[El-errata] ELSA-2009-1232 Moderate: Enterprise Linux 5 gnutls security update

Errata Announcements for Enterprise Linux el-errata at oss.oracle.com
Wed Aug 26 14:50:07 PDT 2009


Enterprise Linux Security Advisory ELSA-2009-1232

https://rhn.redhat.com/errata/RHSA-2009-1232.html

The following updated rpms for Enterprise Linux 5 have been uploaded to 
the Unbreakable Linux Network:

i386:
gnutls-1.4.1-3.el5_3.5.i386.rpm
gnutls-devel-1.4.1-3.el5_3.5.i386.rpm
gnutls-utils-1.4.1-3.el5_3.5.i386.rpm

x86_64:
gnutls-1.4.1-3.el5_3.5.i386.rpm
gnutls-1.4.1-3.el5_3.5.x86_64.rpm
gnutls-devel-1.4.1-3.el5_3.5.i386.rpm
gnutls-devel-1.4.1-3.el5_3.5.x86_64.rpm
gnutls-utils-1.4.1-3.el5_3.5.x86_64.rpm

SRPMS:
http://oss.oracle.com/el5/SRPMS-updates/gnutls-1.4.1-3.el5_3.5.src.rpm

Description of changes:

[1.4.1-3.5]
- fix NUL characters in DN and SAN cert fields issue,
  make sure gnutls_x509_crt_check_hostname() fails when certificate
  has no CN or SAN CVE-2009-2730 (#516231)





More information about the El-errata mailing list