ELSA-2009-1101

ELSA-2009-1101 - cscope security update

Type:SECURITY
Severity:MODERATE
Release Date:2009-06-15

Description



[15.5-10.RHEL4.3]
- Merge incdir-overflow and snprintf patches for better readability,
snprintf is used now with PATHLEN limit without other adjustments,
related strlen / %.*s / *_len are no longer needed and were dropped
- Update tempsec patch, drop extraneous s(n)printf argument
to suppress compiler warnings
- Update fscanf-overflows patch to perform reffile argument length
check earlier
- Fixing some snprintf formatting errors
- Fixing buffer overlows (bz 499198)
- Fixed some additional sprintf overflows


Related CVEs


CVE-2009-0148
CVE-2006-4262
CVE-2009-1577
CVE-2004-2541

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 3 (i386) cscope-15.5-16.RHEL3.src.rpm4fdb470931a54e4df12691c08a14bc9a-
cscope-15.5-16.RHEL3.i386.rpm2fff722fe1574ef5005c975d699be39e-
Oracle Linux 3 (x86_64) cscope-15.5-16.RHEL3.src.rpm4fdb470931a54e4df12691c08a14bc9a-
cscope-15.5-16.RHEL3.x86_64.rpm5d3cddf55f21e8a15776ab7a79292721-
Oracle Linux 4 (i386) cscope-15.5-10.RHEL4.3.src.rpm1174aabfcb62b47aa81d3825f0d2f786-
cscope-15.5-10.RHEL4.3.i386.rpm79d63d47ce1ddf8b786e0e61a9689c20-
Oracle Linux 4 (ia64) cscope-15.5-10.RHEL4.3.src.rpm1174aabfcb62b47aa81d3825f0d2f786-
cscope-15.5-10.RHEL4.3.ia64.rpmc8b8e81b11d3dcf7ade846c1da96787a-
Oracle Linux 4 (x86_64) cscope-15.5-10.RHEL4.3.src.rpm1174aabfcb62b47aa81d3825f0d2f786-
cscope-15.5-10.RHEL4.3.x86_64.rpm3166f02af8f99909e8b020b737ca1372-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete