RHBA-2009:1482: bug fix update
181
A heap-based buffer overflow flaw was found in the way newt processes content that is to be
displayed in a text dialog box. A local attacker could issue a specially-crafted text dialog box display
request (direct or via a custom application), leading to a denial of service (application crash) or,
potentially, arbitrary code execution with the privileges of the user running the application using the
newt library. (
CVE-2009-2905
1519
)
Users of newt should upgrade to these updated packages, which contain a backported patch to
correct this issue. After installing the updated packages, all applications using the newt library must be
restarted for the update to take effect.
1.132.2. RHBA-2009:1482: bug fix update
Note
This update has already been released (prior to the GA of this release) as FASTRACK
errata
RHBA-2009:1482
1520
Updated newt packages that resolve several issues are now available.
Newt is a programming library for color text-mode, widget-based user interfaces. Newt can be used to
add stacked windows, entry widgets, check boxes, radio buttons, labels, plain text fields, and so on, to
text mode user interfaces.
These updated newt packages provide fixes for the following bugs:
* the whiptail(1) man page was missing from the newt package, and is now included. (
BZ#456307
1521
)
* newt did not recognize the escape sequence "\E[Z" as the Shift+Tab key combination on VT320
terminals, and incorrectly interpreted it as "Escape". With these updated packages, newt correctly
interprets "\E[Z" as Shift+Tab. (
BZ#468046
1522
)
All users of newt are advised to upgrade to these updated packages, which resolve these issues.
1.133. nfs-utils
1.133.1. RHBA-2010:0284: bug fix update
An updated nfs-utils package that fixes two bugs is now available.
The nfs-utils package provides a daemon for the kernel NFS (Network File System) server and
related tools, which provides better performance than the traditional Linux NFS server. This package
also contains the mount.nfs, umount.nfs and showmount programs. Showmount queries the mount
daemon on a remote host for information about the NFS server on the remote host. For example,
showmount can display the clients which are mounted on that host.
This update addresses the following bugs:
* nfsnobody == 4294967294 causes idmapd to stop responding. (
BZ#523285
1523
)
1519
https://www.redhat.com/security/data/cve/CVE-2009-2905.html
1521
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=456307
1522
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=468046
1523
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=523285
Summary of Contents for ENTERPRISE LINUX 5.5 - S 2010
Page 10: ...x ...
Page 308: ...298 ...
Page 310: ...300 ...
Page 468: ...458 ...
Page 470: ...460 ...