[lug] SuSE Security Announcement

George Sexton gsexton at mhsoftware.com
Thu Dec 4 11:07:05 MST 2003


>From looking at the other releases, it appears that the fix was already
in the -144 RPM. Other releases have a revised RPM. From what little I
have read, this fix was actually made to the kernel some time back in
September but it didn't get into 2.4.22.

-----Original Message-----
From: lug-bounces at lug.boulder.co.us
[mailto:lug-bounces at lug.boulder.co.us] On Behalf Of Gary Hodges
Sent: Thursday, December 04, 2003 9:37 AM
To: lug at lug.boulder.co.us
Subject: [lug] SuSE Security Announcement


I just got the email from SuSE about the Kernel brk() vulnerability.  
Going through the instructions in the email I see that kernel

k_athlon-2.4.21-144.i586.rpm

is what I'm supposed to download.  About a week ago there was a kernel 
update that I did with YaST/YOU.  It is the same version number as the 
one listed for the current security announcement.

~>rpm -q k_athlon
k_athlon-2.4.21-144

I'm I correct to assume that I'm OK?  Is it possible that changes were 
made but the version number didn't change?

Cheers,
Gary

_______________________________________________
Web Page:  http://lug.boulder.co.us
Mailing List: http://lists.lug.boulder.co.us/mailman/listinfo/lug
Join us on IRC: lug.boulder.co.us port=6667 channel=#colug




More information about the LUG mailing list