Oval Definition:oval:com.redhat.rhsa:def:20070497
Revision Date:2007-06-14Version:635
Title:RHSA-2007:0497: iscsi-initiator-utils security update (Moderate)
Description:The iscsi package provides the server daemon for the iSCSI protocol, as well as the utility programs used to manage it. iSCSI is a protocol for distributed disk access using SCSI commands sent over Internet Protocol networks.

Olaf Kirch discovered two flaws in open-iscsi. A local attacker could use these flaws to cause the server daemon to stop responding, leading to a denial of service. (CVE-2007-3099, CVE-2007-3100).

All users of open-iscsi should upgrade to this updated package which resolves these issues.

Note: This issue did not affect Red Hat Enterprise Linux 2.1, 3, or 4. open-iscsi is available in Red Hat Enterprise Linux 5 as a Technology Preview.
Family:unixClass:patch
Status:Reference(s):CVE-2007-3099
CVE-2007-3100
RHSA-2007:0497
RHSA-2007:0497-01
RHSA-2007:0497-01
Platform(s):Red Hat Enterprise Linux 5
Product(s):
Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND iscsi-initiator-utils is earlier than 0:6.2.0.742-0.6.el5
  • AND iscsi-initiator-utils is signed with Red Hat redhatrelease2 key
  • BACK