Revision Date: | 2012-02-21 | Version: | 641 |
Title: | RHSA-2012:0153: sos security, bug fix, and enhancement update (Low) |
Description: | Sos is a set of tools that gather information about system hardware and configuration.
The sosreport utility incorrectly included Certificate-based Red Hat Network private entitlement keys in the resulting archive of debugging information. An attacker able to access the archive could use the keys to access Red Hat Network content available to the host. This issue did not affect users of Red Hat Network Classic. (CVE-2011-4083)
This updated sos package also includes numerous bug fixes and enhancements. Space precludes documenting all of these changes in this advisory. Users are directed to the Red Hat Enterprise Linux 5.8 Technical Notes, linked to in the References, for information on the most significant of these changes.
All sos users are advised to upgrade to this updated package, which resolves these issues and adds these enhancements.
|
Family: | unix | Class: | patch |
Status: | | Reference(s): | CVE-2011-4083 RHSA-2012:0153 RHSA-2012:0153-03 RHSA-2012:0153-03
|
Platform(s): | Red Hat Enterprise Linux 5
| Product(s): | |
Definition Synopsis |
Red Hat Enterprise Linux must be installed OR Package Information
Red Hat Enterprise Linux 5 is installed
AND sos is earlier than 0:1.7-9.62.el5
AND sos is signed with Red Hat redhatrelease2 key
|