[El-errata] ELSA-2017-1581 Important: Oracle Linux 7 freeradius security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Wed Jun 28 13:23:33 PDT 2017


Oracle Linux Security Advisory ELSA-2017-1581

http://linux.oracle.com/errata/ELSA-2017-1581.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
freeradius-3.0.4-8.el7_3.x86_64.rpm
freeradius-devel-3.0.4-8.el7_3.i686.rpm
freeradius-devel-3.0.4-8.el7_3.x86_64.rpm
freeradius-doc-3.0.4-8.el7_3.x86_64.rpm
freeradius-krb5-3.0.4-8.el7_3.x86_64.rpm
freeradius-ldap-3.0.4-8.el7_3.x86_64.rpm
freeradius-mysql-3.0.4-8.el7_3.x86_64.rpm
freeradius-perl-3.0.4-8.el7_3.x86_64.rpm
freeradius-postgresql-3.0.4-8.el7_3.x86_64.rpm
freeradius-python-3.0.4-8.el7_3.x86_64.rpm
freeradius-sqlite-3.0.4-8.el7_3.x86_64.rpm
freeradius-unixODBC-3.0.4-8.el7_3.x86_64.rpm
freeradius-utils-3.0.4-8.el7_3.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/freeradius-3.0.4-8.el7_3.src.rpm



Description of changes:

[3.0.4-8]
- Disable internal OpenSSL cache and fix session cache file permissions.
   Resolves: Bug#1459131 CVE-2017-9148 freeradius: TLS resumption
                         authentication bypass





More information about the El-errata mailing list