ELSA-2012-0451

ELSA-2012-0451 - rpm security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2012-04-03

Description


[4.8.0-19.1]
- Proper region tag validation on package/header read (CVE-2012-0060)
- Double-check region size against header size (CVE-2012-0061)
- Validate negated offsets too in headerVerifyInfo() (CVE-2012-0815)


Related CVEs


CVE-2012-0060
CVE-2012-0061
CVE-2012-0815

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 4 (i386) rpm-4.3.3-36_nonptl.el4.src.rpmd917a21adf1d3af08a7a8d2235068330-
popt-1.9.1-36_nonptl.el4.i386.rpmc1e2a257ea417582a1cdea324f1fd64d-
rpm-4.3.3-36_nonptl.el4.i386.rpmbf31e0aa9b5d68b8f869fd2c7847d1b6-
rpm-build-4.3.3-36_nonptl.el4.i386.rpm2b97bb8d0f2a03ac45a7b6b1581bf981-
rpm-devel-4.3.3-36_nonptl.el4.i386.rpmd34fe1a312cf261404a20d412ea93f3d-
rpm-libs-4.3.3-36_nonptl.el4.i386.rpm60d24b906ea5312b8a52a52834c4f45e-
rpm-python-4.3.3-36_nonptl.el4.i386.rpme6600fed5e4b620e05b647107273ca21-
Oracle Linux 4 (ia64) rpm-4.3.3-36_nonptl.el4.src.rpmd917a21adf1d3af08a7a8d2235068330-
popt-1.9.1-36_nonptl.el4.i386.rpmc1e2a257ea417582a1cdea324f1fd64d-
popt-1.9.1-36_nonptl.el4.ia64.rpmc44ac17d1554f232e98e877615641911-
rpm-4.3.3-36_nonptl.el4.ia64.rpm10848ddbc0c1588ad5328901bb25ec31-
rpm-build-4.3.3-36_nonptl.el4.ia64.rpm999027e3a55fafe4161ceb23e105d624-
rpm-devel-4.3.3-36_nonptl.el4.ia64.rpm731f06b658296a675b7533dda54029ed-
rpm-libs-4.3.3-36_nonptl.el4.i386.rpm60d24b906ea5312b8a52a52834c4f45e-
rpm-libs-4.3.3-36_nonptl.el4.ia64.rpm0613962bf1a45ef6a8cf0ab2422113ae-
rpm-python-4.3.3-36_nonptl.el4.ia64.rpm8d1276b611e7fcb761b06c1f87f4fe66-
Oracle Linux 4 (x86_64) rpm-4.3.3-36_nonptl.el4.src.rpmd917a21adf1d3af08a7a8d2235068330-
popt-1.9.1-36_nonptl.el4.i386.rpmc1e2a257ea417582a1cdea324f1fd64d-
popt-1.9.1-36_nonptl.el4.x86_64.rpm0c185b60d61a07e02bd1089d60bb3c41-
rpm-4.3.3-36_nonptl.el4.x86_64.rpme5424ea987a50ec737af30e6749ca139-
rpm-build-4.3.3-36_nonptl.el4.x86_64.rpm52f79c0c0150240ea9f31c1b6ae8f9e1-
rpm-devel-4.3.3-36_nonptl.el4.x86_64.rpm1ea712df1087169891f07fec7cdb8750-
rpm-libs-4.3.3-36_nonptl.el4.i386.rpm60d24b906ea5312b8a52a52834c4f45e-
rpm-libs-4.3.3-36_nonptl.el4.x86_64.rpmb66c7c8e9cec93e4f6310f62d7bba29d-
rpm-python-4.3.3-36_nonptl.el4.x86_64.rpm70314328fa8b8e6aa606c1ecc900c6aa-
Oracle Linux 5 (i386) rpm-4.4.2.3-28.0.1.el5_8.src.rpm931a7e42d32a749da8d179dbdf91b2e7ELSA-2014-1974
popt-1.10.2.3-28.0.1.el5_8.i386.rpme634a3362ddb70be190ad4e20de3ee49ELSA-2014-1974
rpm-4.4.2.3-28.0.1.el5_8.i386.rpm1501f7f4ea06f930be66c27c33cf3304ELSA-2014-1974
rpm-apidocs-4.4.2.3-28.0.1.el5_8.i386.rpmd1bd951c43b2eb6fd76d15157830c4fcELSA-2014-1974
rpm-build-4.4.2.3-28.0.1.el5_8.i386.rpm675e89d1244d3bf6bb780d23ee277d30ELSA-2014-1974
rpm-devel-4.4.2.3-28.0.1.el5_8.i386.rpm155eb10762f09a1128269a243bbbae33ELSA-2014-1974
rpm-libs-4.4.2.3-28.0.1.el5_8.i386.rpmcda956689149b74212fdaed3bee9f9e6ELSA-2014-1974
rpm-python-4.4.2.3-28.0.1.el5_8.i386.rpm47eca2f7587a6b43c7126a12ba26fc08ELSA-2014-1974
Oracle Linux 5 (ia64) rpm-4.4.2.3-28.0.1.el5_8.src.rpm931a7e42d32a749da8d179dbdf91b2e7ELSA-2014-1974
popt-1.10.2.3-28.0.1.el5_8.ia64.rpm6331155bf798e56f8c45cee8478b7aadELSA-2014-1974
rpm-4.4.2.3-28.0.1.el5_8.ia64.rpm302a39210d3cf2545b8dc175137c2b89ELSA-2014-1974
rpm-apidocs-4.4.2.3-28.0.1.el5_8.ia64.rpmee027e33434707f299c9f52211beda9fELSA-2014-1974
rpm-build-4.4.2.3-28.0.1.el5_8.ia64.rpma95d3fe27400dcefdef52e4c885e3fbaELSA-2014-1974
rpm-devel-4.4.2.3-28.0.1.el5_8.ia64.rpm9cb60a9f9ef2743bcad3820acf45249aELSA-2014-1974
rpm-libs-4.4.2.3-28.0.1.el5_8.ia64.rpme2151e3faac62cfe02ef607add702fb8ELSA-2014-1974
rpm-python-4.4.2.3-28.0.1.el5_8.ia64.rpmc4e85f442346a8fcf2824db7cafbcdbeELSA-2014-1974
Oracle Linux 5 (x86_64) rpm-4.4.2.3-28.0.1.el5_8.src.rpm931a7e42d32a749da8d179dbdf91b2e7ELSA-2014-1974
popt-1.10.2.3-28.0.1.el5_8.i386.rpme634a3362ddb70be190ad4e20de3ee49ELSA-2014-1974
popt-1.10.2.3-28.0.1.el5_8.x86_64.rpm1c27d7efe2deaf416c28c3e940e00a31ELSA-2014-1974
rpm-4.4.2.3-28.0.1.el5_8.x86_64.rpm7c561acb0aeca6a2b9e85bcb6961bd5cELSA-2014-1974
rpm-apidocs-4.4.2.3-28.0.1.el5_8.x86_64.rpm8b79a1b2e86b39fbbbfa3821561807acELSA-2014-1974
rpm-build-4.4.2.3-28.0.1.el5_8.x86_64.rpmcee0f19a3bf5a221106655a37dc0691aELSA-2014-1974
rpm-devel-4.4.2.3-28.0.1.el5_8.i386.rpm155eb10762f09a1128269a243bbbae33ELSA-2014-1974
rpm-devel-4.4.2.3-28.0.1.el5_8.x86_64.rpm9c5b76d7585ac680dd3977b136161809ELSA-2014-1974
rpm-libs-4.4.2.3-28.0.1.el5_8.i386.rpmcda956689149b74212fdaed3bee9f9e6ELSA-2014-1974
rpm-libs-4.4.2.3-28.0.1.el5_8.x86_64.rpmf66456b06006a20031505cc8d7d012b0ELSA-2014-1974
rpm-python-4.4.2.3-28.0.1.el5_8.x86_64.rpm40669ccfaa946ceb844cd9505ff20ee8ELSA-2014-1974
Oracle Linux 6 (i386) rpm-4.8.0-19.el6_2.1.src.rpm366ddeb1b626d23978295f14574e807cELBA-2018-1909
rpm-4.8.0-19.el6_2.1.i686.rpme4256d8a6a2c59c6e2b28892ee4fcce2ELBA-2018-1909
rpm-apidocs-4.8.0-19.el6_2.1.noarch.rpm6694f92349b0fbe556fffc016170f3a2ELBA-2018-1909
rpm-build-4.8.0-19.el6_2.1.i686.rpm3e868e9cb791f3ffb0de2258e824aed3ELBA-2018-1909
rpm-cron-4.8.0-19.el6_2.1.noarch.rpmdc4e2ebc783b3b9f59aad3bc74324ed9ELBA-2018-1909
rpm-devel-4.8.0-19.el6_2.1.i686.rpm05b9d531f5e6cd38ca7a47528ce30307ELBA-2018-1909
rpm-libs-4.8.0-19.el6_2.1.i686.rpm91fc13d53fa14376c9afe0e760a27795ELBA-2018-1909
rpm-python-4.8.0-19.el6_2.1.i686.rpm9c7da089cc7a90cc0017cb2a77f1989aELBA-2018-1909
Oracle Linux 6 (x86_64) rpm-4.8.0-19.el6_2.1.src.rpm366ddeb1b626d23978295f14574e807cELBA-2018-1909
rpm-4.8.0-19.el6_2.1.x86_64.rpmcaf8ba4b12facdaea939d5e4f7cd3c6bELBA-2018-1909
rpm-apidocs-4.8.0-19.el6_2.1.noarch.rpm6694f92349b0fbe556fffc016170f3a2ELBA-2018-1909
rpm-build-4.8.0-19.el6_2.1.x86_64.rpm80c3b9817088dc4cbbd2dd9f106d3069ELBA-2018-1909
rpm-cron-4.8.0-19.el6_2.1.noarch.rpmdc4e2ebc783b3b9f59aad3bc74324ed9ELBA-2018-1909
rpm-devel-4.8.0-19.el6_2.1.i686.rpm05b9d531f5e6cd38ca7a47528ce30307ELBA-2018-1909
rpm-devel-4.8.0-19.el6_2.1.x86_64.rpm850be1cf97e1e3fbf2a4991b6278de69ELBA-2018-1909
rpm-libs-4.8.0-19.el6_2.1.i686.rpm91fc13d53fa14376c9afe0e760a27795ELBA-2018-1909
rpm-libs-4.8.0-19.el6_2.1.x86_64.rpm66c1d8d4c4ec7d1e98a487b47a1a3cf7ELBA-2018-1909
rpm-python-4.8.0-19.el6_2.1.x86_64.rpm78ea130b71e2d4502bd661922aad4fa9ELBA-2018-1909



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete