-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ## ## Patch description of patch c9a04465aadc28a00f8e67df4a55f059 ## Kind: security Shortdescription.english: Security update for gzip Longdescription.english: Applies to Package: gzip Product(s): Release: 20060915 Obsoletes: none Indications Everyone should install this update. Contraindications None. Problem description Several security issues with gzip have been found that can be exploited to compromise the system in conjunction with other programs while processing malformed archive files. The vulnerabilities have been tracked by Mitre CVE-2006-4334, CVE-2006-4335, CVE-2006-4336, CVE-2006-4337 and CVE-2006-4338. Solution Please install the update provided at the location noted below. Installation notes This update is provided as an RPM package that can easily be installed onto a running system by using this command: rpm -Uvh gzip.rpm Hsilgne.noitpircsedgnol: Size: 54 MinYaST1Version: MinYaST2Version: UpdateOnlyInstalled: true Packages: ## ## -----> gzip <----- ## Filename: gzip.rpm Label: GNU zip compression utilities Series: i586 Size: 187163 56078 PatchRpmBasedOn: 1.3-326 PatchRpmSize: 187163 32741 Buildtime: 1158185763 DepAND: DepOR: DepExcl: Flag: Category: RpmGroup: Productivity/Archiving/Compression Copyright: GPL AuthorName: AuthorAddress: Version: 1.3-453 StartCommand: Obsoletes: Requires: /bin/sh ld-linux.so.2 libc.so.6 libc.so.6(GLIBC_2.0) libc.so.6(GLIBC_2.1) libc.so.6(GLIBC_2.2) rpmlib(PayloadIsBzip2) <= 3.0.5-1 Provides: gzip Segakcap: -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (GNU/Linux) iD8DBQFFGPAWqE7a6JyACsoRApXNAJ4vm6dqs5G753x4vKNv8f6utGqlUACf aMYXQZBgF5X7TRMVb2ELHTyTEcs= =xX64 -----END PGP SIGNATURE-----