[Previo por Fecha] [Siguiente por Fecha] [Previo por Hilo] [Siguiente por Hilo]
[Hilos de Discusión] [Fecha] [Tema] [Autor]------- Start of forwarded message ------- Return-Path: <redhat-announce-list-request en redhat com> Resent-Cc: recipient list not shown: ; MBOX-Line: From redhat-announce-list-request en redhat com Sat Mar 21 16:08:52 1998 X-Authentication-Warning: mercury.redhat.com: ewt owned process doing -bs Date: Sat, 21 Mar 1998 16:09:47 -0500 (EST) From: Erik Troan <ewt en redhat com> Reply-To: redhat-list en redhat com To: redhat-announce-list en redhat com Subject: SECURITY: new version of MH released Approved: ewt en redhat com MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Resent-From: redhat-announce-list en redhat com X-Mailing-List: <redhat-announce-list en redhat com> archive/latest/41 X-Loop: redhat-announce-list en redhat com Precedence: list Resent-Sender: redhat-announce-list-request en redhat com X-URL: http://www.redhat.com - -----BEGIN PGP SIGNED MESSAGE----- Buffer overflows have been found in msgchk as included with the mh package in all versions of Red Hat. These overflows allow all users to gain root access to systems with them installed, and are distinct from the problems found in earlier versions of mh. If you do not need the mh package, the easiest fix for this problem is to 'rpm -e mh'. If you do need it, fixes are available for users of Red Hat 5.0 and Red Hat 4.x. As always, these packages have been signed with the Red Hat PGP key. The errata will soon be updated to reflect these new packages. Red Hat 5.0 - - ------------- i386: rpm -Uvh ftp://ftp.redhat.com/updates/5.0/i386/mh-6.8.4-6.i386.rpm alpha: rpm -Uvh ftp://ftp.redhat.com/updates/5.0/alpha/mh-6.8.4-6.alpha.rpm Red Hat 4.2 - - ------------- i386: rpm -Uvh ftp://ftp.redhat.com/updates/4.2/i386/mh-6.8.3-15.i386.rpm alpha: rpm -Uvh ftp://ftp.redhat.com/updates/4.2/alpha/mh-6.8.3-15.alpha.rpm SPARC: rpm -Uvh ftp://ftp.redhat.com/updates/4.2/sparc/mh-6.8.3-15.sparc.rpm - -----BEGIN PGP SIGNATURE----- Version: 2.6.2 iQCVAwUBNRQsrqUg6PHLopv5AQEMDgP+MjF9SqLcCUX/Au8M/aV1Iqm+xJ4KQGMn 37U8CzjypGivmchnbT58AZodyhlThViHeV17GbGpFHgIi7oRRH5boORA7BWH5gMM FkBEnfH4SPZrCT+q9OH9nJii5x2qc5vqnXJI9chonK+kfpFVfQkIS8seDl6At9g4 0AlY4maeO3g= =KA68 - -----END PGP SIGNATURE----- - -- To unsubscribe: mail -s unsubscribe redhat-announce-list-request en redhat com < /dev/null ------- End of forwarded message -------