ELSA-2007-0465

ELSA-2007-0465 - Moderate: pam security and bug fix update

Type:SECURITY
Impact:MODERATE
Release Date:2007-06-20

Description


cdrtools-2.01.0.a32-0.EL3.6

[2.01.0.a32-0.EL3.6]
- fix for CVE-2004-0813
- cdrecord and readcd are now suid, but with a pam_console check
- Resolves: rhbz#232096

[2.01.0.a32-0.EL3.3]
- fix for CAN-2005-0866 "cdrecord insecure temporary file"

[2.01.0.a32-0.EL3.2]
- added patch for CAN-2004-0806, if s.o. was so stupid to make cdrecord
suid
- removed the suid section from the manpage

[2.01.0.a32-0.EL3.1]
- errata version for RHEL3


pam-0.75-72

[0.75-72]
- remove /dev/cdwriter* from console.perms - CVE-2004-0813 (#133098)
- decrement console login count correctly - CVE-2007-1716 (#234142)

[0.75-71]
- requires ghostscript and linuxdoc-tools to build

[0.75-70]
- fix memory leaks in pam_stack (#204055)
- fix memory leak in pam_unix (#230625)


Related CVEs



Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 3 (i386) cdrtools-2.01.0.a32-0.EL3.6.src.rpmc2766dd7b6a94383a0b32e33a099f6ab69d51d3317f457d827b2618c7f1e9d39-el3_i386_latest
cdrtools-2.01.0.a32-0.EL3.6.src.rpmc2766dd7b6a94383a0b32e33a099f6ab69d51d3317f457d827b2618c7f1e9d39-el3_u9_i386_base
pam-0.75-72.src.rpmd5d725499c5ac8d7ebd44ceeeb8d7cc6e5aab3e73d3ca7d789305184727028db-el3_i386_latest
pam-0.75-72.src.rpmd5d725499c5ac8d7ebd44ceeeb8d7cc6e5aab3e73d3ca7d789305184727028db-el3_u9_i386_base
cdrecord-2.01.0.a32-0.EL3.6.i386.rpm2c4538b03a4e79bc629be808403afc17eed748181e1304352443bf9d772cd11a-el3_i386_latest
cdrecord-2.01.0.a32-0.EL3.6.i386.rpm2c4538b03a4e79bc629be808403afc17eed748181e1304352443bf9d772cd11a-el3_u9_i386_base
cdrecord-devel-2.01.0.a32-0.EL3.6.i386.rpma61716e9587f34301078ffdc86a512da3a3a200675d64656b9e8e7c8d4bd6099-el3_i386_latest
cdrecord-devel-2.01.0.a32-0.EL3.6.i386.rpma61716e9587f34301078ffdc86a512da3a3a200675d64656b9e8e7c8d4bd6099-el3_u9_i386_base
mkisofs-2.01.0.a32-0.EL3.6.i386.rpm84c5daa25956a79b6c71d722a213ef20dd7e645286154932b0c623803458cb78-el3_i386_latest
mkisofs-2.01.0.a32-0.EL3.6.i386.rpm84c5daa25956a79b6c71d722a213ef20dd7e645286154932b0c623803458cb78-el3_u9_i386_base
pam-0.75-72.i386.rpmdd7a47650aa0a6b146895f173c8adbcd8ce18ad3d31fef7bb30c286c17c254ed-el3_i386_latest
pam-0.75-72.i386.rpmdd7a47650aa0a6b146895f173c8adbcd8ce18ad3d31fef7bb30c286c17c254ed-el3_u9_i386_base
pam-devel-0.75-72.i386.rpm97981d080b228be57b185f8d2ab8adc2a30c31aad4cfa66e30f9f3be81697e33-el3_i386_latest
pam-devel-0.75-72.i386.rpm97981d080b228be57b185f8d2ab8adc2a30c31aad4cfa66e30f9f3be81697e33-el3_u9_i386_base
Oracle Linux 3 (x86_64) cdrtools-2.01.0.a32-0.EL3.6.src.rpmc2766dd7b6a94383a0b32e33a099f6ab69d51d3317f457d827b2618c7f1e9d39-el3_u9_x86_64_base
cdrtools-2.01.0.a32-0.EL3.6.src.rpmc2766dd7b6a94383a0b32e33a099f6ab69d51d3317f457d827b2618c7f1e9d39-el3_x86_64_latest
pam-0.75-72.src.rpmd5d725499c5ac8d7ebd44ceeeb8d7cc6e5aab3e73d3ca7d789305184727028db-el3_u9_x86_64_base
pam-0.75-72.src.rpmd5d725499c5ac8d7ebd44ceeeb8d7cc6e5aab3e73d3ca7d789305184727028db-el3_x86_64_latest
cdrecord-2.01.0.a32-0.EL3.6.x86_64.rpm15f77787f5c2d2fcb370aa197373b6b4321c25302261d1b1349c37103c303f16-el3_u9_x86_64_base
cdrecord-2.01.0.a32-0.EL3.6.x86_64.rpm15f77787f5c2d2fcb370aa197373b6b4321c25302261d1b1349c37103c303f16-el3_x86_64_latest
cdrecord-devel-2.01.0.a32-0.EL3.6.x86_64.rpm37bc22c7502d9db2259d594fb6d33b48fba5a88bd381bef203ba34c165e7070c-el3_u9_x86_64_base
cdrecord-devel-2.01.0.a32-0.EL3.6.x86_64.rpm37bc22c7502d9db2259d594fb6d33b48fba5a88bd381bef203ba34c165e7070c-el3_x86_64_latest
mkisofs-2.01.0.a32-0.EL3.6.x86_64.rpm34a0f920352b1709ec0674f9639e78762a1e4fb3c3e276adf89ff4d4652a03a5-el3_u9_x86_64_base
mkisofs-2.01.0.a32-0.EL3.6.x86_64.rpm34a0f920352b1709ec0674f9639e78762a1e4fb3c3e276adf89ff4d4652a03a5-el3_x86_64_latest
pam-0.75-72.i386.rpmdd7a47650aa0a6b146895f173c8adbcd8ce18ad3d31fef7bb30c286c17c254ed-el3_u9_x86_64_base
pam-0.75-72.i386.rpmdd7a47650aa0a6b146895f173c8adbcd8ce18ad3d31fef7bb30c286c17c254ed-el3_x86_64_latest
pam-0.75-72.x86_64.rpmfa33163a6eb8efa2c588e2be4c5a10e3897b05f8bfde03d64f66722847fbcfb1-el3_u9_x86_64_base
pam-0.75-72.x86_64.rpmfa33163a6eb8efa2c588e2be4c5a10e3897b05f8bfde03d64f66722847fbcfb1-el3_x86_64_latest
pam-devel-0.75-72.i386.rpm97981d080b228be57b185f8d2ab8adc2a30c31aad4cfa66e30f9f3be81697e33-el3_u9_x86_64_base
pam-devel-0.75-72.i386.rpm97981d080b228be57b185f8d2ab8adc2a30c31aad4cfa66e30f9f3be81697e33-el3_x86_64_latest
pam-devel-0.75-72.x86_64.rpma402ed7bbc3923f83bd82506a6a1b94f9cb88c34dfe69749e19189b475acab95-el3_u9_x86_64_base
pam-devel-0.75-72.x86_64.rpma402ed7bbc3923f83bd82506a6a1b94f9cb88c34dfe69749e19189b475acab95-el3_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete