-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ## ## Patch description of patch 54656f7126dc88db89a8c620d73612cf ## Kind: security Shortdescription.english: Security update for package zebra Longdescription.english: Applies to Package: zebra Product(s): SuSE Linux Enterprise Server 7 for PowerPC SuSE Linux School Server for i386 SuSE Linux Standard Server 8 SuSE Linux Enterprise Server 8 for x86 SuSE Linux Enterprise Server 8 for IPF SLES 8 for IBM iSeries and IBM pSeries SuSE Linux Enterprise Server 8 for IBM S/390 and IBM zSeries SuSE Linux Enterprise Server 8 for IBM zSeries SuSE Linux Enterprise Server 8 for AMD64 SuSE Linux Openexchange Server 4 UnitedLinux 1.0 Release: 20040122 Obsoletes: none Indications Everyone using zebra on a system with untrusted local users should install this update. Contraindications None. Problem description An error has been found in zebra which allows local users to create a denial of service condition (DoS) by sending malicious netlink messages. Solution Please install the updates provided at the location noted below. Installation notes This update is provided as an RPM package that can easily be installed onto a running system by using this command: rpm -Fvh zebra.rpm Hsilgne.noitpircsedgnol: Size: 925 MinYaST1Version: MinYaST2Version: UpdateOnlyInstalled: true Packages: ## ## -----> zebra <----- ## Filename: zebra.rpm Label: free routing software (e.g. for BGP and OSPF) Series: i586 Size: 3504763 947412 PatchRpmBasedOn: 0.92a-340 0.93b-74 PatchRpmSize: 3504763 931931 Buildtime: 1074561242 DepAND: DepOR: DepExcl: Flag: Category: RpmGroup: Productivity/Networking/Routing Copyright: LGPL AuthorName: Kunihiro Ishiguro Toshiaki Takada AuthorAddress: Version: 0.93b-163 StartCommand: Obsoletes: Requires: aaa_base fillup fileutils /bin/sh /bin/sh ld-linux.so.2 libc.so.6 libc.so.6(GLIBC_2.0) libc.so.6(GLIBC_2.1) libcrypt.so.1 libcrypt.so.1(GLIBC_2.0) libdl.so.2 libm.so.6 libm.so.6(GLIBC_2.0) libncurses.so.5 libpam.so.0 libpam_misc.so.0 libreadline.so.4 rpmlib(PayloadIsBzip2) <= 3.0.5-1 Provides: Segakcap: -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (GNU/Linux) iD8DBQFAGh+JqE7a6JyACsoRAtHkAJ9XwalgPVY+OkDhoS2BjN8CcgjttACffduw FtnqOzT2IxKAYRBQlZRC+Oc= =cXN3 -----END PGP SIGNATURE-----