ELSA-2009-1101

ELSA-2009-1101 - cscope security update

Type:SECURITY
Impact:MODERATE
Release Date:2009-06-15

Description



[15.5-10.RHEL4.3]
- Merge incdir-overflow and snprintf patches for better readability,
snprintf is used now with PATHLEN limit without other adjustments,
related strlen / %.*s / *_len are no longer needed and were dropped
- Update tempsec patch, drop extraneous s(n)printf argument
to suppress compiler warnings
- Update fscanf-overflows patch to perform reffile argument length
check earlier
- Fixing some snprintf formatting errors
- Fixing buffer overlows (bz 499198)
- Fixed some additional sprintf overflows


Related CVEs


CVE-2009-1577
CVE-2009-0148
CVE-2006-4262
CVE-2004-2541

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 3 (i386) cscope-15.5-16.RHEL3.src.rpm4086e4af545f5e17e83429d3ca4d47590feb9960410d682616b123726b41176a-el3_i386_latest
cscope-15.5-16.RHEL3.src.rpm4086e4af545f5e17e83429d3ca4d47590feb9960410d682616b123726b41176a-el3_u9_i386_patch
cscope-15.5-16.RHEL3.i386.rpm6bf4f23edec666480e731d132dc905238b427c4952f92bbd508d3528bcff8f37-el3_i386_latest
cscope-15.5-16.RHEL3.i386.rpm6bf4f23edec666480e731d132dc905238b427c4952f92bbd508d3528bcff8f37-el3_u9_i386_patch
Oracle Linux 3 (x86_64) cscope-15.5-16.RHEL3.src.rpm4086e4af545f5e17e83429d3ca4d47590feb9960410d682616b123726b41176a-el3_u9_x86_64_patch
cscope-15.5-16.RHEL3.src.rpm4086e4af545f5e17e83429d3ca4d47590feb9960410d682616b123726b41176a-el3_x86_64_latest
cscope-15.5-16.RHEL3.x86_64.rpm91d0c1491a4fd00fa7d7496214cf6cbb7ce99eb2792696a1268cea36624c52b7-el3_u9_x86_64_patch
cscope-15.5-16.RHEL3.x86_64.rpm91d0c1491a4fd00fa7d7496214cf6cbb7ce99eb2792696a1268cea36624c52b7-el3_x86_64_latest
Oracle Linux 4 (i386) cscope-15.5-10.RHEL4.3.src.rpmef4baf89026f4caa77098e0260ab96f6f7a7f061ec6bf4a8ae8f2d1453a060d2-el4_i386_latest
cscope-15.5-10.RHEL4.3.src.rpmef4baf89026f4caa77098e0260ab96f6f7a7f061ec6bf4a8ae8f2d1453a060d2-el4_u8_i386_patch
cscope-15.5-10.RHEL4.3.i386.rpmbbfc2c12677b8ee1e911817e44d6f890fbe1cd6619e912eb32237d9b120c6e48-el4_i386_latest
cscope-15.5-10.RHEL4.3.i386.rpmbbfc2c12677b8ee1e911817e44d6f890fbe1cd6619e912eb32237d9b120c6e48-el4_u8_i386_patch
Oracle Linux 4 (ia64) cscope-15.5-10.RHEL4.3.src.rpmef4baf89026f4caa77098e0260ab96f6f7a7f061ec6bf4a8ae8f2d1453a060d2-el4_ia64_latest
cscope-15.5-10.RHEL4.3.src.rpmef4baf89026f4caa77098e0260ab96f6f7a7f061ec6bf4a8ae8f2d1453a060d2-el4_u8_ia64_patch
cscope-15.5-10.RHEL4.3.ia64.rpm713b590a6a43dccd624da5b3ed2ef6139aeacab2d69a23aa7a37703f6ef6669c-el4_ia64_latest
cscope-15.5-10.RHEL4.3.ia64.rpm713b590a6a43dccd624da5b3ed2ef6139aeacab2d69a23aa7a37703f6ef6669c-el4_u8_ia64_patch
Oracle Linux 4 (x86_64) cscope-15.5-10.RHEL4.3.src.rpmef4baf89026f4caa77098e0260ab96f6f7a7f061ec6bf4a8ae8f2d1453a060d2-el4_u8_x86_64_patch
cscope-15.5-10.RHEL4.3.src.rpmef4baf89026f4caa77098e0260ab96f6f7a7f061ec6bf4a8ae8f2d1453a060d2-el4_x86_64_latest
cscope-15.5-10.RHEL4.3.x86_64.rpmb4150d5b5b24463451db66c42d8d0e2acbc8a8c4dad73fc158a9bb08ae883656-el4_u8_x86_64_patch
cscope-15.5-10.RHEL4.3.x86_64.rpmb4150d5b5b24463451db66c42d8d0e2acbc8a8c4dad73fc158a9bb08ae883656-el4_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete