spanish Localization Files for OpenOffice.org
RPM OpenOffice_org-es 2.0.0-1.15 (i586) 12549 kB
Patch-RPM OpenOffice_org-es 2.0.0-1.15-patch (i586) 7398 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-en-GB: British Localization Files for OpenOffice.org
RPM OpenOffice_org-en-GB 2.0.0-1.15 (i586) 11998 kB
Patch-RPM OpenOffice_org-en-GB 2.0.0-1.15-patch (i586) 7623 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-ca: Catalan Localization Files for OpenOffice.org
RPM OpenOffice_org-ca 2.0.0-1.15 (i586) 2213 kB
Patch-RPM OpenOffice_org-ca 2.0.0-1.15-patch (i586) 595 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-cs: Czech Localization Files for OpenOffice.org
RPM OpenOffice_org-cs 2.0.0-1.15 (i586) 12278 kB
Patch-RPM OpenOffice_org-cs 2.0.0-1.15-patch (i586) 10648 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-cy: Welsh Localization Files for OpenOffice.org
RPM OpenOffice_org-cy 2.0.0-1.15 (i586) 11900 kB
Patch-RPM OpenOffice_org-cy 2.0.0-1.15-patch (i586) 7091 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-bg: Bulgarian Localization Files for OpenOffice.org
RPM OpenOffice_org-bg 2.0.0-1.15 (i586) 12280 kB
Patch-RPM OpenOffice_org-bg 2.0.0-1.15-patch (i586) 10217 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-be-BY: Belorussian Localization Files for OpenOffice.org
RPM OpenOffice_org-be-BY 2.0.0-1.15 (i586) 2210 kB
Patch-RPM OpenOffice_org-be-BY 2.0.0-1.15-patch (i586) 596 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-ar: Arabic Localization Files for OpenOffice.org
RPM OpenOffice_org-ar 2.0.0-1.15 (i586) 2204 kB
Patch-RPM OpenOffice_org-ar 2.0.0-1.15-patch (i586) 561 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org-af: African Localization Files for OpenOffice.org
RPM OpenOffice_org-af 2.0.0-1.15 (i586) 2189 kB
Patch-RPM OpenOffice_org-af 2.0.0-1.15-patch (i586) 587 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


11 Dec 2007 OpenOffice_org: A Free Office Suite (the Language Independent part)
RPM OpenOffice_org 2.0.0-1.15 (i586) 100540 kB
Patch-RPM OpenOffice_org 2.0.0-1.15-patch (i586) 79040 kB
Source-RPM OpenOffice_org-2.0.0-1.15.src.rpm  

Security Update!
This update of OpenOffice_org adds restrictions to SQL statements of Java-based databases to avoid the execution of native Jave code by creating procedures. (CVE-2007-4575)


10 Dec 2007 samba-pdb: PDB-Modules
RPM samba-pdb 3.0.20b-3.19 (i586) 69 kB
Patch-RPM samba-pdb 3.0.20b-3.19-patch (i586) 66 kB
Source-RPM samba-3.0.20b-3.19.src.rpm  

Security Update!
This update of samba fixes a buffer overflow in function send_mailslot() that allows to overwrite the stack with zero-bytes. (CVE-2007-6015)


10 Dec 2007 samba-vscan: On-Access Virus Scanning with Samba
RPM samba-vscan 0.3.6b-4.18 (i586) 153 kB
Patch-RPM samba-vscan 0.3.6b-4.18-patch (i586) 133 kB
Source-RPM samba-3.0.20b-3.19.src.rpm  

Security Update!
This update of samba fixes a buffer overflow in function send_mailslot() that allows to overwrite the stack with zero-bytes. (CVE-2007-6015)


10 Dec 2007 samba-python: Samba Python Modules
RPM samba-python 3.0.20b-3.19 (i586) 4687 kB
Patch-RPM samba-python 3.0.20b-3.19-patch (i586) 4678 kB
Source-RPM samba-3.0.20b-3.19.src.rpm  

Security Update!
This update of samba fixes a buffer overflow in function send_mailslot() that allows to overwrite the stack with zero-bytes. (CVE-2007-6015)


10 Dec 2007 samba-winbind: Winbind Daemon and Tool
RPM samba-winbind 3.0.20b-3.19 (i586) 1585 kB
Patch-RPM samba-winbind 3.0.20b-3.19-patch (i586) 1567 kB
Source-RPM samba-3.0.20b-3.19.src.rpm  

Security Update!
This update of samba fixes a buffer overflow in function send_mailslot() that allows to overwrite the stack with zero-bytes. (CVE-2007-6015)


10 Dec 2007 samba-doc: Samba Documentation
RPM samba-doc 3.0.20b-3.19 (i586) 12862 kB
Patch-RPM samba-doc 3.0.20b-3.19-patch (i586) 569 kB
Source-RPM samba-3.0.20b-3.19.src.rpm  

Security Update!
This update of samba fixes a buffer overflow in function send_mailslot() that allows to overwrite the stack with zero-bytes. (CVE-2007-6015)


10 Dec 2007 samba-client: Samba Client Utilities
RPM samba-client 3.0.20b-3.19 (i586) 6349 kB
Patch-RPM samba-client 3.0.20b-3.19-patch (i586) 6061 kB
Source-RPM samba-3.0.20b-3.19.src.rpm  

Security Update!
This update of samba fixes a buffer overflow in function send_mailslot() that allows to overwrite the stack with zero-bytes. (CVE-2007-6015)


10 Dec 2007 samba: A SMB/ CIFS File Server
RPM samba 3.0.20b-3.19 (i586) 2775 kB
Patch-RPM samba 3.0.20b-3.19-patch (i586) 2712 kB
Source-RPM samba-3.0.20b-3.19.src.rpm  

Security Update!
This update of samba fixes a buffer overflow in function send_mailslot() that allows to overwrite the stack with zero-bytes. (CVE-2007-6015)


10 Dec 2007 libsmbclient: Samba Client Library
RPM libsmbclient 3.0.20b-3.19 (i586) 622 kB
Patch-RPM libsmbclient 3.0.20b-3.19-patch (i586) 619 kB
Source-RPM samba-3.0.20b-3.19.src.rpm  

Security Update!
This update of samba fixes a buffer overflow in function send_mailslot() that allows to overwrite the stack with zero-bytes. (CVE-2007-6015)


10 Dec 2007 libsmbclient-devel: Libraries and Header Files to Develop Programs with smbclient Support
RPM libsmbclient-devel 3.0.20b-3.19 (i586) 781 kB
Source-RPM samba-3.0.20b-3.19.src.rpm  

Security Update!
This update of samba fixes a buffer overflow in function send_mailslot() that allows to overwrite the stack with zero-bytes. (CVE-2007-6015)


10 Dec 2007 cifs-mount: mount using the Common Internet File System (CIFS)
RPM cifs-mount 3.0.20b-3.19 (i586) 65 kB
Patch-RPM cifs-mount 3.0.20b-3.19-patch (i586) 57 kB
Source-RPM samba-3.0.20b-3.19.src.rpm  

Security Update!
This update of samba fixes a buffer overflow in function send_mailslot() that allows to overwrite the stack with zero-bytes. (CVE-2007-6015)


10 Dec 2007 ldapsmb: Tool to administer Samba's LDAP backend
RPM ldapsmb 1.33-6.19 (i586) 64 kB
Patch-RPM ldapsmb 1.33-6.19-patch (i586) 44 kB
Source-RPM samba-3.0.20b-3.19.src.rpm  

Security Update!
This update of samba fixes a buffer overflow in function send_mailslot() that allows to overwrite the stack with zero-bytes. (CVE-2007-6015)


6 Dec 2007 dmapi-devel: DMAPI Libraries and Header Files
RPM dmapi-devel 2.2.1-5.2 (i586) 16 kB
Patch-RPM dmapi-devel 2.2.1-5.2-patch (i586) 3 kB
Source-RPM dmapi-2.2.1-5.2.src.rpm  

dmapi: provide dmapi via update repository to solve new samba dependency


6 Dec 2007 dmapi: Data Management API Runtime Environment
RPM dmapi 2.2.1-5.2 (i586) 37 kB
Patch-RPM dmapi 2.2.1-5.2-patch (i586) 22 kB
Source-RPM dmapi-2.2.1-5.2.src.rpm  

dmapi: provide dmapi via update repository to solve new samba dependency


5 Dec 2007 e2fsprogs-devel: Include Files and Libraries mandatory for Development.
RPM e2fsprogs-devel 1.38-4.3 (i586) 118 kB
Patch-RPM e2fsprogs-devel 1.38-4.3-patch (i586) 65 kB
Source-RPM e2fsprogs-1.38-4.3.src.rpm  

Security Update!
This update of e2fsprogs fixes several integer overflows in memory allocating code. Programs that use libext2fs are therefore vulnerable to memory corruptions that can lead to arbitrary code execution while loading a specially crafted image. (CVE-2007-5497)


5 Dec 2007 libcom_err: com_err library
RPM libcom_err 1.38-4.3 (i586) 41 kB
Patch-RPM libcom_err 1.38-4.3-patch (i586) 23 kB
Source-RPM e2fsprogs-1.38-4.3.src.rpm  

Security Update!
This update of e2fsprogs fixes several integer overflows in memory allocating code. Programs that use libext2fs are therefore vulnerable to memory corruptions that can lead to arbitrary code execution while loading a specially crafted image. (CVE-2007-5497)


5 Dec 2007 e2fsprogs: Utilities for the second extended file system
RPM e2fsprogs 1.38-4.3 (i586) 535 kB
Patch-RPM e2fsprogs 1.38-4.3-patch (i586) 230 kB
Source-RPM e2fsprogs-1.38-4.3.src.rpm  

Security Update!
This update of e2fsprogs fixes several integer overflows in memory allocating code. Programs that use libext2fs are therefore vulnerable to memory corruptions that can lead to arbitrary code execution while loading a specially crafted image. (CVE-2007-5497)


4 Dec 2007 htdig: WWW index and search system
RPM htdig 3.2.0b6-7.3 (i586) 1829 kB
Patch-RPM htdig 3.2.0b6-7.3-patch (i586) 570 kB
Source-RPM htdig-3.2.0b6-7.3.src.rpm  

Security Update!
A flaw in the htsearch Program could be exploited by attackers to
conduct cross site scripting (XSS) attacks.


30 Nov 2007 net-snmp-devel: SNMP Daemon
RPM net-snmp-devel 5.2.1-10.7 (i586) 757 kB
Patch-RPM net-snmp-devel 5.2.1-10.7-patch (i586) 41 kB
Source-RPM net-snmp-5.2.1-10.7.src.rpm  

Security Update!
This update of net-snmp fixes the following bug:
- default and configurable maximum number of varbinds returnable to
a GETBULK request (CVE-2007-5846)


30 Nov 2007 net-snmp: SNMP Daemon
RPM net-snmp 5.2.1-10.7 (i586) 1384 kB
Patch-RPM net-snmp 5.2.1-10.7-patch (i586) 914 kB
Source-RPM net-snmp-5.2.1-10.7.src.rpm  

Security Update!
This update of net-snmp fixes the following bug:
- default and configurable maximum number of varbinds returnable to
a GETBULK request (CVE-2007-5846)