ELBA-2007-0331

ELBA-2007-0331 - conga bug fix update

Type:BUG
Severity:NA
Release Date:2007-06-26

Description


[0.9.2-6.0.1]
- Replaced RedHat copyrighted and trademarked images in the conga-0.9.2
tarball.

[0.9.2-6]
- Fixed bz233326 (CVE-2007-0240 Conga includes version of Zope that is
vulnerable to a XSS attack)
- Fixed bz228637 (CVE-2007-1462 security alert - passwords sent back
from server as input value)
- Fixed bz236020 (Conga allows creation/rename of clusters with name
greater than 15 characters)
- Fixed bz236021 (Cluster cannot be deleted (from 'Manage Systems') -
but no error results)
- Fixed bz236025 (Entering bad password when creating a new cluster =
UnboundLocalError: local variable 'e' r
eferenced before assignment)
- Fixed bz236026 (luci failover domain forms are missing/empty)
- Fixed bz236027 (fence_xvm is incorrectly listed as "xmv" in virtual
cluster)
- Fixed bz236048 (Advanced options parameters settings don't do anything)
- Fixed bz236050 (Unable to configure a virtual service)
- Fixed bz236052 (kmod-gfs-xen not installed with Conga install)
- Fixed bz236054 (enable shared storage' option cleared whenever there
is a configuration error)
- Fixed bz236055 (Must manually edit cluster.conf on the dom0 cluster to
add "")
- Resolves: bz233326, bz228637, bz236020, bz236021, bz236025, bz236026,
- Resolves: bz236027, bz236048, bz236050, bz236052, bz236054, bz236055
- Related: bz236023




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 5 (i386) conga-0.9.2-6.el5.0.1.src.rpm869a02d2416f95d01bf532fcb9be7da0ELSA-2014-1194
luci-0.9.2-6.el5.0.1.i386.rpm4b855be2dcb7374dee499b8e5f078503ELSA-2014-1194
ricci-0.9.2-6.el5.0.1.i386.rpm33a8d4591b46246483dafc73dbcf12ceELSA-2014-1194
Oracle Linux 5 (x86_64) conga-0.9.2-6.el5.0.1.src.rpm869a02d2416f95d01bf532fcb9be7da0ELSA-2014-1194
luci-0.9.2-6.el5.0.1.x86_64.rpm9f3a7be050b58135ca778db83bec020dELSA-2014-1194
ricci-0.9.2-6.el5.0.1.x86_64.rpm12defe7a693182bb07a7702b7b45a01aELSA-2014-1194



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete