OVMSA-2014-0083

OVMSA-2014-0083 - rpm security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2014-12-10

Description


[4.8.0-38]
- Fix race condidition where unchecked data is exposed in the file system
(CVE-2013-6435)(#1163059)

[4.8.0-37]
- Fix thinko in the non-root python byte-compilation fix

[4.8.0-36]
- Byte-compile versioned python libdirs in non-root prefix too (#868332)

[4.8.0-35]
- Fix segfault on rpmdb addition when header unload fails (#706935)

[4.8.0-34]
- Add a compat mode for enabling legacy rpm scriptlet error behavior (#963724)

[4.8.0-33]
- Fix build-time double-free on file capability processing (#904818)
- Fix include-directive getting processed on false branch (#920190)

[4.8.0-32]
- Bring back --fileid in the man page with description of the id
(#804049)

[4.8.1-31]
- Fix missing error on --import on bogus key file (#869667)

[4.8.0-30]
- Add DWARF 4 support to debugedit (#858731)
- Add better error handling to patch for bug

[4.8.0-29]
- Fix memory corruption on multikey PGP packets/armors (#829621)

[4.8.0-28]
- Handle identical binaries for debug-info (#727872)
- Fix typos in Japanese rpm man page (#845065)
- Document -D and -E options in man page (#845063)
- Add --setperms and --setuids to the man page (#839126)
- Update man page that SHA256 is also used for file digest (#804049)
- Remove --fileid from man page to get rid of md5
- Remove -s from patch calls (#773503)
- Force _host_vendor to redhat to better match toolchain (#743229)
- Backport reloadConfig for Python API (#825147)
- Support for dpkg-style sorting of tilde in version/release (#825087)
- Fix explicit directory %attr() when %defattr() is active (#730473)
- Don't load keyring if signature checking is disabled (#664696)
- Retry read() to fix rpm2cpio with pipe as stdin (#802839)


Related CVEs


CVE-2013-6435

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle VM 3.3 (x86_64) rpm-4.8.0-38.el6_6.src.rpm839595933126ab0f0187765644aab696OVMBA-2018-0189
rpm-4.8.0-38.el6_6.x86_64.rpm296e0d207058c778f90dd71e23346630OVMBA-2018-0189
rpm-libs-4.8.0-38.el6_6.x86_64.rpm1234ae0faf85649c09aecefc8a8e3b01OVMBA-2018-0189
rpm-python-4.8.0-38.el6_6.x86_64.rpma660801d5a29b1dc7d1927c25b4ec8d2OVMBA-2018-0189



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete