CentOS Errata and Security Advisory 2016:0012 Moderate Upstream details at : https://rhn.redhat.com/errata/RHSA-2016-0012.html The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) i386: 0eb31a49120fa25c404589fd876c9d7cfc4aeef7cd7b2a2a2d24711e967f8279 gnutls-2.8.5-19.el6_7.i686.rpm d22dfa913e478b539e1f7b5320b4d86d2457a5824132572fc1d6acabffd95cb6 gnutls-devel-2.8.5-19.el6_7.i686.rpm 95b9d374cee86ebbb1bf66bc28768436b7cab6c79cc8dd2a15cea2c2955333bd gnutls-guile-2.8.5-19.el6_7.i686.rpm 0fae500124573d8553d0c5271f56034b1f57d7c401bd66a3acaf0d261dcff5ee gnutls-utils-2.8.5-19.el6_7.i686.rpm x86_64: 0eb31a49120fa25c404589fd876c9d7cfc4aeef7cd7b2a2a2d24711e967f8279 gnutls-2.8.5-19.el6_7.i686.rpm 93478fbb225e309223547a6cfe0c0fdffe7e67d8c6fa41a25a75ad3b5aef516f gnutls-2.8.5-19.el6_7.x86_64.rpm d22dfa913e478b539e1f7b5320b4d86d2457a5824132572fc1d6acabffd95cb6 gnutls-devel-2.8.5-19.el6_7.i686.rpm fe099db8392403aab03e9113f587ef1ea61cd6cd11bb21bda8f9dbc81e152575 gnutls-devel-2.8.5-19.el6_7.x86_64.rpm 95b9d374cee86ebbb1bf66bc28768436b7cab6c79cc8dd2a15cea2c2955333bd gnutls-guile-2.8.5-19.el6_7.i686.rpm 8bd6cce01af65e8479615f4072491fea767b18ea15b6249956542e53199284f9 gnutls-guile-2.8.5-19.el6_7.x86_64.rpm 6e8ad5e215f169dea7f244157507ab12d625c6f7c7a8e7c93e5965d17672f72c gnutls-utils-2.8.5-19.el6_7.x86_64.rpm Source: a562cd4f57e2d3a65a61a233190b1efa90750a3ec2a8f63301222d65928dfb1d gnutls-2.8.5-19.el6_7.src.rpm
Monthly Archives: January 2016
CESA-2016:0011 Moderate CentOS 6 samba SecurityUpdate
CentOS Errata and Security Advisory 2016:0011 Moderate Upstream details at : https://rhn.redhat.com/errata/RHSA-2016-0011.html The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) i386: 72950df9a934b10dfa2ba2eda29a9c67fccd7316b23d05374cd61dc7039ee9b9 libsmbclient-3.6.23-24.el6_7.i686.rpm b59b5e8e39e47b1fd37a4af96131f939a77c7239e4e6302b637229da4ccb310a libsmbclient-devel-3.6.23-24.el6_7.i686.rpm 8168d1990d9c4f71d156b8f34170858c744e29ef4687e7dbc770d143ce03a290 samba-3.6.23-24.el6_7.i686.rpm a02211862b235acef0d2b2084fc49c858070e108714c04e955a63c6a243506c1 samba-client-3.6.23-24.el6_7.i686.rpm 65f889917a29ad57c440662c81c7db17ebe11128fd951c923765aaf4bc383dbb samba-common-3.6.23-24.el6_7.i686.rpm c95a7a0add86276140ecdea08f259fac7f453ec5397f6f7571f83d5064a11052 samba-doc-3.6.23-24.el6_7.i686.rpm b09c308680af56796f354cfa63f596e5ab773e2a60c7fc95f7270e1c444fee49 samba-domainjoin-gui-3.6.23-24.el6_7.i686.rpm 32d473dcded297d128ba23b325326a7edf82a46e40b9728b113c9e6dc13b2fa4 samba-swat-3.6.23-24.el6_7.i686.rpm 90d48f4fac26118d9ed5dd226078f856ba39d87d936dc42bb450724048f387e0 samba-winbind-3.6.23-24.el6_7.i686.rpm 55d78111de858437a8ddca083cba76554a4482a2128a969f8cb219e6b6e5e367 samba-winbind-clients-3.6.23-24.el6_7.i686.rpm dc832c0984c18f4dbb6339d4228e84748bb732416242fa8eb0d26a770e44ada7 samba-winbind-devel-3.6.23-24.el6_7.i686.rpm bbccd04528b6dd04da648d6264acb876a930860c5e84f6a00380005be7c97ad2 samba-winbind-krb5-locator-3.6.23-24.el6_7.i686.rpm x86_64: 72950df9a934b10dfa2ba2eda29a9c67fccd7316b23d05374cd61dc7039ee9b9 libsmbclient-3.6.23-24.el6_7.i686.rpm 94d02b91ec551ea77da38d6e909e010eabb070ae791135fd231496d237808173 libsmbclient-3.6.23-24.el6_7.x86_64.rpm b59b5e8e39e47b1fd37a4af96131f939a77c7239e4e6302b637229da4ccb310a libsmbclient-devel-3.6.23-24.el6_7.i686.rpm 11cab97a5279e60aab168e1040ab936bc8578098bb04523ff74f39500d2442bc libsmbclient-devel-3.6.23-24.el6_7.x86_64.rpm 3749468760897c354dfb8f3a65df18ffc2432c9ef0da15ae5a0b411cd9bba267 samba-3.6.23-24.el6_7.x86_64.rpm 60470720104f409891b492d1c00a4e913b2094de492f928b6c1eed2f9af4dddf samba-client-3.6.23-24.el6_7.x86_64.rpm 65f889917a29ad57c440662c81c7db17ebe11128fd951c923765aaf4bc383dbb samba-common-3.6.23-24.el6_7.i686.rpm 5ec7218ac132f3a9a814d97f3dd272f3f81086ce0530d050fdc0c929f9aa48ec samba-common-3.6.23-24.el6_7.x86_64.rpm 76735ae5f7f5b77dfd0f89f70707d93d7b5edb1658e4ec88b51d747462f7e72c samba-doc-3.6.23-24.el6_7.x86_64.rpm 722feb2af3beadbb86981cce302bf09c55517835193069746db623176354f1f3 samba-domainjoin-gui-3.6.23-24.el6_7.x86_64.rpm 56f6416cf829dd08c83410137c8963e9c3161544823ece16b69a0013b3a187c0 samba-glusterfs-3.6.23-24.el6_7.x86_64.rpm df5271b196657faeb840a6a6f1532e42af7de1d32a9c6d1c7c5eded89226578b samba-swat-3.6.23-24.el6_7.x86_64.rpm 525d528e07b6b3f244f3a10611312fda99e8fbadbd52e5215e1c1330d0399226 samba-winbind-3.6.23-24.el6_7.x86_64.rpm 55d78111de858437a8ddca083cba76554a4482a2128a969f8cb219e6b6e5e367 samba-winbind-clients-3.6.23-24.el6_7.i686.rpm c8bc68e7487b696ad4d9f1e611881118bc3bc3169d3e48200024c1ad89be5df0 samba-winbind-clients-3.6.23-24.el6_7.x86_64.rpm dc832c0984c18f4dbb6339d4228e84748bb732416242fa8eb0d26a770e44ada7 samba-winbind-devel-3.6.23-24.el6_7.i686.rpm c0f6a7c30a3a7b7389ed74fa72fba293e92c61f36f425e33043012dfd5147809 samba-winbind-devel-3.6.23-24.el6_7.x86_64.rpm 724c5b460e5f3e4157f36849b077c95ada398dc38385c76edd8b3e05a4ab34b3 samba-winbind-krb5-locator-3.6.23-24.el6_7.x86_64.rpm Source: 777c2658d4bd5768cf217818d464423b58db611e7bc391444ba3f705a772904c samba-3.6.23-24.el6_7.src.rpm
CESA-2016:0008 Moderate CentOS 6 openssl SecurityUpdate
CentOS Errata and Security Advisory 2016:0008 Moderate Upstream details at : https://rhn.redhat.com/errata/RHSA-2016-0008.html The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) i386: 294dd4d262e0e6ced0ea46ec41556780a73ed6be5e2f163b1a1dd046e6426b11 openssl-1.0.1e-42.el6_7.2.i686.rpm 985c978a4e724c2cd6b900c0607b97d699f86bf559ac95cd012292ed93a20aa1 openssl-devel-1.0.1e-42.el6_7.2.i686.rpm 99811e1a7c89a46a3d9c28a7e9e6b0b4287e6569cd365ca43362ecccc8248d50 openssl-perl-1.0.1e-42.el6_7.2.i686.rpm 6ba6747d378df4d66fceca3c3673efc6da1d2fd37d376818e4e686d9d56c7962 openssl-static-1.0.1e-42.el6_7.2.i686.rpm x86_64: 294dd4d262e0e6ced0ea46ec41556780a73ed6be5e2f163b1a1dd046e6426b11 openssl-1.0.1e-42.el6_7.2.i686.rpm c401f48ad5c6ea107b03da9282f0add66b1b61be8ed20191d8b0c8a17f32096d openssl-1.0.1e-42.el6_7.2.x86_64.rpm 985c978a4e724c2cd6b900c0607b97d699f86bf559ac95cd012292ed93a20aa1 openssl-devel-1.0.1e-42.el6_7.2.i686.rpm d885f6a99320e61cac77430ad3c752423488046087643ad99572f8406211d0af openssl-devel-1.0.1e-42.el6_7.2.x86_64.rpm 232e1582632ee80bd21e9b2b1916200a6260b248a89bab9f45a738fa396318e9 openssl-perl-1.0.1e-42.el6_7.2.x86_64.rpm 5d8a95e445cf2625127340db7ff18b1738af62af680b91798cd9f9a78523eac3 openssl-static-1.0.1e-42.el6_7.2.x86_64.rpm Source: 71b15225d25f43a7ffbfc07d2704adcdab4b832cf8a893d656e0cdb9608d0181 openssl-1.0.1e-42.el6_7.2.src.rpm
CESA-2016:0005 Moderate CentOS 6 rpcbind SecurityUpdate
CentOS Errata and Security Advisory 2016:0005 Moderate Upstream details at : https://rhn.redhat.com/errata/RHSA-2016-0005.html The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) i386: 48da75e0342f0d61c3ffb1d1180b3c420464fefd4582cf8c74a3e10fd06ca15f rpcbind-0.2.0-11.el6_7.i686.rpm x86_64: cc83047f165caaeeef38e29677bc30cfd200046f1c948aad2ca85b05ccdc73e2 rpcbind-0.2.0-11.el6_7.x86_64.rpm Source: bea5c5f928218e7485d3b5811d538e540af215e24bdb2544dec23937f8a3bc1e rpcbind-0.2.0-11.el6_7.src.rpm
CESA-2016:0007 Moderate CentOS 6 nss SecurityUpdate
CentOS Errata and Security Advisory 2016:0007 Moderate Upstream details at : https://rhn.redhat.com/errata/RHSA-2016-0007.html The following updated files have been uploaded and are currently syncing to the mirrors: ( sha256sum Filename ) i386: 445c46bdeb7c3beac94b7cfb47e89723c4d6628817028a0be1aa719ec24437e4 nss-3.19.1-8.el6_7.i686.rpm c22d0c9a7fc342cdf867c5d82587dbfc26f0911d9ff879bdbcd18c50192433be nss-devel-3.19.1-8.el6_7.i686.rpm 9fbff76db0a93c5960ac2b9548ca581635476d99ad0892270df3ab0077b75b0c nss-pkcs11-devel-3.19.1-8.el6_7.i686.rpm 010e15a82143facab45973229bcc25b7804bc3a0ddcd5a483fa749115f62f48b nss-sysinit-3.19.1-8.el6_7.i686.rpm f2b90e18915e82978933545c91cbdf89d6ff58736a40bb4268bad843ca3b5022 nss-tools-3.19.1-8.el6_7.i686.rpm x86_64: 445c46bdeb7c3beac94b7cfb47e89723c4d6628817028a0be1aa719ec24437e4 nss-3.19.1-8.el6_7.i686.rpm 84b3e8031f5b03d7bc98bffd5f24dcc22517627c10cf9ce34a405d0ddef09629 nss-3.19.1-8.el6_7.x86_64.rpm c22d0c9a7fc342cdf867c5d82587dbfc26f0911d9ff879bdbcd18c50192433be nss-devel-3.19.1-8.el6_7.i686.rpm 1603edfeca6833bbbb64399ea96b6991a41a7d0785db7dff1975deb1fde76f68 nss-devel-3.19.1-8.el6_7.x86_64.rpm 9fbff76db0a93c5960ac2b9548ca581635476d99ad0892270df3ab0077b75b0c nss-pkcs11-devel-3.19.1-8.el6_7.i686.rpm db7ef06578602600807a896d59154f9a991c134d2db1b3f9d4ee1ea7d24d2ffa nss-pkcs11-devel-3.19.1-8.el6_7.x86_64.rpm 850d22e70bc7adbe8d48d95cd2e5c9083d350281476425751eb062f13a2268c0 nss-sysinit-3.19.1-8.el6_7.x86_64.rpm a9b097b4acca91b33bdd913ca72bc8b398c81c28ddcd48e9aeec89c6cdd3ad5e nss-tools-3.19.1-8.el6_7.x86_64.rpm Source: 80e584d254f81d88bf144c3a9a79df91732025706dc1705d0bad28f30cb5a03d nss-3.19.1-8.el6_7.src.rpm
WatchGuard Technologies Appoints Sean Price, Vice President Worldwide Sales
Red Hat Security Advisory 2016-0013-01
Red Hat Security Advisory 2016-0013-01 – OpenStack Compute launches and schedules large networks of virtual machines, creating a redundant and scalable cloud computing platform. Compute provides the software, control panels, and APIs required to orchestrate a cloud, including running virtual machine instances and controlling access through users and projects. A vulnerability was discovered in the way OpenStack Compute networking handled security group updates; changes were not applied to already running VM instances. A remote attacker could use this flaw to access running VM instances.
Ubuntu Security Notice USN-2863-1
Ubuntu Security Notice 2863-1 – Karthikeyan Bhargavan and Gaetan Leurent discovered that OpenSSL incorrectly allowed MD5 to be used for TLS 1.2 connections. If a remote attacker were able to perform a man-in-the-middle attack, this flaw could be exploited to view sensitive information.
Red Hat Security Advisory 2016-0005-01
Red Hat Security Advisory 2016-0005-01 – The rpcbind utility is a server that converts RPC program numbers into universal addresses. It must be running on the host to be able to make RPC calls on a server on that machine. A use-after-free flaw related to the PMAP_CALLIT operation and TCP/UDP connections was discovered in rpcbind. A remote attacker could possibly exploit this flaw to crash the rpcbind service by performing a series of UDP and TCP calls. All rpcbind users are advised to upgrade to these updated packages, which contain a backported patch to correct this issue. If the rpcbind service is running, it will be automatically restarted after installing this update.
Mozilla Warns of SHA-1 Deprecation Side Effects
Mozilla warns Firefox users that the browser’s rejection of new SHA-1 certificates is keeping some users behind security scanners and antivirus software from reaching HTTPS sites.