tog-pegasus
247
Several flaws were found in the way malformed content was processed. An HTML mail message
containing specially-crafted content could potentially trick a Thunderbird user into surrendering
sensitive information. (
CVE-2009-0355
1730
,
CVE-2009-0776
1731
)
Note: JavaScript support is disabled by default in Thunderbird. None of the above issues are
exploitable unless JavaScript is enabled.
All Thunderbird users should upgrade to this updated package, which resolves these issues. All
running instances of Thunderbird must be restarted for the update to take effect.
1.225. tog-pegasus
1.225.1. RHBA-2009:1286: bug fix and enhancement update
Updated tog-pegasus packages that fix various bugs and add enhancements are now available.
OpenPegasus WBEM Services for Linux enables management solutions that deliver increased control
of enterprise resources. WBEM is a platform and resource independent DMTF standard that defines a
common information model and communication protocol for monitoring and controlling resources from
diverse sources.
These updated packages upgrade tog-pegasus to the more recent upstream version 2.7.2, which
provides a number of bug fixes and enhancements over the previous packaged version. The
OpenPegasus Feature Status page referenced below summarizes the changes in this version.
(
BZ#474458
1732
)
In addition, these updated packages provide fixes for the following bugs:
• the upstream documentation about using SSL with OpenPegasus shipped in the previous package
was inaccurate and out-of-date. This updated package contains additional documentation in the file
README.RedHat.SSL that describes how to configure and how to use SSL with OpenPegasus.
(
BZ#479038
1733
)
• when the out of process providers feature is enabled, OpenPegasus executes WBEM providers
in a separate process from the WBEM server. This isolates the server from any problems in the
providers. Previously, the tog-pegasus package installed OpenPegasus with this feature disabled.
Now, OpenPegasus is installed with the out of process providers enabled by default, therefore
making WBEM services more reliable. (
BZ#455109
1734
)
Users are advised to upgrade to these updated tog-pegasus packages, which resolve these issues
and add these enhancements.
1730
https://www.redhat.com/security/data/cve/CVE-2009-0355.html
1731
https://www.redhat.com/security/data/cve/CVE-2009-0776.html
1732
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=474458
Содержание ENTERPRISE 5.4 RELEASE NOTES
Страница 1: ...Red Hat Enterprise Linux 5 4 Technical Notes Every Change to Every Package ...
Страница 18: ...xviii ...
Страница 306: ...288 ...
Страница 464: ...446 ...
Страница 466: ...448 ...