[El-errata] ELSA-2015-2505 Moderate: Oracle Linux 7 abrt and libreport security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Wed Nov 25 14:56:56 PST 2015


Oracle Linux Security Advisory ELSA-2015-2505

http://linux.oracle.com/errata/ELSA-2015-2505.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
abrt-2.1.11-35.0.1.el7.x86_64.rpm
abrt-addon-ccpp-2.1.11-35.0.1.el7.x86_64.rpm
abrt-addon-kerneloops-2.1.11-35.0.1.el7.x86_64.rpm
abrt-addon-pstoreoops-2.1.11-35.0.1.el7.x86_64.rpm
abrt-addon-python-2.1.11-35.0.1.el7.x86_64.rpm
abrt-addon-upload-watch-2.1.11-35.0.1.el7.x86_64.rpm
abrt-addon-vmcore-2.1.11-35.0.1.el7.x86_64.rpm
abrt-addon-xorg-2.1.11-35.0.1.el7.x86_64.rpm
abrt-cli-2.1.11-35.0.1.el7.x86_64.rpm
abrt-console-notification-2.1.11-35.0.1.el7.x86_64.rpm
abrt-dbus-2.1.11-35.0.1.el7.x86_64.rpm
abrt-desktop-2.1.11-35.0.1.el7.x86_64.rpm
abrt-devel-2.1.11-35.0.1.el7.i686.rpm
abrt-devel-2.1.11-35.0.1.el7.x86_64.rpm
abrt-gui-2.1.11-35.0.1.el7.x86_64.rpm
abrt-gui-devel-2.1.11-35.0.1.el7.i686.rpm
abrt-gui-devel-2.1.11-35.0.1.el7.x86_64.rpm
abrt-gui-libs-2.1.11-35.0.1.el7.i686.rpm
abrt-gui-libs-2.1.11-35.0.1.el7.x86_64.rpm
abrt-libs-2.1.11-35.0.1.el7.i686.rpm
abrt-libs-2.1.11-35.0.1.el7.x86_64.rpm
abrt-python-2.1.11-35.0.1.el7.x86_64.rpm
abrt-python-doc-2.1.11-35.0.1.el7.noarch.rpm
abrt-retrace-client-2.1.11-35.0.1.el7.x86_64.rpm
abrt-tui-2.1.11-35.0.1.el7.x86_64.rpm
libreport-2.1.11-31.0.1.el7.i686.rpm
libreport-2.1.11-31.0.1.el7.x86_64.rpm
libreport-anaconda-2.1.11-31.0.1.el7.x86_64.rpm
libreport-cli-2.1.11-31.0.1.el7.x86_64.rpm
libreport-compat-2.1.11-31.0.1.el7.x86_64.rpm
libreport-devel-2.1.11-31.0.1.el7.i686.rpm
libreport-devel-2.1.11-31.0.1.el7.x86_64.rpm
libreport-filesystem-2.1.11-31.0.1.el7.x86_64.rpm
libreport-gtk-2.1.11-31.0.1.el7.i686.rpm
libreport-gtk-2.1.11-31.0.1.el7.x86_64.rpm
libreport-gtk-devel-2.1.11-31.0.1.el7.i686.rpm
libreport-gtk-devel-2.1.11-31.0.1.el7.x86_64.rpm
libreport-newt-2.1.11-31.0.1.el7.x86_64.rpm
libreport-plugin-bugzilla-2.1.11-31.0.1.el7.x86_64.rpm
libreport-plugin-kerneloops-2.1.11-31.0.1.el7.x86_64.rpm
libreport-plugin-logger-2.1.11-31.0.1.el7.x86_64.rpm
libreport-plugin-mailx-2.1.11-31.0.1.el7.x86_64.rpm
libreport-plugin-reportuploader-2.1.11-31.0.1.el7.x86_64.rpm
libreport-plugin-ureport-2.1.11-31.0.1.el7.x86_64.rpm
libreport-python-2.1.11-31.0.1.el7.x86_64.rpm
libreport-rhel-anaconda-bugzilla-2.1.11-31.0.1.el7.x86_64.rpm
libreport-rhel-bugzilla-2.1.11-31.0.1.el7.x86_64.rpm
libreport-web-2.1.11-31.0.1.el7.i686.rpm
libreport-web-2.1.11-31.0.1.el7.x86_64.rpm
libreport-web-devel-2.1.11-31.0.1.el7.i686.rpm
libreport-web-devel-2.1.11-31.0.1.el7.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/abrt-2.1.11-35.0.1.el7.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/libreport-2.1.11-31.0.1.el7.src.rpm



Description of changes:

abrt
[2.1.11-35.0.1]
- Drop libreport-rhel and libreport-plugin-rhtsupport requires

[2.1.11-35]
- make /var/spool/abrt owned by root
- remove 'r' from /var/spool/abrt for other users
- abrt-action-install-debug-info: use secure temporary directory
- stop saving abrt's core files to /var/spool/abrt if DebugLevel < 1
- Fixes for: CVE-2015-5273 and CVE-2015-5287
- Resolves: #1266853

libreport
[2.1.11-31.0.1]
- Update workflow xml for Oracle [18945470]
- Add oracle-enterprise.patch and oracle-enterprise-po.patch
- Remove libreport-plugin-rhtsupport and libreport-rhel
- Added orabug20390725.patch to remove redhat reference [bug 20390725]
- Added Bug20357383.patch to remove redhat reference [bug 20357383]

[2.1.11-31]
- save all files changed by the reporter in the reporting GUI
- Fixes CVE-2015-5302
- Related: #1266853





More information about the El-errata mailing list