[Oraclevm-errata] OVMSA-2016-0040 Moderate: Oracle VM 3.3 foomatic security update

Errata Announcements for Oracle VM oraclevm-errata at oss.oracle.com
Wed Mar 23 05:10:18 PDT 2016


Oracle VM Security Advisory OVMSA-2016-0040

The following updated rpms for Oracle VM 3.3 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
foomatic-4.0.4-5.el6_7.x86_64.rpm


SRPMS:
http://oss.oracle.com/oraclevm/server/3.3/SRPMS-updates/foomatic-4.0.4-5.el6_7.src.rpm



Description of changes:

[4.0.4-5]
- Also consider back tick and semicolon as illegal shell escape characters.
- CVE-2015-8327, CVE-2015-8560

[4.0.4-4]
- Prevent foomatic-rip overrun (bug #1214534).

[4.0.4-3]
- Too few arguments for format in a debugging string (bug #726385).
- Fixed perl installation locations for build (bug #661770).

[4.0.4-2]
- Applied patch to fix improper sanitization of command line options
   (CVE-2011-2964, bug #727016).




More information about the Oraclevm-errata mailing list